Privacy Policy
Last updated: May 24, 2025
1. Introduction
This Privacy Policy (“Privacy Policy”) describes how backant.io (“backant.io”, “Company”, “we”, “us”, or “our”) collects, uses, and discloses personal information from users (“you”, “your”) of our website at www.backant.io (our “Site”), along with our related websites, applications, platforms, and services, including our drag-and-drop backend builder for creating, deploying, and managing backend services such as API creation, database management, and authentication (collectively, our “Service” or “Services”). This Privacy Policy is incorporated by reference into our Terms of Service at https://www.backant.io/terms.
We are committed to protecting your personal information in accordance with the General Data Protection Regulation (GDPR), the German Federal Data Protection Act (BDSG), and other applicable data protection laws. This Privacy Policy outlines your rights as a data subject and how you can exercise them. For the purposes of GDPR, backant.io is the data controller responsible for processing your personal information.
Please read this Privacy Policy carefully to understand our practices regarding your personal information. By using our Services, you agree to the collection, storage, use, and disclosure of your personal information as described herein. If you do not agree, please do not use the Services.
2. Contacting Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us at:
backant.io
Berlin, Germany
Email: privacy@backant.io
If you are in the EU and wish to lodge a complaint, you may contact the Berlin Commissioner for Data Protection and Freedom of Information at https://www.datenschutz-berlin.de.
3. What Information Do We Collect?
We collect personal information to provide and improve our Services. Below are the types and categories of information we may collect and how we use them.
3.1. Information You Provide Directly
We collect personal information you provide when you interact with our Site or Services, such as:
- Account Creation: First name, last name, and email address when you create an account.
- Billing: First name, last name, credit card information, and billing address (personal or company) to process payments.
- Contact Information: Email address, phone number, or company details when you sign up for mailing lists, provide feedback, or contact us.
- Job Applications: Name, address, contact details, education, and employment history if you apply for a job via our careers page.
- Invitations: First name, last name, email address, and social media links for invite-only features to send invitations.
- Other Voluntary Information: Information you provide via customer support or inquiries.
3.2. Automatically Collected Information
When you use our Services, we automatically collect:
- Device Information: IP address, browser type, device type (e.g., PC or mobile), and device identifier.
- Usage Data: Actions taken on the Service, pages visited, content accessed, and email interactions (e.g., opened or clicked).
- Third-Party Integrations: Information about your interactions with third-party websites integrated with our Services (e.g., ad clicks or website addresses).
We collect this information using cookies, local storage, and similar technologies, as described in our Cookie Policy at https://www.backant.io/cookies. Automatically collected data is used to personalize your experience, improve our Services, and analyze usage trends. If linked with personal information, we treat it as personal information under this Privacy Policy.
3.3. Information About Others
If you invite a third party to use our Services (e.g., for a demo), we collect their email address to send invitations. You must ensure you have their consent. To request removal of this data, contact us at privacy@backant.io.
3.4. Customer End-User Data
Through your use of the Services, you may provide us with data (including personal information) collected from your end-users or customers. We process this data on your behalf under our Data Processing Agreement, available at https://www.backant.io/trust-center.
3.5. Information from Other Sources
We may receive information from third parties (e.g., via API integrations like Google Workspace) and combine it with data we hold. We do not use such data to train AI/ML models. This Privacy Policy governs any combined information.
3.6. Sensitive Information
We do not collect or process sensitive information, such as racial or ethnic origins, political opinions, religious beliefs, health, or biometric data. Payment information is processed by third-party payment processors, not directly by us.
4. How Do We Use Personal Information?
We use your personal information for the following purposes:
- To create and manage your account, personalize your experience, and provide requested Services.
- To verify email ownership via welcome emails.
- To send administrative notifications (e.g., security or support advisories).
- To contact you about your use of the Services or solicit feedback.
- To maintain records of correspondence in our customer relationship management systems.
- To enhance, operate, and maintain our Services and systems.
- To prevent fraud or violations of our Terms of Service.
- To deliver personalized content or targeted advertising on third-party websites.
- For internal product development and improvement.
- To respond to job applications or inquiries.
