Privacy Policy
This policy describes how DoorKik (doorkik.com) handles information when you use our website and product. Contact: hello@doorkik.com.
1. What we collect
- Account data : email, name, workspace settings you provide at sign-in or onboarding.
- Usage data : searches, map interactions, feature use, billing events, and device/browser basics.
- Research artifacts : public business information and outreach drafts generated for your workspace.
- Integrations : if you connect HubSpot, Google, or Microsoft, we receive tokens and data you authorize.
- Payment data : processed by Stripe; we do not store full card numbers.
2. How we use data
- Provide map search, research, drafting, and workspace features.
- Secure accounts, prevent abuse, and improve reliability.
- Process subscriptions and research credits.
- Communicate product and support messages (including to hello@doorkik.com replies).
3. Public research sources
DoorKik uses public map and web sources (and optional enrichment vendors when configured) to research businesses. We do not sell personal data of third-party contacts as a standalone list product. You are responsible for lawful use of outreach under applicable laws (including CAN-SPAM, CASL, GDPR where relevant).
4. Sharing
We share data with processors that help run the product (hosting, database, analytics, payments, email delivery, CRM when you connect it). We do not sell your personal information.
5. Cookies and analytics
DoorKik uses cookies extensively so the product, analytics, and marketing tools work across visits. On first visit you can Accept all cookies, choose Essential only, or open Preferences. You can reopen preferences anytime via the Cookies control.
Cookie categories
- Essential : session security and consent:
first-party flags (
dk_cookie_consent_v1,dk_vid,dk_sid), and an HttpOnly refresh cookie (dk_rt/__Secure-dk_rt) used only to keep you signed in (Secure, SameSite=Lax, short-lived access tokens, rotation on use). - Cloudflare Web Analytics : privacy-oriented performance and traffic metrics (cookie-free beacon via Cloudflare; may also be injected at the edge). See Cloudflare Web Analytics.
- Google Analytics : GA4 measurement cookies when you allow analytics (e.g.
_ga,_ga_*). - PostHog : product analytics when you allow analytics (e.g.
ph_*_posthog). PostHog also records session replay — a reconstruction of your visit (pages, clicks, scrolling) that we review to find usability problems. Two kinds of content are masked out of every recording: everything you type into a form field, and the business, contact and billing data the app displays — search results, the lead list and lead detail, map popups, invoices and usage. We mask the latter because it describes third parties who never agreed to appear in a recording. Replays are stored by PostHog in the United States. See PostHog's privacy policy. Choosing Essential only, or unticking analytics in Preferences, stops both the analytics and the recording. - Google Ads / marketing : ads measurement and personalization when enabled (e.g.
_gcl_*, Ads tags). - HubSpot : CRM tracking when enabled (e.g.
__hstc,__hssc,__hssrc,hubspotutk). - Attribution : first-party UTM / click IDs (
dk_utm_*,dk_gclid) to understand how you found DoorKik.
Third-party cookies are set by Google, PostHog and HubSpot under their policies. See Google, PostHog and HubSpot.
6. Retention
Account and workspace data is kept while your account is active and as needed for legal, billing, and security purposes. You may request deletion at hello@doorkik.com.
7. Security
We use industry-standard safeguards (HTTPS, access controls, least-privilege service credentials). No method is 100% secure.
8. International transfers
Infrastructure may process data in the United States and other regions where our providers operate.
9. Children
DoorKik is not directed to children under 16.
10. Changes
We may update this policy. Material changes will be reflected by the date above and, when appropriate, product notice.
11. Contact
hello@doorkik.com ยท https://doorkik.com