Privacy Policy

How we collect, use, and protect your personal information.

Privacy Policy

CrisisCommand, Inc.

Last updated: July 21, 2026


CrisisCommand, Inc. (“CrisisCommand,” “we,” “us,” or “our”) respects your privacy and is committed to protecting the personal information we collect in connection with our business operations. This Privacy Policy describes how we collect, use, disclose, and protect Personal Information when you visit our website at crisiscommand.ai (the “Website”), interact with us, or use our crisis intelligence platform (the “Service”). CrisisCommand is headquartered in the State of Texas, United States.

Scope and Customer Data

This Privacy Policy applies where CrisisCommand acts as the controller of Personal Information—meaning we determine the purposes and means of processing. This includes Personal Information collected through our Website, account registration, sales and marketing interactions, and Service administration.

This Privacy Policy does not apply to Customer Data or Content (as defined in the CrisisCommand Platform Agreement) that customers submit to or receive from the Service. CrisisCommand processes Customer Data and Content on behalf of its customers as a processor. That processing is governed by the Platform Agreement and the Data Processing Addendum, not this Privacy Policy.

INFORMATION WE COLLECT

Information You Provide Directly

  • Account Information. When you or your organization creates an account to use the Service, we collect your name, email address, job title or role, organizational affiliation, and account credentials.

  • Communication Information. When you contact us—for example, through support requests, sales inquiries, or event registrations—we collect your name, email address, and the contents of your communications.

  • Payment Information. If you purchase a subscription, we collect billing information necessary to process payment. Payment processing is handled by third-party payment processors; CrisisCommand does not store full payment card numbers.

Information We Collect Automatically

  • Usage Data. When you interact with the Service, we collect information about how you use it, including frequency and duration of sessions, features used, and volume of queries submitted. Usage Data does not include Customer Data or Content.

  • Log Data. Our servers automatically record information when you access the Website or Service, including your IP address, browser type and version, operating system, referring URL, pages visited, and date and time of access.

  • Cookies and Similar Technologies. We use cookies and similar tracking technologies to operate and improve the Website and Service. These technologies help us recognize returning users, analyze usage patterns, and maintain session security. You can control cookie preferences through your browser settings. We do not use cookies for third-party behavioral advertising.

HOW WE USE PERSONAL INFORMATION

We use Personal Information for the following purposes:

  • Providing the Service. To create and maintain your account, authenticate access, and deliver the Service.

  • Communicating with You. To respond to inquiries, provide support, send service-related notices (such as maintenance updates, security alerts, and billing communications), and send information about features or changes to the Service.

  • Improving the Service. To analyze usage patterns, diagnose technical issues, and develop new features and improvements. We may use aggregated or de-identified data for this purpose.

  • Security and Fraud Prevention. To detect, investigate, and prevent unauthorized access, security incidents, fraud, and other harmful activity.

  • Legal Compliance. To comply with applicable laws, regulations, legal processes, or governmental requests.

  • Business Operations. To process payments, manage our relationship with you, and conduct internal business operations including auditing and reporting.

HOW WE SHARE PERSONAL INFORMATION

We do not sell your Personal Information. We may share Personal Information with the following categories of recipients:

  • Service Providers and Subprocessors. We share Personal Information with third-party vendors who assist us in providing and operating the Service, including cloud infrastructure providers, payment processors, and analytics services. These providers are contractually required to use Personal Information only for the purposes of performing services on our behalf.

  • Affiliates. We may share Personal Information with CrisisCommand affiliates for purposes consistent with this Privacy Policy.

  • Your Organization. If your account is provisioned through an organizational subscription, we may share Account Information and Usage Data with your organization’s account administrator.

  • Legal Obligations. We may disclose Personal Information if required to do so by law, regulation, legal process, or governmental request, or where we believe disclosure is necessary to protect our rights, your safety, or the safety of others, investigate fraud, or respond to a government request.

