Back to Home

Privacy Policy

Last Updated: January 20, 2026

Contact: privacy@optixlog.com

1. Introduction

Welcome to OptixLog ("we," "our," or "us"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our photonics simulation platform and services (the "Service").

Data Controller: OptixLog
Contact: privacy@optixlog.com

By using OptixLog, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our Service.

2. Our Role Under GDPR

OptixLog acts as a Data Processor when handling simulation data, project files, and computational results you upload or generate through our Service. Your organization (or you as an individual user) is the Data Controller for this content.

OptixLog acts as a Data Controller for:

  • Account and authentication information
  • Billing and subscription data
  • Usage analytics and service performance data
  • Onboarding survey responses

3. Information We Collect

3.1 Personal Information You Provide

Account Registration Data:

  • Email address (required)
  • Name
  • Password (hashed and salted - we never store plaintext passwords)
  • Profile image (optional)

Payment Information:

  • We use Stripe for payment processing
  • Stripe Customer ID is stored in our database
  • Credit card details are stored exclusively by Stripe (PCI DSS compliant)
  • Billing address and payment history

3.2 Simulation and Project Data

We process your simulation data including:

  • Project names and descriptions
  • Simulation run configurations (stored as JSON)
  • Python code files uploaded or generated
  • Simulation metrics and results
  • Visualization files (images, plots, logs)
  • GDS/GDSII layout files

3.3 Third-Party Services

ServicePurposeData Shared
StripePayment processingName, email, payment info
SupabaseDatabase & storageAll user data, simulation files
Google OAuthAuthenticationEmail, profile picture
OpenAICode analysisCode snippets
VercelHosting & analyticsWeb analytics, performance

9. Your Rights Under GDPR

As a data subject, you have the following rights:

Right to Access (Article 15)

Request a copy of all personal data we hold about you.
How: Email privacy@optixlog.com with subject "GDPR Access Request"

Right to Erasure (Article 17)

Delete your account and all associated data.
How: Settings → Account → Delete Account or email privacy@optixlog.com

Right to Data Portability (Article 20)

Receive your data in a structured, machine-readable format (JSON).
How: Email privacy@optixlog.com with subject "Data Export Request"

Response Time: We will respond to all requests within 30 days.

Right to Lodge a Complaint

If you believe we are not complying with GDPR, you can file a complaint with your national data protection authority:

  • Netherlands: Autoriteit Persoonsgegevens (https://autoriteitpersoonsgegevens.nl)
  • EU-wide list: https://edpb.europa.eu/about-edpb/board/members_en

10. Security Measures

Technical Safeguards

  • Encryption in transit (HTTPS/TLS 1.3)
  • Encryption at rest (database encryption)
  • Password hashing (bcrypt/Argon2)
  • API key security (hashed and salted)
  • Rate limiting against brute-force

Organizational Measures

  • Role-based access control (RBAC)
  • Employee training on data protection
  • Confidentiality agreements (NDAs)
  • Incident response plan
  • Regular security audits

15. Contact Us

Data Protection Contact

Email: privacy@optixlog.com
Response Time: Within 2 business days

General Inquiries

Website: https://optixlog.com
Support: founder@optixlog.com

Mailing Address

OptixLog
1111B S Governors Avenue STE 48003
Dover, DE 19904
United States

Related Legal Documents

By using OptixLog, you acknowledge that you have read and understood this Privacy Policy.