Heroic Terms of Use and Privacy Notice
________________________________________
Last updated: March 16, 2026
This document applies to the Heroic-branded websites, web applications, mobile applications, legacy portals, digital memberships, courses, events, assessments, and related services that link to or reference this document, including heroic.us and legacy.heroic.us (collectively, the “Services”). The Services are offered by Heroic Enterprises, Public Benefit Corporation (“Heroic,” “we,” “us,” or “our”). Unless a separate document expressly says otherwise, this document does not govern separately branded websites or offerings that publish their own terms or privacy notice.
Material-Connection Disclosure (FTC Compliance)
In accordance with the Federal Trade Commission’s Guides Concerning the Use of Endorsements and Testimonials in Advertising (16 CFR Part 255), we make the following disclosure:
Heroic.us may contain affiliate links, sponsored content, or references to third-party products and services from which Heroic Enterprises, Public Benefit Corporation receives compensation or other material benefits. When we recommend, review, or mention a third-party product or service on or through the Services, you should assume that we may have a material connection to the provider. Material connections may include, but are not limited to: receiving the product or service at no cost, earning affiliate commissions, advertising fees, or maintaining a business or financial relationship with the provider.
These material connections may influence which products or services we feature; however, we endeavor to provide information that is useful and relevant to our users. Any opinions, findings, or experiences expressed are our own unless otherwise stated. This disclosure applies to all content across the Services, including website pages, emails, social media, courses, and any other communications where a material connection exists.
Individual endorsements or testimonials reflect the personal experience of those individuals and are not intended to represent what every user will achieve. Individual results will vary.
Part I. Terms of Use
1. Acceptance and scope
By accessing or using the Services, creating an account, making a purchase, clicking to accept, or otherwise indicating assent, you agree to these Terms of Use and the Privacy Notice below. If you do not agree, do not use the Services.
These Terms apply to Heroic-branded Services, including heroic.us, legacy.heroic.us, Heroic mobile applications, paid programs, memberships, events, and related support channels that link to or reference these Terms. Additional terms may apply to specific programs, promotions, events, or features. If those additional terms conflict with these Terms, the additional terms control for that specific offering.
2. Eligibility
You must be at least 13 years old to use the Services. If you are under the age of majority in your jurisdiction, you may use the Services only with the involvement of a parent or legal guardian. You may not use the Services if you are barred from doing so under applicable law or if we previously suspended or terminated your access for cause.
3. Accounts and account security
You may need an account to access some Services. You agree to provide accurate, current, and complete information and to keep it updated.
You are responsible for maintaining the confidentiality of your login credentials and for all activity that occurs under your account.
You may not share your account in a way that violates the plan you purchased, impersonate another person, or create an account using false information.
Please notify us promptly if you believe your account has been compromised.
4. Services, content, and purchases
Heroic offers digital content, memberships, courses, training programs, assessments, events, coaching-related materials, and, from time to time, physical goods or other offerings.
We may add, change, suspend, or discontinue all or part of the Services at any time. We will use reasonable efforts to avoid material disruption to paid access during an active period, but we do not guarantee that every feature will remain available indefinitely.
Descriptions of Services, pricing, availability, and included features may change from time to time. We reserve the right to correct errors in descriptions, pricing, or availability.
5. Subscriptions, free trials, automatic renewal, and cancellation
Some Services are offered on a recurring subscription basis. By purchasing a subscription, you authorize us or our payment processors to charge the applicable subscription fee, taxes, and any other disclosed charges using your selected payment method.
We will present material subscription terms at or before checkout, including the billing cadence, price, whether the subscription renews automatically, and how to cancel.
Unless otherwise disclosed at checkout, subscriptions renew automatically for the same billing cycle at the then-current rate until canceled.
If you receive a free trial or introductory offer, your subscription will convert to a paid subscription at the end of that period unless you cancel beforehand.