  • Business Transfers. In connection with a merger, acquisition, reorganization, or sale of all or substantially all of our assets, Personal Information may be transferred to the successor entity. We will provide notice before Personal Information becomes subject to a different privacy policy.

DATA SECURITY

We maintain commercially reasonable administrative, technical, and physical safeguards designed to protect Personal Information from unauthorized access, destruction, loss, alteration, or disclosure. Details of CrisisCommand’s security practices, certifications, and technical safeguards are available through our Trust Center at https://trust.crisiscommand.ai. CrisisCommand has engaged to undergo a SOC 2 Type II examination and will make its SOC 2 report available upon completion, subject to a non-disclosure agreement.

No method of transmission over the internet or method of electronic storage is completely secure. While we strive to use commercially reasonable means to protect your Personal Information, we cannot guarantee its absolute security.

DATA RETENTION

We retain Personal Information for as long as necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law. When determining retention periods, we consider the nature and sensitivity of the information, the purposes for which it was collected, applicable legal requirements, and our legitimate business needs. Account Information associated with a terminated subscription will be retained for a reasonable period to support billing, audit, and legal compliance obligations, after which it will be securely deleted or de-identified.

YOUR PRIVACY RIGHTS

Depending on your jurisdiction, you may have certain rights regarding your Personal Information under applicable privacy laws, including the California Consumer Privacy Act as amended by the California Privacy Rights Act (“CCPA”), the Texas Data Privacy and Security Act (“TDPSA”), and other US state privacy laws. Subject to applicable law, these rights may include:

  • Right to Know and Access. You may request information about the categories and specific pieces of Personal Information we have collected about you, the sources of collection, the purposes of processing, and the categories of third parties with whom we share it.

  • Right to Delete. You may request that we delete Personal Information we have collected from you, subject to certain exceptions.

  • Right to Correct. You may request that we correct inaccurate Personal Information we maintain about you.

  • Right to Opt Out. You may opt out of the sale or sharing of your Personal Information for targeted advertising purposes. CrisisCommand does not sell Personal Information. CrisisCommand does not share Personal Information for cross-context behavioral advertising.

  • Right to Non-Discrimination. We will not discriminate against you for exercising any of your privacy rights.

To exercise any of these rights, please contact us at privacy@crisiscommand.ai. We will respond to verifiable requests within the timeframes required by applicable law (generally 45 days, with a possible 45-day extension upon notice). We may ask you to verify your identity before processing your request.

US State Privacy Disclosures

The following table summarizes our data practices as required by the CCPA and other applicable US state privacy laws.

Category of Personal Information Sources Purposes Disclosed To
Identifiers (name, email, job title) Directly from you; your organization Account creation; communications; billing Service providers; your organization
Internet/Network Activity (IP address, browser, Usage Data) Automatically collected Service operation; security; analytics Service providers
Commercial Information (subscription, billing history) Directly from you; your organization Billing; account management Payment processors; your organization

CHILDREN

The Website and Service are not directed to individuals under the age of 18, and we do not knowingly collect Personal Information from anyone under 18. If we become aware that we have collected Personal Information from a child under 18, we will take steps to delete that information promptly. If you believe that a child under 18 has provided Personal Information to us, please contact us at privacy@crisiscommand.ai.

THIRD-PARTY LINKS AND SERVICES

The Website or Service may contain links to third-party websites, services, or applications that are not operated by CrisisCommand. This Privacy Policy does not apply to third-party services, and we are not responsible for the privacy practices of third parties. We encourage you to review the privacy policies of any third-party services you access.

CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes, we will update the “Last updated” date at the top of this page. If we make material changes, we will provide notice through the Website or by other means as required by applicable law. Your continued use of the Website or Service after any changes to this Privacy Policy constitutes your acceptance of the updated policy.

CONTACT US

If you have questions or concerns about this Privacy Policy or our privacy practices, or if you wish to exercise any of your privacy rights, please contact us at:

CrisisCommand, Inc.

Attn: Privacy

Email: privacy@crisiscommand.ai

13304 Lone Rider Trail

Austin, Texas 78738