Privacy
Last updated 29 September 2026
Who we are
Parallax Ventures Inc, 111 NE 1st Street, 8th Floor #8579, Miami, FL 33132. Questions about anything here go to parallaxventuresinc@gmail.com.
What we collect, and only when you give it to us
- Free audit requests. The business name and email address you type, and the website, city, name and phone number if you choose to add them. Submitting the form is how you ask us to send you the audit and to follow up about it.
- Contact and project enquiries. What you enter on the contact form or a project form, so we can answer it. A person is emailed as soon as it arrives, and a person replies to you.
- Accounts. If you sign in, Firebase Authentication holds your sign-in details and we store the business profile you fill in yourself.
- Purchases. Stripe handles payment. Card details go to Stripe and never reach our servers. We receive the order and the email address attached to it.
- Questions you ask our on-site assistant. The message you type is sent to Anthropic's API to produce an answer. We do not store the conversation.
Your enquiries are kept together, under your email address
This is the part most privacy pages leave out, so here it is plainly. When you fill in a form we do not file that message on its own. We match it to your email address and keep one record per person, so a second enquiry adds to the first rather than arriving as a stranger. That record holds the details you sent, a list of your recent submissions across both forms, and our own notes about whether a human has been told and whether anyone has replied to you yet. The list of past submissions is capped, so it does not grow without end.
That record lives in one database that Parallax Ventures uses across its own properties, not only this site, so a colleague working on another Parallax product can see that you contacted us and what you said. It is not shared outside the company.
What we count, without identifying anyone
We count four things: an audit form started, an audit submitted, a booking link clicked, a contact form submitted. Each count records the event name, the page path, and whether you arrived from our own site or elsewhere. No identifier, cookie, session or device information is attached, and the page path has its query string and fragment stripped before anything is written down, so a count carries nothing that points back to a person.
We also record browser security violations, which tell us a page tried to load something our security rules forbid. Those records hold the rule that fired, the page path, and the origin that was blocked. No address, no identifier, and nothing you typed.
We use no advertising pixels and no third-party analytics product. Nothing on this site loads Meta, TikTok, Google Analytics or any similar tag. A build check verifies this against the pages the site actually serves, so this sentence cannot quietly stop being true.
Two things are honestly outside that. Our hosting provider, Vercel, keeps its own request logs, which include IP address and browser user agent, as part of running the servers. The counts above are written into those same logs, so Vercel's record of a request and our count of it sit side by side there. We do not use either to profile visitors, but we are not going to claim the two could never be lined up.
Keeping the site up, and the address that comes with it
Every request to our API is counted against the IP address it came from, so that one source cannot flood an endpoint. That counter is held by Upstash, a hosted Redis service, and each entry expires within about a minute. If we cannot reach Upstash the count falls back to the server handling your request and is lost when it restarts. Either way it is used for nothing else: no profile, no history, no link to your enquiry.
Where it goes
Enquiry and lead details are stored in our Supabase database and emailed to us through Gmail so a person sees them. We use Vercel for hosting, Firebase for sign-in, Stripe for payment, Anthropic for the on-site assistant, and Upstash for the rate-limit counter above. We do not sell your information and we do not share it for advertising.
All of it is processed in the United States. If you are writing to us from outside the United States, that is where your enquiry will be stored and read.
How long we keep it
Straight answer first: nothing is deleted automatically. There is no timer that removes old records, so anything you send us stays until a person removes it. We would rather say that than imply a process we do not run.
- An audit request we did not take further: kept while we build and send the audit, and afterwards in case you come back to us.
- An enquiry that became a conversation: kept while we are working together or talking about working together, and afterwards for the same reason.
- A customer record: kept for as long as we need it to support what you bought and to meet the accounting and tax rules that come with being paid.
- If you tell us to stop: we keep your email address on a do-not-contact list so we do not write to you again, and delete the rest.
Ask us to delete your records at any point and we will. A person does it by hand, and we complete verified requests within 30 calendar days. We ask you to confirm the request from the email address on the record, so that nobody can delete someone else's data by asking.
Some records we cannot remove on request, and we would rather name them than surprise you: what we need to keep for payments and tax, to prevent or investigate fraud, to deal with a dispute, to keep the service secure, or because the law requires it. We tell you which of those applied and delete the rest.
One honest limit. We delete it from every system we run inside those 30 days. Our providers keep their own backups on their own schedules, which we neither control nor have a date for, so we do not promise a date for someone else's backup.
Your choices
- Ask us what we hold about you, and we will tell you.
- Ask us to correct or delete it, and we will.
- Ask us to stop emailing you. Replying “no thanks” once is enough and that is the end of it.
- Signing out of your account ends the sign-in session held on your device.
Every one of those starts the same way: email parallaxventuresinc@gmail.com and say what you want. You do not need a form or an account.
Cookies
We do not set advertising or tracking cookies. Signing in stores what Firebase needs to keep you signed in on your own device. If you connect a social account, we set a short-lived cookie during that connection to check the request came back from the same browser that started it, and delete it as soon as the connection finishes.
Children
This site is for businesses. It is not directed at children.
If something here is wrong
This page describes how the site works today. If anything here does not match your experience, email us and we will correct it.
Changes
If this changes we will update the date at the top. Material changes to how we handle your information will be described here rather than made quietly.