You may cancel at any time through your account settings, through the applicable app store settings, or by contacting support@heroic.us. We will provide a cancellation mechanism that is at least as easy to use as the method you used to subscribe, where required by applicable law, including the FTC’s Negative Option Rule.
If you purchased through the Apple App Store or Google Play, billing, cancellation, and refund handling for that purchase may be controlled by the applicable platform.
6. Fees, payment processing, taxes, and refunds
You agree to pay all fees and applicable taxes associated with your use of the Services. Payments may be processed by third-party providers such as Stripe, Apple App Store, and Google Play, depending on the purchase path you use.
You authorize us and our payment processors to charge your selected payment method for amounts due.
You must provide current, complete, and accurate billing information.
Unless otherwise required by law or expressly stated at checkout:
- subscription purchases may be canceled prospectively;
- program, event, or one-time purchase refunds are governed by the offer-specific refund terms disclosed at checkout, enrollment, or event registration;
- approved refunds will be issued to the original payment method where practicable.
We may suspend access for failed payments, chargebacks, suspected fraud, or abuse of refund processes.
7. Acceptable use
You may use the Services only for lawful, personal, and authorized purposes. You may not:
- copy, reproduce, distribute, publicly perform, publicly display, sell, resell, or exploit the Services except as expressly permitted;
- reverse engineer, decompile, scrape, frame, mirror, or use automated means to access the Services in a manner that violates law or these Terms;
- interfere with the integrity, security, or operation of the Services;
- upload or transmit malware, harmful code, or content that is unlawful, infringing, defamatory, abusive, harassing, fraudulent, or otherwise objectionable;
- attempt to gain unauthorized access to accounts, systems, or data.
8. Intellectual property
The Services, including software, text, audio, video, graphics, course materials, and other content made available by Heroic, are protected by intellectual property and other laws. Except for limited rights expressly granted to you, we reserve all rights.
9. User submissions and feedback
If you submit feedback, support materials, assessments, uploads, prompts, notes, or other content to us through the Services, you represent that you have the rights necessary to do so.
You retain ownership of content you submit, but you grant us a non-exclusive, worldwide, royalty-free license to host, store, reproduce, adapt, and use that content as reasonably necessary to operate, secure, support, improve, and provide the Services, and as otherwise permitted by applicable law and our Privacy Notice.
If a specific feature clearly indicates that submitted content will be shared with other users or invited participants, you are responsible for what you choose to submit into that feature.
10. Testimonials
We may post testimonials on the Services that contain personal information. Prior to posting a testimonial, we will obtain your consent to use your name and the content of the testimonial. If you wish to update or delete your testimonial, please contact us at support@heroic.us and be sure to include your name, testimonial location, and contact information.
11. Third-party services and links
The Services may link to or integrate with third-party sites, apps, stores, payment processors, event tools, embedded media, or other services. Those third parties operate under their own terms and privacy policies, and we are not responsible for their content, policies, or practices.
12. Disclaimers
THE SERVICES ARE PROVIDED ON AN “AS IS” AND “AS AVAILABLE” BASIS TO THE MAXIMUM EXTENT PERMITTED BY LAW. WE DISCLAIM ALL WARRANTIES, EXPRESS OR IMPLIED, INCLUDING IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, TITLE, AND NON-INFRINGEMENT.
We do not guarantee uninterrupted access, error-free operation, or that the Services will always meet your expectations. Educational, coaching, personal-development, and AI-enabled features are provided for informational purposes only and are not medical, mental-health, legal, tax, employment, or financial advice.
13. Limitation of liability
TO THE MAXIMUM EXTENT PERMITTED BY LAW, HEROIC AND ITS AFFILIATES, OFFICERS, DIRECTORS, EMPLOYEES, CONTRACTORS, LICENSORS, AND SERVICE PROVIDERS WILL NOT BE LIABLE FOR INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, EXEMPLARY, OR PUNITIVE DAMAGES, OR FOR LOST PROFITS, REVENUE, GOODWILL, DATA, OR BUSINESS INTERRUPTION, ARISING OUT OF OR RELATING TO THE SERVICES OR THESE TERMS.
