Privacy Policy

Data We Collect

We collect the minimum data necessary to provide our service:

  • Account data: Email address for authentication and delivery
  • Preferences: Keywords, NAICS codes, agencies, states, and set-asides you configure
  • Company info: Optional company name and description for improved matching
  • Usage data: Brief delivery status, email opens (via tracking pixel), link clicks
  • Payment data: Handled entirely by Stripe — we never see or store card numbers

How We Use Your Data

  • Deliver your personalized daily brief
  • Improve matching accuracy based on your feedback
  • Send transactional emails (welcome, billing, account changes)
  • Monitor service health and debug issues

We do not sell, rent, share, or monetize your data. We do not use your data for advertising. We do not build profiles for third parties.

Third-Party Services

Data Sources

Opportunity data comes from official government sources including SAM.gov, Grants.gov, and USAJobs. This data is publicly available. We aggregate and deliver it — we do not modify the underlying records.

Data Storage & Security

  • Data stored on Cloudflare's global network (US-based processing)
  • All data encrypted in transit (TLS 1.3) and at rest
  • Authentication via secure, time-limited magic links — no passwords stored
  • Session cookies are HttpOnly, Secure, and SameSite protected
  • Access to production systems restricted to essential personnel

Cookies

We use only essential cookies for authentication (session management). We do not use tracking cookies, analytics cookies, or advertising cookies.

Data Retention

  • Active accounts: Data retained while subscription is active
  • Cancelled accounts: Data deleted within 30 days of cancellation
  • Brief history: Retained for 90 days, then archived
  • Immediate deletion: Email privacy@aeon.eco to request immediate deletion

Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Delete your account and data
  • Export your data in a portable format
  • Opt out of marketing communications (transactional emails cannot be opted out while subscribed)

To exercise these rights, email privacy@aeon.eco.

GDPR & CCPA

We comply with GDPR (for EU residents) and CCPA (for California residents). We do not sell personal information. We process data based on contractual necessity (providing the service you subscribed to) and legitimate interest (service improvement).

Changes to This Policy

We may update this policy occasionally. Significant changes will be communicated via email. Continued use after changes constitutes acceptance.

Contact

Privacy questions: privacy@aeon.eco

General support: support@aeon.eco

Last updated February 2026