Privacy Notice
Last updated: 28 June 2026
This Privacy Notice describes how PMO Connect ("we", "us", "our"), trading as StratexHub, collects and processes personal data when you use the StratexHub platform and website (the "Service"). PMO Connect is the data controller for personal data processed in connection with the Service.
1. Categories of personal data we collect
- Account data: name, work email, organisation, role, login credentials.
- Profile and tenant data: business unit, team membership, preferences.
- Customer content: strategy, KPI, portfolio, governance and benefits data you enter.
- Support data: messages, attachments and screenshots you submit through support.
- Usage and device data: log events, IP address, browser, device identifiers, telemetry.
- Cookies: essential cookies for authentication and session management.
Payment card data is collected and processed by our Merchant of Record, Paddle, and is not stored by us.
2. How we use personal data and legal bases
- Provide the Service (contract performance): account creation, tenant access, customer content storage, AI advisor.
- Billing and tax (contract / legal obligation): handled by Paddle as Merchant of Record.
- Security and fraud prevention (legitimate interests): abuse detection, audit logging, Turnstile checks.
- Customer support (contract / legitimate interests): responding to tickets and notifications.
- Product improvement (legitimate interests): aggregated usage analytics.
- Service communications (contract): account, subscription and governance notifications.
3. Sharing of personal data
We share personal data only with:
- Paddle.com Market Ltd — Merchant of Record for all orders; handles checkout, payments, tax compliance, invoicing, subscription management and refunds.
- Hosting and infrastructure providers — Cloudflare (edge / CDN), Supabase (database, auth, storage).
- Email delivery — transactional email provider used to send account and support emails.
- Professional advisers — legal and accounting where necessary.
- Authorities — where required by law.
4. International transfers
Where personal data is transferred outside the UK/EEA, we rely on appropriate safeguards such as Standard Contractual Clauses or adequacy decisions.
5. Retention
We retain account and tenant data for the duration of your subscription and for a reasonable period afterwards to meet legal, tax and audit obligations. Support tickets and logs are retained for up to 24 months. Customer content can be deleted on request.
6. Your rights
Subject to applicable law, you have the right to access, rectify, erase, restrict or object to processing of your personal data, to data portability, to withdraw consent, and to lodge a complaint with a supervisory authority. We aim to respond within one month.
7. Security
We use appropriate technical and organisational measures including encryption in transit, access controls, tenant isolation, row-level security and audit logging.
8. Cookies
We use essential cookies required to sign in and keep you signed in. We do not use third-party advertising cookies.
9. Contact
Questions or requests: support@stratexhub.io.
See also our Terms of Service and Refund Policy.