TO THE MAXIMUM EXTENT PERMITTED BY LAW, OUR AGGREGATE LIABILITY FOR CLAIMS ARISING OUT OF OR RELATING TO THE SERVICES OR THESE TERMS WILL NOT EXCEED THE GREATER OF (A) THE AMOUNT YOU PAID TO US FOR THE RELEVANT SERVICE IN THE 12 MONTHS BEFORE THE EVENT GIVING RISE TO THE CLAIM OR (B) US$100.
14. Indemnification
To the maximum extent permitted by law, you will defend, indemnify, and hold harmless Heroic and its affiliates, officers, directors, employees, contractors, licensors, and service providers from and against claims, liabilities, damages, losses, and expenses arising from your misuse of the Services, your breach of these Terms, or your violation of applicable law or another party’s rights.
15. Suspension and termination
We may suspend or terminate access to all or part of the Services if we reasonably believe you violated these Terms, created risk for us or others, failed to pay amounts due, or if suspension is needed for security, legal, or operational reasons.
16. Governing law and dispute resolution
16.1 Governing law
These Terms and any dispute arising out of or relating to them or the Services shall be governed by the laws of the State of Texas, without regard to its conflict-of-laws principles, except to the extent that applicable federal law or the consumer-protection law in your state of residence requires otherwise.
16.2 Informal dispute resolution
Before initiating any formal proceeding, you and Heroic agree to try to resolve the dispute informally for at least sixty (60) days. Either party may begin the informal process by sending a written description of the dispute, including the relief sought, to the other party. For Heroic, send notice to the contact address listed in Section 19. Heroic will send notice to the email address associated with your account.
16.3 Binding individual arbitration
If informal resolution does not resolve the dispute within sixty (60) days, either party may initiate binding individual arbitration administered by the American Arbitration Association (“AAA”) under its then-current Consumer Arbitration Rules, or, if the AAA is unavailable, by JAMS under its Streamlined Arbitration Rules. The arbitration shall be conducted by a single arbitrator, in the English language, and shall take place in Travis County, Texas, or, at your election, by telephone, video conference, or written submissions.
The arbitrator may award the same damages and relief that a court could award under applicable law, but shall not have the power to award relief to anyone who is not a party to the arbitration.
Each party shall bear its own costs of arbitration, except that Heroic will pay the arbitration filing fees and arbitrator fees above the amount you would have paid to file a claim in court. If the arbitrator finds that a claim or defense was frivolous or brought for an improper purpose, the arbitrator may award reasonable attorneys’ fees and costs to the prevailing party.
16.4 Class action and jury trial waiver
YOU AND HEROIC AGREE THAT EACH MAY BRING CLAIMS AGAINST THE OTHER ONLY IN YOUR OR ITS INDIVIDUAL CAPACITY AND NOT AS A PLAINTIFF OR CLASS MEMBER IN ANY PURPORTED CLASS, CONSOLIDATED, MULTI-DISTRICT, OR REPRESENTATIVE PROCEEDING. THE ARBITRATOR MAY NOT CONSOLIDATE MORE THAN ONE PERSON’S CLAIMS AND MAY NOT OTHERWISE PRESIDE OVER ANY FORM OF A CLASS OR REPRESENTATIVE PROCEEDING.
IF FOR ANY REASON A CLAIM PROCEEDS IN COURT RATHER THAN IN ARBITRATION, YOU AND HEROIC EACH WAIVE THE RIGHT TO A JURY TRIAL.
16.5 Small claims exception
Either party may bring a qualifying claim in small claims court in Travis County, Texas (or the small claims court closest to your residence), as an alternative to arbitration. If the claim is removed or transferred to a different court, the arbitration provision shall apply.
