Privacy Policy
Last Updated: April 21, 2026
1. Information We Collect
Cartosketch ("we," "our," or "us"), collects information you provide directly to us, such as when you create an account, generate maps, or contact support. This may include your name, email address, and usage data. We also store the referring URL and any marketing campaign parameters (utm_source, utm_medium, utm_campaign, utm_term, utm_content) that were present when you first arrived at the site, so we can understand which channels bring users to the product. This attribution data is recorded in our own database at the moment you create your account and is not shared with third-party analytics providers.
2. How We Use Your Information
We use your information to provide, maintain, and improve our services, process transactions, and communicate with you about updates and offers.
3. Data Sharing
We do not sell your personal data. We may share your information with third-party service providers (e.g., payment processors, AI providers) solely for the purpose of operating our service.
4. Data Security
We implement reasonable security measures to protect your personal information. However, no method of transmission over the Internet is 100% secure.
5. Analytics & Session Recording
With your consent, we use two analytics providers. Google Analytics (GA4) measures traffic and acquisition — page views, referrers, and campaign attribution — across the site. Mixpanel collects product-behavior events (feature-usage actions such as map creation and sketch generation) and records anonymized sessions of your interactions with the interface (e.g., mouse movement, navigation). Together this helps us understand how visitors find the product and how it is used. All text typed into input fields, textareas, and editable elements is masked in session recordings before leaving your browser.
Legal basis (EU/UK users): we process this data based on your consent (GDPR Art. 6(1)(a)). You can grant or withdraw consent at any time. Until consent is granted no analytics provider is loaded; once withdrawn, the providers are not loaded on subsequent visits.
More information about these providers' data practices is available in the Google Privacy Policy and the Mixpanel Privacy Policy .
6. Third-Party Services
Our service integrates with third-party providers, including Mapbox (map rendering), Google and GitHub (sign-in), Polar (payments), Google Gemini (AI image generation), an S3-compatible object storage provider (hosting the generated map images), Google Analytics (traffic analytics — only with your consent), and Mixpanel (product analytics and session recording — only with your consent). Your use of these features is subject to their respective privacy policies.
7. Your Rights (EU/UK/EEA)
If you are located in the European Economic Area, the United Kingdom, or Switzerland, you have the right to access, rectify, erase, restrict, or port your personal data, and to object to processing. To exercise these rights, contact us at [email protected].
8. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page.
9. Contact Us
If you have any questions about this Privacy Policy, please contact us at [email protected].