Privacy Policy
Last Updated: January 15, 2025 · Entity: Gnowbe Group Ltd.
This Privacy Policy describes how Gnowbe Group Ltd. ("Gnowbe", "we", "us", or "our") collects, uses, and discloses information about you when you use our website (www.gnowbe.com), mobile applications, and all online products and services (collectively, the "Service").
1. Changes to This Policy
Gnowbe may revise this Privacy Policy from time to time. When material changes are made, we will update the "Last Updated" date above. Your continued use of the Service after such changes constitutes your acceptance of the revised Privacy Policy.
2. Information We Collect
2.1 Information You Provide to Us
We collect information you provide when you register for an account, update your profile, make purchases, submit support requests, or otherwise interact with the Service. This includes:
- Personal Details — name, email address, phone number, employer, job title
- Transactional Information — billing address, payment details (processed per PCI DSS standards)
- User Content — any content you upload, create, or share through the Service
Note: Please do not provide special category data (health, ethnicity, political opinions, etc.) through the Service.
2.2 Information We Collect Automatically
When you use the Service, we automatically collect usage information, log data (IP address, browser type, ISP), and device information (hardware model, operating system, device identifiers).
2.3 Cookies and Other Tracking Technologies
We use cookies, web beacons, and tracking pixels for user preferences, analytics, and marketing. See Section 10.3 for managing your cookie preferences.
2.4 Information From Third Parties
If you sign in via a social network (e.g., LinkedIn, Facebook), we may receive basic profile information from that service.
3. How We Use Your Information
We use the information we collect to:
- Provide, deliver, maintain, and improve the Service
- Communicate with you (transactional, support, marketing)
- Personalize your experience
- Conduct analytics and research
- Run promotions and marketing campaigns
- Ensure security and legal compliance
4. Legal Bases for Processing (EU/EEA/UK Users)
For users in the EU, EEA, and UK, we process personal data on the following bases:
- Consent — where you have given explicit consent
- Contractual Necessity — to perform our contract with you
- Legitimate Interests — for business or commercial purposes that do not override your rights
- Legal Obligation — to comply with applicable law
6. International Data Transfers
Gnowbe primarily processes data in the United States. For EU/EEA/UK users, we rely on Standard Contractual Clauses (SCCs) and the EU-U.S. Data Privacy Framework where applicable to ensure adequate data protection.
7. Your Rights (EU/EEA/UK Users)
You have the right to:
- Access, rectify, or erase your personal data
- Restrict processing or object to processing
- Request data portability
- Withdraw consent at any time
Contact us at support@gnowbe.com to exercise these rights.
8. Retention of Your Information
We retain your personal data for as long as necessary to provide the Service and fulfill the purposes described in this policy. You may request deletion or anonymization of your data at any time. Archived copies may be retained for legal compliance purposes.
9. Security
We implement industry-standard security measures including HTTPS encryption, access controls, authentication protocols, regular security assessments, and penetration testing to protect your data.
10. Your Choices
10.1 Account Information
You may update, correct, or delete your account information through your account settings.
10.2 Marketing Communications
Opt out of marketing emails via the unsubscribe link in any email, or contact support@gnowbe.com.
10.3 Cookies
You can manage or disable cookies through your browser settings. Note that disabling cookies may affect the functionality of the Service.
11. Children's Privacy
The Service is not directed at children under 16. We do not knowingly collect personal data from children without parental consent. If we become aware that a child under 16 has provided personal data, we will promptly delete it. Contact support@gnowbe.com if you believe a child has submitted data.
12. Subprocessors
We use the following subprocessors:
| Provider | Location |
|---|---|
| AWS | US |
| HubSpot | US |
| Instabug | US |
| MailChimp | US |
| OneSignal | US |
| Postmarkapp/Wildbit | US |
| Rollbar | US |
| Segment.com | US |
| Twilio | US |
| Zendesk | US |
| DeepL | Germany |
| Google Cloud Platform | US |
| OpenAI | US |
| Anthropic | US |
| Mixpanel | US |
13. Accountability for Onward Transfers
Gnowbe remains responsible for EU/EEA/UK/Switzerland personal data transferred to vendors and subprocessors in accordance with applicable data transfer mechanisms.
14. Recourse, Enforcement, and Liability
For privacy-related concerns, contact support@gnowbe.com first. EU/EEA/UK users may also contact their local data protection supervisory authority.
15. Links to Third-Party Websites
The Service may contain links to third-party websites that are not covered by this Privacy Policy. We are not responsible for the privacy practices of those websites.
16. Contact Us
For any questions or concerns about this Privacy Policy, please contact us at support@gnowbe.com.