GDPR Compliant

Privacy Policy

We take your privacy seriously. This policy explains exactly what personal data we collect, why we collect it, and how you can exercise your rights at any time.

GDPR Compliant
Data Encrypted
Your Rights Protected

Last updated: 13 January 2026

1

Overview

Ablelytics is committed to protecting personal data and ensuring compliance with the General Data Protection Regulation (EU) 2016/679 ("GDPR").

This policy describes how personal data is collected, processed, and safeguarded when you use the Ablelytics accessibility testing platform.

2

Categories of Personal Data

Account & Identity
  • Name
  • Email address
  • Account credentials (securely stored)
Service Usage
  • Websites assessed
  • Accessibility scan results
  • Platform interaction data
Billing
  • Billing contact details
  • Subscription status
  • Payments processed by provider only
Technical
  • IP address
  • Device and browser metadata
  • Cookie identifiers
3

Lawful Basis for Processing

Personal data is processed under one or more of the following lawful bases:

Performance of a contractLegal obligationsLegitimate interestsUser consent (where applicable)
4

Purpose of Processing

Personal data is used to:

  • Deliver and maintain the Service
  • Generate accessibility assessment reports
  • Manage billing and subscriptions
  • Monitor platform performance and security
  • Provide support and service communications
5

Third-Party Processors

Personal data may be processed by approved third parties. All processors operate under GDPR-compliant data processing agreements.

Google Analytics

Usage analytics

Firebase

Authentication & infrastructure

Payment Provider

Billing & transactions

6

Data Retention

Data is retained only for as long as necessary to fulfil contractual, operational, and legal obligations.

Users may request deletion of personal data at any time, subject to any statutory retention requirements.

7

Your Data Subject Rights

Under GDPR, you have the following rights regarding your personal data:

Access

Request a copy of your personal data

Rectification

Correct inaccurate or incomplete data

Erasure

Request deletion of your data

Restriction

Limit how we process your data

Portability

Receive your data in a portable format

Withdraw Consent

Withdraw consent at any time

To exercise any of these rights, contact us at support@ablelytics.com. We will respond within 30 days.

8

Security Measures

Appropriate technical and organisational measures are implemented to protect personal data against unauthorised access, loss, or disclosure.

Encryption in transit and at restAccess controls and authenticationRegular security reviewsIncident response procedures
9

Contact

For privacy-related enquiries or to exercise your data subject rights, contact our team directly.

Registered address: Waapis Group s.r.o., Slevarenska 16, 70900, Ostrava, Czech Republic