16.6 Thirty-day right to opt out of arbitration
You may opt out of the arbitration and class-action-waiver provisions of this Section 16 by sending written notice to Heroic within thirty (30) days of your first acceptance of these Terms. Your notice must include your full name, the email address associated with your account, and a clear statement that you wish to opt out of arbitration. Send to: Heroic Enterprises, Public Benefit Corporation, 9901 Brodie Lane, Suite 160 #1388, Austin, TX 78748 or by email to support@heroic.us with the subject line “Arbitration Opt-Out.” If you opt out, you and Heroic agree that the dispute will be resolved in the state or federal courts located in Travis County, Texas.
16.7 Prevailing party
In any arbitration or litigation under this Section 16, the prevailing party shall be entitled to recover its reasonable attorneys’ fees and costs from the other party, to the extent permitted by applicable law.
16.8 Venue
For any disputes not subject to arbitration (including actions to enforce an arbitration award), the exclusive venue shall be the state or federal courts located in Travis County, Texas, and you consent to personal jurisdiction in those courts.
17. Changes to the Services or these Terms
We may update the Services and these Terms from time to time. If we make material changes, we may provide notice by posting an updated version, by email, through the Services, or by another reasonable method. Continued use after the effective date of the updated Terms constitutes acceptance, unless applicable law requires additional consent. Material changes to the arbitration provision will not apply retroactively to disputes pending at the time of the change.
18. Severability
If any provision of these Terms is held to be invalid, illegal, or unenforceable, the remaining provisions will remain in full force and effect. If the class-action waiver in Section 16.4 is found to be unenforceable with respect to a particular claim, that claim (and only that claim) shall be severed and may proceed in court, while all remaining claims shall be arbitrated.
19. Contact information
Heroic Enterprises, Public Benefit Corporation
9901 Brodie Lane, Suite 160 #1388
Austin, TX 78748
United States
Email: support@heroic.us
Part II. Privacy Notice
1. Scope
This Privacy Notice explains how Heroic collects, uses, discloses, and retains personal information in connection with the Heroic Services covered by this document. It also describes choices and rights that may be available under applicable law.
This public notice covers consumer and business-contact information collected through the covered Services. It does not apply to job applicant, employee, or contractor information, which may be handled under separate notices where required.
This Privacy Notice does not apply to third-party websites, services, or applications that are not controlled by Heroic, even if they are linked from our Services.
2. Categories of personal information we collect
We may collect the following categories of personal information, depending on how you interact with the Services:
Category 1: Identifiers and contact information. Examples: name, email address, username, account ID, postal address, phone number, IP address, device identifiers.
Category 2: Account, profile, and commercial information. Examples: subscription status, program enrollments, purchase history, billing country, preferences, saved settings, customer support history.
Category 3: Payment and transaction information. Examples: transaction records, invoices, receipts, payment status, and limited payment-related details necessary for checkout and fraud prevention. Full payment card details are generally processed by third-party payment providers such as Stripe, Apple App Store, and Google Play.
Category 4: Internet, device, and usage information. Examples: browser type, operating system, app version, referring URLs, pages viewed, feature usage, timestamps, diagnostic information, crash logs, approximate location derived from IP address, cookie identifiers, advertising identifiers, and similar online activity data.
Category 5: Communications and support information. Examples: emails, chat messages, support requests, survey responses, event registration details, webinar participation details, and similar communications.
Category 6: User-submitted content and AI interaction data. Examples: journal entries, notes, uploaded content, prompts, responses, and other content submitted through AI-enabled features or interactive tools made available as part of the Services.
Category 7: Inferences and preference information. Examples: interests, engagement patterns, content preferences, and other inferences drawn from usage to personalize or improve the Services.
Category 8: Sensitive or higher-sensitivity information you choose to provide. Because our Services relate to personal development and wellbeing, you may choose to submit information about goals, habits, mindset, or other personal circumstances. Even though this information may not constitute “sensitive personal information” under applicable law, we treat it with heightened care. We ask that you do not submit emergency information, medical records, or other highly sensitive information unless we specifically request it for a defined support or operational purpose.
