Privacy Policy
We built Alpely to help service businesses run better, and that starts with treating people's information with respect. This policy explains what personal information we collect on alpely.com, why we collect it, who helps us process it, and the rights you have over it. We wrote it to be read: short sections, plain language, no fine-print games.
If anything here is unclear, write to us at privacy@alpely.com. A real person reads that inbox.
Who we are
Alpely is operated by ADCM IT Services INC, doing business as Alpely, a company based in California, United States. For everything this policy covers, we are the data controller: the party that decides how and why your personal information is collected and used.
You can reach us about anything in this policy — questions, requests, complaints — at privacy@alpely.com.
What this policy covers
This policy covers the public website alpely.com. That includes everyone who visits the site and everyone who joins our launch waitlist.
It does not cover the websites of the client businesses that will run on Alpely. When those sites launch, they will operate under their own privacy framework, published separately. Until then, alpely.com is the only site this policy describes.
Information we collect
We collect very little, and every piece has a clear job. Today, alpely.com collects three things:
- Your email address, if you join the waitlist. When you use the "keep me posted" form, we store your email so we can tell you when Alpely launches. We send those emails through Resend, our email provider. That is the only thing we do with it — no newsletters you did not ask for, and no handing it to anyone else.
- Usage and analytics data, only if you say yes. If you explicitly accept analytics through our consent banner, we collect information about how you use the site — pages viewed, approximate region, browser and device type — through PostHog. If you decline, or simply ignore the banner, we collect none of it.
- Team accounts for our internal portal. Alpely founders and team members sign in to a private internal portal, with authentication handled by Supabase. This applies only to people who work on Alpely. Visitors cannot create accounts, and there are no public user accounts or profiles on alpely.com.
Just as important is what we do not collect. We do not collect sensitive categories of personal information — no health data, no precise geolocation, no government identifiers, no financial account numbers. We do not buy information about you from data brokers, and we do not combine the little we have with outside sources to build a profile of you.
How we use your information
We use the information described above for four purposes, each tied to a basis for processing:
| Purpose | What it means | Basis |
|---|---|---|
| Operating the site | Serving pages and keeping alpely.com available, fast, and working | Legitimate operation of the service |
| Telling you about the launch | Emailing waitlist members when Alpely is ready | Your consent, given when you sign up |
| Improving the product | Understanding which pages people visit and where the site falls short | Your consent, given through the analytics banner |
| Security | Detecting abuse and protecting the site and our infrastructure | Legitimate interest in keeping the service safe |
That is the whole list. We do not use your information to build advertising profiles, we do not send marketing beyond the launch updates you asked for, and we do not make automated decisions about you.
Service providers we work with
Like every modern website, alpely.com runs with the help of a small set of companies. They process data on our behalf, under contract, and only for the purposes described in this policy:
| Provider | What it does for us |
|---|---|
| Resend | Sends our waitlist and notification emails |
| PostHog | Product analytics — active only if you consent |
| Vercel | Hosts the website |
| Cloudflare | DNS and content delivery |
| Sentry | Error reporting, so we can find and fix bugs |
| Supabase | Authentication for our internal team portal |
Two things we want to be unambiguous about:
- We do not sell your personal information. Not to advertisers, not to data brokers, not to anyone.
- We do not share your personal information for cross-context behavioral advertising. In the language of California's CPRA, we neither "sell" nor "share" personal information.
We may disclose information if the law genuinely requires it — a valid court order, for example — and if that ever happens, we will disclose the minimum necessary.
Cookies
We keep cookies to a minimum: one cookie that remembers your consent choice, a session cookie for team members signed in to our internal portal, and analytics cookies only if you accept them. The full inventory — names, purposes, durations, and how to change your mind — lives in our Cookie Policy.
How long we keep your information
- Waitlist emails. We keep them until Alpely launches, plus a reasonable period afterward to complete launch communications — or until you ask us to delete yours, whichever comes first.
