Privacy

Privacy Policy

This policy explains how Opptics collects, uses, discloses, and protects information across our website, web app, and browser extension.

Effective August 8, 2026

What we collect

We collect information you provide, including your name, work email address, organization, role, support messages, and waitlist details. We also collect content your team creates or uploads to Opptics, such as guides, product materials, links, mappings, team notes, opportunity context, transcripts, and practice recordings.

On organization-approved websites, the browser extension may process the page URL and the metadata of elements a user deliberately selects, including visible text, accessible labels, element attributes, and DOM selectors. It may also record guide progress and mapping health. Opptics does not intentionally collect passwords, cookies, payment-card data, form-field values, full page source, screenshots, or a general history of websites you visit.

We automatically receive limited technical and usage information, such as browser and device type, page viewed, approximate location, referring page, timestamps, authentication and security events, and diagnostics needed to operate the service.

When the extension is active

The extension can support customer products hosted on different HTTP or HTTPS domains. It remains dormant on product pages until an organization administrator adds the relevant domain or URL prefix to the Approved Domains list. It also communicates with the Opptics web app to sign you in and synchronize your organization's settings.

How we use data

We use information to provide, secure, support, and improve Opptics. This includes authenticating users, operating workspaces, processing uploaded content, generating and delivering guidance, transcribing and evaluating rehearsals, synchronizing team content, measuring readiness, resolving broken mappings, preventing abuse, analyzing aggregate usage, and responding to support requests.

We do not sell personal information, use customer content to target advertising, or use extension data for advertising or credit decisions.

Sharing and service providers

We disclose information to vendors only as needed to operate Opptics. These include Convex for application data, authentication, file storage, and synchronization; Vercel for web hosting and privacy-focused web analytics; and OpenAI for features such as document processing, embeddings, content generation, and rehearsal transcription. If your organization connects a third-party service, such as Google Drive or a customer product integration, we exchange information with that service at your organization's direction.

We may also disclose information when required by law, to protect users or the service, or as part of a merger, financing, acquisition, or sale of assets. We do not permit service providers to use extension data for their own advertising.

Cookies and analytics

Opptics uses cookies or similar browser storage where necessary to keep you signed in, remember interface preferences, and protect access to the service. We also use Vercel Web Analytics to understand aggregate page traffic. Vercel Web Analytics does not use third-party cookies and is designed so page-view data is not tied to an individual or IP address. We do not currently use advertising cookies or cross-site behavioral tracking.

Retention and deletion

We retain account and organization content while the relevant account is active and as reasonably necessary to provide the service, meet legal obligations, resolve disputes, and protect the service. Organization administrators can remove mappings, guides, notes, and approved domains. You may request access, correction, export, or deletion by contacting us. Some limited records may remain in backups or where retention is legally required.

Security

We use HTTPS in production, short-lived authentication tokens held in browser session storage, organization access controls, and other technical and organizational safeguards designed to protect data. No method of transmission or storage is completely secure.

Chrome Web Store Limited Use

Opptics' use and transfer of information received from Chrome APIs complies with the Chrome Web Store User Data Policy, including its Limited Use requirements. Human access to extension-derived data is limited to security, support requested by a user, legal compliance, or internal operations where the data has been aggregated or de-identified.

Your choices

Organization administrators control Approved Domains and much of the content in a workspace. You can stop the extension at any time by disabling or uninstalling it in Chrome. You can also sign out, request correction or deletion of your account information, or ask your administrator to remove organization content.

Depending on where you live, you may have additional rights to access, correct, delete, restrict, or obtain a copy of personal information, or to object to certain processing. You may exercise an applicable right by contacting us. We will verify requests as appropriate and will not discriminate against you for exercising a privacy right.

International use

Opptics and its service providers may process information in the United States and other countries. Those countries may have data-protection laws that differ from the laws where you live. Where required, we use appropriate safeguards for international transfers.

Children

Opptics is a business service and is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided information to us, please contact us so we can take appropriate action.

Contact and changes

Questions or privacy requests can be sent to privacy@opptics.team. We may update this policy as the service changes. Material changes will be reflected here with a new effective date.