3. Sources of personal information
We may collect personal information from the following sources:
- directly from you when you create an account, make a purchase, submit content, contact support, or otherwise interact with the Services;
- automatically when you use the Services through cookies, pixels, server logs, and similar technologies;
- from payment processors and app stores in connection with transactions;
- from analytics, advertising, consent-management, and technology providers that support our Services;
- from event, webinar, or support platforms you use to interact with us;
- from referrals, gifts, or enterprise administrators, if applicable.
4. How we use personal information
We may use personal information for the following purposes:
- provide, operate, maintain, and improve the Services;
- create and administer accounts;
- process purchases, subscriptions, renewals, refunds, and related customer service;
- personalize content and user experience;
- communicate with you about transactions, updates, events, support, security, and administrative matters;
- send marketing communications where permitted by law;
- measure performance, analytics, and campaign effectiveness;
- detect, investigate, prevent, or address fraud, abuse, security incidents, and technical issues;
- comply with legal obligations and enforce our agreements;
- post testimonials with your consent;
- train, test, improve, monitor, and support AI-enabled or automated features, subject to applicable law and internal controls.
5. How we disclose personal information
We may disclose personal information to the following categories of recipients:
- service providers and contractors that help us host, operate, secure, support, and improve the Services;
- payment processors, app stores, fulfillment providers, and event platforms;
- analytics, advertising, and marketing partners, subject to your choices and applicable law;
- professional advisors, auditors, insurers, and corporate transaction counterparties;
- government authorities, regulators, courts, and law enforcement where required or appropriate by law;
- other users or invited participants, but only if a specific feature clearly indicates that content you submit will be visible to them.
Examples of current categories of providers and tools used on covered web experiences may include CookieScript or a similar consent-management tool, Google Analytics and related Google measurement technologies, and payment channels such as Stripe, Apple App Store, and Google Play, depending on the page, purchase path, or feature you use.
We currently utilize:
- Meta/Facebook Pixel
- YouTube Embeds
- Google Analytics
- Kajabi
Sale, sharing, and targeted advertising
Whether certain disclosures of personal information to advertising and analytics partners constitute a “sale” or “sharing” under California or other state privacy laws depends on the specific technologies deployed and how they function. If we deploy cookies, pixels, or similar technologies that share personal information with advertising or analytics partners for cross-context behavioral advertising, those disclosures may be treated as a sale or sharing under the California Consumer Privacy Act as amended by the California Privacy Rights Act (“CCPA/CPRA”) or as targeted advertising under other state privacy laws.
We share personal information for purposes that may constitute ‘sharing’ or ‘targeted advertising’ under applicable law.
To exercise your right to opt out of sale, sharing, or targeted advertising, see the Cookie Policy, the Do Not Sell or Share My Personal Information page, enable Global Privacy Control where supported, or contact us directly.
6. Cookies, advertising, Global Privacy Control, and Do Not Track
We use cookies and similar technologies as described in the Cookie Policy. These technologies help us operate the Services, remember preferences, analyze traffic, prevent fraud, and measure or personalize marketing, subject to your choices and applicable law.
Global Privacy Control (GPC)
Where required by applicable law, we will honor browser-based Global Privacy Control (“GPC”) signals as a valid request to opt out of the sale of, sharing of, or use of personal information for targeted advertising, for the browser or device sending the signal. When a GPC signal is detected, our consent-management platform (currently CookiePro) will suppress non-essential cookies and, where technically supported, communicate the opt-out preference downstream to applicable advertising or analytics partners.
A GPC signal generally applies to that browser or device. It may not automatically apply across other browsers, devices, or authenticated account environments unless the applicable law requires cross-device application and our systems support that linkage.