- Analytics data. Retained according to our PostHog retention configuration, then deleted or aggregated in anonymized form.
- Team portal accounts. Kept while the person works with Alpely.
You can ask us to delete your information at any time by writing to privacy@alpely.com. You do not need to give a reason.
Your rights
Wherever you live, we extend the same core rights over your personal information:
- Know and access. Ask us what information we hold about you and receive a copy of it.
- Delete. Ask us to erase your information.
- Correct. Ask us to fix information that is inaccurate.
- Portability. Receive your information in a structured, commonly used format you can take elsewhere.
- Opt out. Withdraw your consent for analytics at any time, or unsubscribe from waitlist emails with a single click.
- No discrimination. Exercising any of these rights will never change how we treat you.
To exercise any of them, email privacy@alpely.com. We respond within the timeframes required by applicable law. To protect you, we may take reasonable steps to verify your identity before acting on a request — usually as simple as confirming the request from the email address we have on file. If you submit a request through an authorized agent, we may ask for proof of that authorization.
California privacy rights (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA), gives you specific rights: to know what personal information we collect and how we use it, to delete it, to correct it, to opt out of its sale or sharing, to limit the use of sensitive personal information, and to not be discriminated against for exercising any of these rights.
Here is how that maps to alpely.com. The categories of personal information we collect are identifiers (your email address, if you join the waitlist) and internet activity information (analytics, only with your consent). We collect both directly from you. We disclose them only to the service providers listed above, for the purposes listed above. We do not collect sensitive personal information as the CPRA defines it, so there is no use of it to limit.
To exercise your California rights, email privacy@alpely.com. We will verify your request and respond within the periods the CCPA sets.
Do Not Sell or Share My Personal Information
We do not sell personal information, and we do not share it for cross-context behavioral advertising. We have not done either in the preceding twelve months. Because there is no sale or sharing to opt out of, we do not operate a dedicated opt-out page.
We do honor opt-out preference signals. If your browser sends a Global Privacy Control (GPC) or Do Not Track signal, we treat it as a refusal of analytics: PostHog stays off for your visit, regardless of what the consent banner would otherwise ask.
Shine the Light
California Civil Code §1798.83, known as the "Shine the Light" law, lets California residents ask what personal information a business disclosed to third parties for those parties' direct marketing. Our answer is short: we do not disclose personal information to any third party for their direct marketing purposes. You may still send a Shine the Light request to privacy@alpely.com, and we will confirm this in writing.
ARCO rights in Mexico
If you are in Mexico, the Ley Federal de Protección de Datos Personales en Posesión de los Particulares (LFPDPPP) grants you the ARCO rights: Acceso (access to your data), Rectificación (correction), Cancelación (deletion), and Oposición (objection to processing). All four work through the same channel, privacy@alpely.com, and we respond within the timeframes the law establishes.
Other regions
If you are in the United Kingdom, the UK GDPR applies; in Canada, PIPEDA; in Australia, the Privacy Act. In each case you hold essentially the same rights described in this policy — access, correction, deletion, and withdrawal of consent — and the channel to exercise them is the same: privacy@alpely.com.
International data transfers
Alpely and the providers listed above process data in the United States. If you visit alpely.com from outside the US, your information is transferred to and processed in the United States, where privacy laws may differ from those in your country. The commitments in this policy apply to your data wherever you are.
Children
alpely.com is not directed to anyone under 16 years of age, and we do not knowingly collect personal information from children under 16. If you believe a child has given us personal information, write to privacy@alpely.com and we will delete it.
Changes to this policy
When we update this policy, we will publish the new version on this page with a new effective date — the one shown at the top of this page. If a change materially affects how we handle waitlist information, we will also tell waitlist members by email before it takes effect.
Contact
For anything related to this policy or your personal information:
ADCM IT Services INC, d/b/a Alpely — California, United States.
Email: privacy@alpely.com