Privacy Policy
Last Updated: October 31, 2025
Fetcha Weather ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our weather data API service.
1. Information We Collect
1.1 Information You Provide
When you create an account or use our Service, we collect:
- Account Information: Email address, password (encrypted), name
- Payment Information: Billing details processed securely through Stripe (we do not store credit card numbers)
- Communication Data: Messages you send us through support channels
1.2 Automatically Collected Information
When you use our API, we automatically collect:
- API Usage Data: Request timestamps, endpoints accessed, response times, error codes
- Technical Data: IP address, browser type, device information, operating system
- Performance Data: API performance metrics, caching statistics
1.3 Information We Do NOT Collect
We do not collect:
- The actual content or purpose of your API requests
- Personal data of your end-users
- Sensitive personal information (race, religion, health data, etc.)
2. How We Use Your Information
We use collected information for:
2.1 Service Provision
- Creating and managing your account
- Processing API requests
- Enforcing rate limits and quotas
- Generating usage statistics
2.2 Billing & Payment
- Processing subscription payments
- Sending billing-related communications
- Managing upgrades and downgrades
2.3 Service Improvement
- Monitoring and improving API performance
- Identifying and fixing technical issues
- Analyzing usage patterns to enhance features
2.4 Communication
- Responding to your inquiries
- Sending service updates and notifications
- Providing technical support
- Sending important security or legal notices
2.5 Legal Compliance
- Complying with legal obligations
- Preventing fraud and abuse
- Enforcing our Terms of Service
3. Data Sharing & Disclosure
3.1 Third-Party Service Providers
We share information with trusted third parties who assist us in operating our Service:
- Stripe: Payment processing (PCI-DSS compliant)
- Cloud Hosting: Railway/AWS/Google Cloud for infrastructure
- Email Service: SendGrid or AWS SES for transactional emails
- Monitoring: Error tracking and performance monitoring services
These providers are contractually obligated to protect your data and use it only for the purposes we specify.
3.2 Legal Requirements
We may disclose your information if required to:
- Comply with legal obligations or court orders
- Protect our rights, property, or safety
- Prevent fraud or security threats
- Respond to law enforcement requests
3.3 Business Transfers
If we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
3.4 We Do NOT Sell Your Data
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
4. Data Security
We implement appropriate security measures to protect your information:
4.1 Technical Measures
- Encryption of data in transit (TLS/SSL)
- Encryption of sensitive data at rest
- Secure password hashing (bcrypt)
- API key authentication and authorization
- Regular security audits and updates
4.2 Access Controls
- Restricted access to personal data
- Employee background checks and training
- Multi-factor authentication for internal systems
4.3 Incident Response
In the event of a data breach, we will:
- Promptly investigate and contain the breach
- Notify affected users within 72 hours
- Report to relevant authorities as required
- Take steps to prevent future incidents
5. Data Retention
We retain your information for as long as necessary to provide our Service:
- Account Data: Retained while your account is active, plus 30 days after deletion
- Usage Logs: Retained for 12 months for billing and troubleshooting
- Payment Records: Retained for 7 years to comply with tax laws
- Support Communications: Retained for 3 years
6. Your Rights & Choices
6.1 Access & Correction
You have the right to:
- Access your personal information
- Update or correct inaccurate data
- Request a copy of your data
6.2 Data Deletion
You can request deletion of your account and personal data by:
Note: Some data may be retained as required by law or for legitimate business purposes.
6.3 Marketing Communications
You can opt-out of marketing emails using the unsubscribe link. Note: We will still send transactional and service-related emails.
6.4 API Keys
You can:
- Generate new API keys
- Revoke existing keys
- Monitor API usage
7. Cookies & Tracking
7.1 Cookies We Use
- Essential Cookies: Required for authentication and basic functionality
- Performance Cookies: Help us understand how you use our Service
- Functional Cookies: Remember your preferences
7.2 Managing Cookies
You can control cookies through your browser settings. Disabling essential cookies may affect Service functionality.
8. Children's Privacy
Our Service is not intended for children under 18. We do not knowingly collect personal information from children. If we discover we have collected such information, we will delete it immediately.
9. International Data Transfers
Your information may be transferred to and processed in countries other than Australia. We ensure appropriate safeguards are in place for such transfers.
10. GDPR Compliance (EU Users)
If you are in the European Union, you have additional rights under GDPR:
- Right to data portability
- Right to object to processing
- Right to restrict processing
- Right to lodge a complaint with supervisory authorities
11. California Privacy Rights (CCPA)
California residents have the right to:
- Know what personal information is collected
- Know if personal information is sold or disclosed
- Opt-out of the sale of personal information (we do not sell data)
- Request deletion of personal information
- Non-discrimination for exercising privacy rights
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- Posting the updated policy with a new "Last Updated" date
- Sending email notification for significant changes
Continued use of the Service after changes constitutes acceptance of the updated policy.
13. Contact Us
For questions about this Privacy Policy or to exercise your privacy rights, contact us at:
14. Data Protection Officer
For GDPR-related inquiries, you can contact our Data Protection Officer at:
Summary: We collect minimal data necessary to provide our Service, use it responsibly, protect it with strong security measures, and respect your privacy rights. We do not sell your data.
← Back to Home |
Terms of Service |
API Documentation