Do Not Track (DNT)
We do not currently respond to older “Do Not Track” browser settings because there is no consistent, finalized industry standard for honoring them. DNT is a different signal from GPC. GPC has a clear legal basis under California law and other state privacy laws; DNT does not.
Downstream opt-out propagation
Where required by law and technically supported by our systems and vendor configurations, we will process opt-out requests through our consent and request-handling workflows and communicate those choices to applicable advertising or analytics partners for future covered processing.
7. AI features and higher-sensitivity content
If you use AI-enabled features (such as the AI Coach or similar tools), we may store prompts, responses, metadata, and related account context. We use this data to:
- provide and operate the AI feature;
- improve the quality, safety, and accuracy of AI-generated responses;
- investigate and resolve issues, errors, or misuse reports;
- provide customer support related to AI interactions.
Access and controls
Access to AI interaction data is limited to authorized personnel, vendors, and systems with a legitimate operational need, such as support, security, quality, and product teams. Access is governed by role-based access controls, confidentiality requirements, and access logging or monitoring as appropriate. AI interaction data is not monitored in real-time and is only reviewed when necessary for the purposes described above.
Retention of AI interaction data
AI interaction records are retained as needed to provide the feature, support quality improvement, investigate misuse, and meet legal obligations. AI interaction records may be aggregated and/or de-identified in order to improve the Services of Heroic and our partners.
Do not submit emergency information, protected health information you do not want stored, or other highly sensitive data into AI tools unless we expressly ask for it for a defined operational purpose.
8. Retention
We retain personal information for as long as reasonably necessary for the purposes described in this Privacy Notice, including to provide the Services, comply with law, resolve disputes, enforce agreements, document compliance, and protect our rights.
Retention periods vary by category and context:
- account and profile data: while your account remains active and for a reasonable period afterward to satisfy legal, accounting, or operational obligations;
- transaction, tax, accounting, and audit records: typically for the period required by applicable law and standard accounting practice (generally 7 years for U.S. tax records);
- customer support and business correspondence: for a reasonable period to support operations, resolve disputes, and improve service;
- marketing preference and suppression records: as long as needed to honor your preferences and document compliance;
- analytics and advertising identifiers: according to tool settings, legal requirements, and business need;
- AI interaction records and user-submitted content: as described in Section 7 above;
- legal-hold and investigation records: for the duration of any active legal hold, investigation, or dispute.
When retention is no longer necessary, we will either delete, aggregate, or de-identify the information, or, if this is not immediately possible (for example, because it has been stored in backup archives), we will securely store and isolate it from further processing until deletion is possible.
9. Security
We use administrative, technical, and physical safeguards designed to protect personal information. These include access controls, encryption in transit, monitoring, and vendor security requirements. No method of transmission over the internet or method of storage is completely secure, so we cannot guarantee absolute security. You should only access the Services within a secure environment.
10. Your choices and rights
Marketing emails
You may unsubscribe from promotional emails by using the unsubscribe link in the message or by contacting us. We may still send transactional or service-related communications.
Account information
If you have an account, you may update certain profile information through account settings. If you wish to review, change, or terminate your account, you may contact support@heroic.us.
Upon request to terminate your account, we will deactivate or delete your account and information from our active databases. However, we may retain some information to prevent fraud, troubleshoot problems, assist with investigations, enforce our Terms, or comply with applicable legal requirements.
Cookies and tracking technologies
You may manage your cookie preferences through the cookie consent banner or cookie-preference center provided on the Services (currently powered by CookiePro). Most browsers also allow you to set preferences for cookies. If you choose to remove or reject cookies, this could affect certain features of the Services.
Privacy rights
Depending on where you live, you may have rights to:
- request access to, or a copy of, certain personal information we hold about you;
- request deletion of personal information;
- request correction or rectification of inaccurate personal information;
- request portability of personal information in a structured, commonly used format;
- opt out of the sale, sharing, or use of personal information for targeted advertising or certain profiling;
- limit certain uses of sensitive personal information;
- appeal a decision we make regarding your privacy request.
