1. Introduction
This Privacy Policy explains how LogicaFlow ("we", "us", "our", or "the Platform"), accessible via https://logicaflow.dev and its related subdomains, collects, processes, stores, and protects information when you access or interact with our website, application, services, and APIs.
By accessing or utilizing LogicaFlow, you acknowledge that you have read and understood the practices described in this Privacy Policy. If you do not agree with any terms herein, please discontinue use of the Platform immediately.
2. Information We Collect
We may collect information under the following categories:
- Account & Identity Data: When you register an account, we may collect your email address, name, username, and authentication credentials (including OAuth provider tokens such as Google or GitHub).
- Workflow & Execution Metadata: Execution timestamps, execution status codes, node parameters, and configuration settings required to run automated workflows.
- Technical & Log Information: IP address, browser type and version, operating system, device identifiers, referring URLs, request timestamps, and system diagnostics collected automatically for fraud prevention and security monitoring.
- Support & Communication Data: Records of communications, questions, or bug reports submitted to our customer service team.
3. How We Use Collected Data
We process your data strictly for legitimate operational purposes, including:
- Providing, maintaining, and enhancing the LogicaFlow orchestration platform.
- Processing webhook executions, scheduled tasks, and event-driven automation triggers.
- Detecting, preventing, and combating fraudulent activity, security vulnerabilities, DDoS attacks, and domain hijack attempts.
- Sending critical administrative notices, such as service security advisories, transactional updates, or billing receipts.
- Ensuring compliance with applicable legal obligations and enforcing our Terms of Service.
4. Data Storage, Retention & Security
We implement rigorous technical and organizational safeguards to ensure high-level security for your information:
- Encryption: All data transmitted between your browser and our edge servers is encrypted using modern TLS 1.3 protocols. Data at rest is encrypted using industry-standard AES-256 encryption.
- Edge Shielding: We leverage Cloudflare's global edge network for automated DDoS mitigation, web application firewall (WAF) filtering, DNSSEC validation, and anti-hijacking controls.
- Strict Access Controls: Internal access to user databases and server infrastructure is restricted based on least-privilege principles and protected by hardware multi-factor authentication.
We retain your personal data only for as long as your account remains active or as needed to provide services, resolve disputes, or comply with statutory requirements.
5. Sharing & Third-Party Service Providers
We do not sell, rent, or trade your personal information. We may only disclose your data to trusted third-party service providers who assist us in operating our platform, subject to strict confidentiality agreements:
- Infrastructure & CDN: Cloudflare Inc. (content delivery, edge computing, DNS routing, and threat defense).
- Cloud Compute & Storage: Managed cloud providers complying with SOC 2, ISO 27001, and GDPR standards.
- Legal Requirements: When compelled by subpoena, court order, or applicable government regulation, where reasonably necessary to comply with law.
6. Your Privacy Rights (GDPR & CCPA)
Depending on your jurisdiction (such as the European Economic Area, United Kingdom, or California), you may possess specific statutory rights regarding your personal information, including:
- Right of Access: Request a copy of the personal data we hold about you.
- Right to Rectification: Request correction of inaccurate or incomplete records.
- Right to Erasure ("Right to be Forgotten"): Request the complete deletion of your account and associated personal data.
- Right to Restriction & Objection: Object to or request restriction of data processing in certain circumstances.
- Right to Data Portability: Obtain your personal data in a structured, commonly used, and machine-readable format.
To exercise any of these rights, please contact our Data Protection Officer at info@logicaflow.dev.
7. Cookies & Tracking Policies
LogicaFlow utilizes essential session cookies solely required for authentication, security session verification, and preference persistence. We do not use third-party behavioral advertising or invasive tracking pixels.
8. Updates to This Policy
We may update this Privacy Policy from time to time to reflect operational, legal, or regulatory modifications. We will notify you of material changes by updating the "Effective Date" at the top of this page and, where appropriate, sending an email notice.
9. Contact Us
If you have questions, feedback, or concerns regarding this Privacy Policy or our data handling practices, please contact us at:
- Email: info@logicaflow.dev
- Website: https://logicaflow.dev
- Entity: LogicaFlow Security & Data Operations