Legal

Privacy Policy

Last updated: 2026-07-21

Mantleline is a small-team product that takes privacy seriously. This page is a short, plain-English summary of what we collect and why — a longer, lawyer-reviewed policy is in the works.

What we collect

  • Account data — email and the organisation you're associated with, captured at signup or via SSO.
  • Usage data — page views, search queries, and the vendors you track. Used to improve the product and surface relevance.
  • Operational logs — IP, user-agent, request paths. Retained 30 days for abuse-prevention and debugging.
  • Marketing short-URL telemetry — when you visit one of our branded short URLs (e.g. mantleline.com/ig), we collect technical telemetry including: IP address, geographic location (city-level), device and browser fingerprint, OS, network provider, screen properties, and referer. This data is used for marketing attribution and visitor analytics. We do not sell or share this data with third parties. EU/UK/CA visitors: clicking through constitutes consent under GDPR Art. 6(1)(f) legitimate interest.

What we do not do

  • We do not sell personal data.
  • We do not use third-party advertising networks. There are no ad pixels on the site.
  • We do not train AI models on customer-uploaded vendor research or org-private notes.

Contact

Privacy questions, deletion requests, or data exports: subscriptions@mantleline.com.