You may submit privacy requests by contacting us at support@heroic.us or by using any privacy request mechanism we make available through the Services.
We will respond within the time required by applicable law (for example, 45 days under the CCPA/CPRA, with the possibility of a 45-day extension where reasonably necessary and with notice to you; 30 days under the GDPR/UK GDPR, with the possibility of a 60-day extension for complex requests).
We may verify your identity before processing certain requests. For access and deletion requests, we may require you to provide information that matches our records. For opt-out-of-sale/sharing requests, we generally do not require full identity verification, though we may take reasonable steps to prevent fraud.
If we deny a request that is eligible for appeal under applicable law, we will tell you how to appeal.
Authorized agents
If you wish to use an authorized agent to submit a privacy request on your behalf, the agent must provide proof of authorization (such as a signed written permission or a power of attorney). We may also require you to verify your identity directly with us and confirm that you authorized the agent, unless the agent has a power of attorney under applicable law.
11. U.S. state privacy disclosures
Residents of certain U.S. states, including but not limited to California, Virginia, Colorado, Connecticut, Utah, Texas, Montana, Oregon, Delaware, Iowa, Nebraska, New Hampshire, New Jersey, Tennessee, Minnesota, Maryland, and Indiana, may have specific privacy rights under their state’s consumer privacy laws.
Subject to applicable law and any exceptions, these may include the right to know what personal information we collect, use, disclose, sell, or share; the right to request deletion or correction; the right to opt out of sale, sharing, targeted advertising, or certain profiling; the right to limit certain sensitive information uses; and the right not to receive discriminatory treatment for exercising privacy rights.
In the preceding 12 months, we may have collected the categories of personal information described in Section 2 and disclosed them to the categories of recipients described in Section 5. Whether any of those disclosures constitute a “sale” or “sharing” depends on the technologies deployed, as discussed in Section 5 above.
CCPA/CPRA Categories of Personal Information
The following table maps our data practices to the categories defined by Cal. Civ. Code §1798.140. The “Sold/Shared” column indicates whether the category may have been sold or shared (as defined by the CCPA/CPRA) in the preceding 12 months.
| Cat. | Statutory Description | Collected | Examples | Sold/Shared |
|---|---|---|---|---|
| A | Identifiers | YES | Name, email, username, IP address, device IDs | YES |
| B | Personal info per Cal. Civ. Code §1798.80(e) | YES | Name, email, billing info, purchase history | YES |
| C | Protected classifications | YES | Gender, date of birth (if provided) | YES |
| D | Commercial information | YES | Subscription records, purchase history, invoices | YES |
| E | Biometric information | NO | Not collected | NO |
| F | Internet or network activity | YES | Pages viewed, feature usage, click data, referral URLs | YES |
| G | Geolocation data | YES | Approximate location derived from IP address | YES |
| H | Audio, electronic, visual info | NO | Not collected through the Services | NO |
| I | Professional or employment info | NO | Not collected through consumer Services | NO |
| J | Education information | NO | Not collected | NO |
| K | Inferences | YES | Content preferences, engagement patterns, personalization data | YES |
Sensitive personal information under CPRA
The CPRA defines certain categories of data as “sensitive personal information.” Based on our current practices, we may process the following categories of sensitive personal information:
- account log-in credentials (username/email combined with password) in order to authenticate you to the Services;
- contents of communications (such as emails, support messages, and AI interaction data) where Heroic is a party to or intended recipient of the communication.
We use these categories of sensitive personal information only for purposes permitted by the CPRA, such as performing the Services you requested, ensuring security, and short-term transient use. We do not use or disclose sensitive personal information for the purpose of inferring characteristics about you beyond what is necessary to provide the Services.
To opt out of the sale or sharing of personal information, use the mechanisms described in the Cookie Policy and the Do Not Sell or Share My Personal Information page, enable GPC where supported, or contact us directly.
