Meshless, Inc. ("Meshless", "we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard information when you use our Service. Please read this policy carefully.
1. Information We Collect
Information you provide
- Account information — name, email address, and password when you register.
- Billing information — payment card details processed by Stripe; we do not store raw card numbers.
- Uploaded content — 3D model files (
.glb,.gltf) you upload for processing. - Communications — messages you send to our support team.
Information collected automatically
- Usage data — pages visited, features used, API calls made, timestamps.
- Log data — IP address, browser type, operating system, referring URLs.
- Cookies and similar technologies — session identifiers, analytics cookies. See Section 6 for details.
Information from third parties
We may receive information about you from analytics providers, payment processors, and authentication providers if you use social login (e.g., Google OAuth).
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Process transactions and send billing-related communications
- Respond to support requests and technical inquiries
- Monitor usage patterns to prevent abuse and improve reliability
- Send product updates and marketing communications (you may opt out at any time)
- Comply with legal obligations
We do not sell your personal information to third parties.
3. How We Share Your Information
We may share your information with:
- Service providers — third-party vendors who assist in operating our platform (e.g., AWS for storage, Stripe for payments, Datadog for monitoring). These providers are contractually bound to process data only as instructed.
- Legal authorities — when required by law, subpoena, or to protect the safety, rights, or property of Meshless or others.
- Business transfers — in the event of a merger, acquisition, or sale of assets, your information may be transferred. We will notify you before your data is subject to a different privacy policy.
4. Data Retention
| Data type | Retention period |
|---|---|
| Account data | Duration of account + 30 days after deletion |
| Uploaded 3D models | Deleted within 24h of job completion unless stored on Pro/Enterprise plan |
| Rendered WebP frames | CDN TTL per plan; purged upon account deletion |
| Billing records | 7 years (tax compliance) |
| Server logs | 90 days |
5. Data Security
We implement industry-standard security measures, including:
- AES-256 encryption for uploaded model files at rest
- TLS 1.3 for all data in transit
- Signed CDN URLs with configurable expiry for rendered frames
- Regular third-party penetration testing
- SOC 2 Type II certification (in progress)
Despite these measures, no transmission over the internet is 100% secure. We cannot guarantee absolute security.
6. Cookies
We use the following categories of cookies:
| Category | Purpose | Can opt out |
|---|---|---|
| Strictly necessary | Session authentication, CSRF protection | No |
| Analytics | Aggregate usage statistics (Plausible Analytics — no cross-site tracking) | Yes |
| Preferences | UI settings, locale | Yes |
We do not use advertising or third-party tracking cookies.
7. Your Rights
Depending on your location, you may have the following rights:
- Access — request a copy of the personal data we hold about you.
- Correction — request correction of inaccurate data.
- Deletion — request deletion of your personal data ("right to be forgotten").
- Portability — receive your data in a machine-readable format.
- Objection — object to processing based on legitimate interests.
- Withdrawal of consent — withdraw consent at any time where processing is based on consent.
To exercise any of these rights, email privacy@meshless.io. We will respond within 30 days.
8. International Transfers
Meshless is based in the United States. If you access the Service from outside the US, your data may be transferred to and processed in the US. For EU/EEA users, we rely on Standard Contractual Clauses (SCCs) approved by the European Commission.
9. Children's Privacy
The Service is not directed to children under 16. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, contact us immediately.
10. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or a banner on the dashboard. The "Last updated" date at the top reflects the most recent revision.
11. Contact
For privacy-related questions or to exercise your rights:
Meshless, Inc.
privacy@meshless.io
Data Protection Officer: dpo@meshless.io