Privacy Policy
Last updated: July 22, 2026
1. Introduction
The LinkRaze remote access platform is operated by LinkRaze Technologies Ltd., a private company registered in Israel under company number 517376554 ("LinkRaze", "we", "us", "our", or "Company"). LinkRaze Technologies Ltd. is the data controller responsible for the personal data described in this policy.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service, including the web dashboard, the desktop application, and related services (collectively, the "Service").
2. Information We Collect
Account Information: When you register, we collect your email address, full name, and any optional profile information you provide.
Session & Activity Data: We log session metadata including: start time, duration, devices involved, IP addresses, session tokens, and session lifecycle events (when a session starts, ends or reconnects, and why it ended). IP address logging for account and session actions is enabled by default; administrative and infrastructure actions always record the client IP address for security. This data helps us detect unauthorized access, troubleshoot issues, and enforce security policies.
What We Do Not Collect: We do not record what you do inside a remote session. Keystrokes, mouse input, screen contents, clipboard contents, and transferred files are end-to-end encrypted between your browser and your own device — our servers pass them through without the keys to read them, so we cannot reconstruct, replay or hand over your session activity. We log that a session happened, not what happened in it.
Payment Information: We do not collect or store your full card number or security code — card entry happens entirely within Paddle's payment form and is never visible to us. Payments are processed by Paddle (paddle.com); we receive transaction confirmations, subscription status, and the limited card metadata contained in Paddle's transaction records (card brand, expiry date, and the last four digits).
Technical Data: Browser type, operating system, referring URL, and error logs to improve service reliability.
Cookies: We use session cookies (httpOnly, Secure, SameSite=Strict) to maintain your authenticated state. See our Cookie Policy below.
3. How We Use Your Information
We use collected data to:
• Provide and maintain the Service
• Process transactions and send transaction confirmations
• Send security alerts (unauthorized login attempts, password changes, new devices)
• Detect, investigate, and prevent fraud and unauthorized access
• Improve service performance and reliability
• Comply with legal obligations (law enforcement requests, court orders)
• Enforce our Terms of Service and other agreements
4. Data Retention
Account data is retained for the duration of your account. After account deletion or termination, personally identifiable information is permanently deleted within 30 days, except:
• Session logs are retained for 90 days, then summarized into aggregate usage statistics and deleted (security and compliance)
• Audit trail entries (account and security actions) are retained for 180 days (security and compliance)
• Marketing site analytics events (see Section 5) are retained in raw form for 180 days, then deleted; the daily aggregate counts derived from them (page views, signups, and similar totals) are kept indefinitely for trend reporting
• Transaction records are retained for 7 years (tax and financial compliance)
• Data required by law is retained for the period legally mandated
5. Cookies & Tracking
Session Cookies: We use httpOnly session cookies to maintain your login state in the web dashboard. These cookies are essential for the Service to function and are automatically set when you access the app.
Marketing Site Analytics: Our public marketing site uses first-party, consent-gated analytics to measure page views and signup attribution. This does not use cookies — it stores a random identifier in your browser's local storage, and a separate per-visit identifier in session storage — and only activates if you accept the cookie banner. We store a hashed IP address and coarse (country-level) location, never a raw IP address or precise location, and this data is never shared with or sold to third parties. We do not use any third-party analytics services (Google Analytics, Mixpanel, etc.) anywhere in the Service.
If you go on to create an account, the marketing-site events recorded under that identifier before you signed up are linked to your account, so that we can attribute the signup. If you withdraw consent, the identifier is deleted from your browser and is not carried into signup.
Cookie Consent: On your first visit, you will see a cookie consent banner explaining our cookie and analytics usage. By accepting it, or by continuing to use the app, you acknowledge the practices described in this section.
Your Rights: You can disable cookies in your browser settings, but this will prevent the Service from functioning properly (you will not be able to maintain a session). You may accept, decline, or change your choice on the marketing site analytics at any time using the "Cookie Preferences" link in the site footer, without affecting your ability to use the Service.
6. Your GDPR Rights (EU/EEA Users)
If you are in the EU/EEA, you have:
• Right of Access: Request a copy of your personal data
• Right to Rectification: Correct inaccurate data
• Right to Erasure ("Right to be Forgotten"): Request deletion of your data
• Right to Restrict Processing: Limit how we use your data
• Right to Data Portability: Export your data in a portable format
• Right to Object: Opt out of specific processing
To exercise these rights, visit your account settings → Privacy, or contact support@linkraze.com.
7. Your CCPA Rights (California Users)
If you are a California resident, you have:
• Right to Know: Request what personal information we collect
• Right to Delete: Request deletion of your personal information
• Right to Opt-Out: Opt out of "sales" of personal information (we do not sell data, but you can opt out of any data sharing)
• Right to Non-Discrimination: We will not discriminate against you for exercising these rights
To submit a request, email support@linkraze.com or visit account settings → Privacy.
8. Third Parties
Payment Processing: Paddle (paddle.com) handles all payments. Their privacy policy governs payment data.
No Third-Party Sharing: We do not share, sell, or rent your personal information to third parties for marketing. We share data only:
• With service providers (payment processor, email sender) under data processing agreements
• When legally required (subpoena, court order, law enforcement)
• To protect the safety and integrity of the Service
9. Security
We implement industry-standard security measures:
• Video and audio streams are always end-to-end encrypted (AES-256-GCM); decryption keys are never shared with our relay servers, and a session cannot be established without end-to-end encryption
• All traffic is additionally protected in transit with TLS 1.2 or higher; the real-time video and audio path uses DTLS 1.2
• Password hashing (bcrypt, 12 rounds minimum)
• Multi-factor authentication, required by default on all accounts (authenticator app; email codes may also be enabled)
• Audit logging of all account actions
• Regular security assessments
However, no system is completely secure. We are not liable for unauthorized access resulting from user negligence or compromised credentials.
10. International Transfers
LinkRaze Technologies Ltd. is based in Israel, and our servers currently run in a single hosting region. As we scale, we plan to expand to additional regions (e.g. in Europe and the United States) for redundancy and lower latency; when that happens, your data may be processed and stored in whichever region serves your account. Regardless of where you access the Service from, your data may be transferred to and processed in Israel, where LinkRaze is operated.
If you are in the EU/EEA: the European Commission has recognised Israel as providing an adequate level of protection for personal data, so transfers of your data to Israel do not require any additional safeguard or your separate consent. If we later process your data in a region that is not covered by an adequacy decision, we will put an appropriate transfer mechanism in place before doing so.
11. Children
The Service is not intended for users under 18 years old. We do not knowingly collect information from children under 18. If we learn that we have collected personal information from a child under 18, we will delete such information immediately.
12. Contact Us
For privacy-related questions, requests, or complaints, contact the data controller:
LinkRaze Technologies Ltd. (company number 517376554), Israel
Email: support@linkraze.com
You also have the right to lodge a complaint with your local data protection authority (DPA) in your country.