- For any other purpose disclosed at the time of collection.
For EU residents, the legal bases for processing are:
- Contract Performance: To fulfill our contract with you (e.g., providing Services).
- Legitimate Interests: For purposes like improving Services, marketing, or fraud prevention, provided your rights do not override these interests.
- Consent: Where you explicitly consent (e.g., for marketing emails), which you may withdraw at any time.
- Legal Obligation: To comply with applicable laws.
The table below details the legal bases for each category of personal information:
Category of Personal Information | Legal Basis for Processing |
---|---|
Contact and Account Information | Contract performance; legitimate interests (administering Services, marketing, communication); legal obligations. |
Payment Information | Contract performance; legal obligations. |
Online Inquiries and Correspondence | Legitimate interests (responding to inquiries, marketing). |
Automatically Collected Information (e.g., IP address, cookies) | Consent; legitimate interests (improving Services); legal obligations. |
Job Applicant Information | Legitimate interests (evaluating applications). |
5. When Do We Share Personal Information?
We do not share your personal information with third parties without your consent, except as described below:
- Service Providers: We share data with third-party providers (e.g., hosting, SaaS, payment processors) acting under our instructions, with strict confidentiality obligations.
- Business Transfers: Personal information may be transferred during mergers, acquisitions, or similar transactions.
- Legal Protection: We may share data to protect our rights, enforce agreements, or ensure the safety of our Services.
- Legal Compliance: We may disclose data to comply with lawful requests from public authorities.
You may opt out of data sharing for marketing purposes by contacting privacy@backant.io.
6. Communication Choices
You may opt out of marketing emails by following the unsubscribe instructions in the email or contacting privacy@backant.io. Opting out may take up to 10 business days, during which you may still receive marketing emails. Administrative emails (e.g., account updates) will continue.
7. Your Rights to Access and Control Your Data
You can access and update your account information via your account settings. For other requests, contact privacy@backant.io. EU residents have the following GDPR rights:
- Access: Request a copy of your personal information.
- Rectification: Correct inaccurate or incomplete data.
- Erasure: Request deletion of data when no longer needed.
- Restriction: Limit processing in certain cases (e.g., contested accuracy).
- Portability: Receive your data in a portable format.
- Objection: Object to processing based on legitimate interests or for marketing.
- Automated Decisions: Not be subject to solely automated decisions. We do not use such processes.
To exercise these rights, contact privacy@backant.io. We will respond within one month, extendable by two months for complex requests.
8. Links to External Sites
Our Services may link to third-party sites we do not control. This Privacy Policy does not apply to those sites, and we are not responsible for their privacy practices. Review their policies before sharing data.
9. How Long Do We Keep Your Personal Information?
We retain personal information only as long as necessary for the purposes outlined in this Privacy Policy, unless a longer period is required by law. Anonymized data may be retained indefinitely for analytical purposes.
10. Children’s Privacy
Our Services are not directed to individuals under 16. We do not knowingly collect personal information from children under 16 without parental consent. If we learn we have such data, we will delete it promptly. Contact us at privacy@backant.io if you believe we have collected such data.
11. Where Do We Store and Process Your Personal Information?
Our servers are located in the European Union. If you use our Services from outside the EU, your data may be transferred to the EU for processing. For transfers outside the EU (e.g., to third-party providers), we use GDPR-compliant mechanisms, such as:
- Standard Contractual Clauses (SCCs): Contracts ensuring EU-level data protection.
- Adequacy Decisions: Transfers to countries with EU-approved data protection laws.
- Derogations: Limited transfers under GDPR Article 49 (e.g., with your consent).
Contact privacy@backant.io for details on our SCCs or other measures.
12. How Do We Secure Your Personal Information?
We use industry-standard measures to protect your data, including TLS encryption, access controls, and staff training on data security. Our third-party hosting provider maintains robust security controls. However, no online transmission is 100% secure, and you provide data at your own risk.
13. Updates to This Privacy Policy
We may update this Privacy Policy, revising the “Last updated” date. Material changes will be notified via your provided contact methods. Continued use of our Services after changes constitutes acceptance. Review this policy periodically at https://www.backant.io/privacy.