12. European Economic Area, United Kingdom, and Switzerland
If you are located in the European Economic Area (“EEA”), the United Kingdom, or Switzerland, the General Data Protection Regulation (“GDPR”) or the UK GDPR may apply. We process your personal data on the following legal bases:
- Performance of a contract: where processing is necessary to provide the Services you have requested or to take steps at your request before entering into a contract;
- Legitimate interests: where processing is necessary for our legitimate business interests (such as fraud prevention, security, analytics, and improving the Services), provided those interests are not overridden by your data protection rights;
- Consent: where you have given specific, informed consent to processing for a defined purpose (for example, consent to non-essential cookies);
- Legal obligation: where processing is necessary to comply with applicable law.
Your rights under GDPR/UK GDPR
Subject to applicable law and any exceptions, you may have the right to:
- request access to and a copy of your personal data;
- request rectification of inaccurate or incomplete personal data;
- request erasure of personal data (“right to be forgotten”);
- request restriction of processing;
- object to processing based on legitimate interests or direct marketing;
- request portability of personal data in a structured, commonly used, machine-readable format;
- withdraw consent at any time, without affecting the lawfulness of processing before withdrawal.
To exercise these rights, contact us at support@heroic.us. We will respond within 30 days (extendable by 60 days for complex requests, with notice to you).
If you are a resident of the EEA and believe we are unlawfully processing your personal data, you have the right to lodge a complaint with your local data protection supervisory authority. A list of EEA supervisory authorities is available at https://ec.europa.eu/justice/data-protection/bodies/authorities/index_en.htm.
If you are a resident of Switzerland, the contact details for the Federal Data Protection and Information Commissioner are available at https://www.edoeb.admin.ch/edoeb/en/home.html.
13. Google Maps
We may use Google Maps APIs on certain pages or features of the Services. Use of Google Maps is subject to Google’s Terms of Service (https://policies.google.com/terms) and Google’s Privacy Policy (https://policies.google.com/privacy). We may obtain and store on your device approximate location information through Google Maps APIs. You may revoke consent for location collection by adjusting your device settings or by contacting us.
14. Public features, forums, and contests
If the Services include forums, public discussion features, user profiles, or similar functionality, personal information you share in those spaces may be visible to other users and may be publicly available outside the Services. You are responsible for the information you choose to share in public features.
If we run contests, sweepstakes, or giveaways, the applicable rules will be posted at the time of the promotion and will identify any additional data collection, use, or sharing specific to that promotion.
15. Session replay and behavioral analytics
We may use session replay or behavioral analytics tools to record and play back user interactions with the Services, such as mouse movements, clicks, scrolls, and page views. These tools help us identify usability issues, diagnose errors, and improve the user experience. Session replay data may include on-screen content visible during the session but is configured to mask or exclude sensitive fields such as passwords and payment information.
16. Children’s privacy
The Services are not directed to children under 13, and we do not knowingly collect personal information from children under 13 without appropriate legal authorization. If you believe a child under 13 has provided personal information to us, please contact us so we can investigate and take appropriate action. If we learn that we have collected personal information from a child under 13 without verification of parental consent, we will take steps to delete that information promptly.
17. International data transfers
Heroic is based in the United States and may process personal information in the United States and other countries where we or our service providers operate. Those jurisdictions may have data protection laws different from those in your country of residence. Where required by applicable law, we will implement appropriate safeguards for cross-border transfers, such as Standard Contractual Clauses approved by the European Commission.
18. Changes to this Privacy Notice
We may update this Privacy Notice from time to time. The “Last updated” date above indicates when this Notice was last revised. Material changes may be communicated by posting an updated version, by email, through the Services, or by another reasonable method.
19. Contact us
Heroic Enterprises, Public Benefit Corporation
9901 Brodie Lane, Suite 160 #1388
Austin, TX 78748
United States
Email: support@heroic.us