How Axon collects and protects personal data
Last updated: February 16, 2026. This policy explains our data practices for customers, users, and website visitors.
On this page
Quick links to each section
Scope
This Privacy Policy describes how Axon handles personal data when you visit our website, create an account, use our platform, or contact us.
This policy applies to Axon's public website, dashboard, and product modules (Orbis, Locus, Atlas, and Civitas).
Data We Collect
Depending on how you use Axon, we may process account data (name, work email, organization), authentication/security data (session, MFA state, login events), and product data needed to operate bookings, schedules, maps, and people workflows.
We may also process billing and subscription data through Stripe, support inquiries, and technical telemetry/security logs used to keep the service reliable and secure.
How We Use Data
We process personal data to provide and secure the service, manage user access and permissions, support customer requests, process billing, and prevent abuse or fraud.
We also use data to meet legal obligations, maintain audit records, and improve service quality.
Legal Bases (EEA/UK/Switzerland)
Where GDPR or equivalent laws apply, we process data based on one or more legal bases: contract performance, legitimate interests, legal obligations, and consent where required.
If we rely on consent, you can withdraw it at any time for future processing.
Sharing and Service Providers
We use subprocessors to operate Axon (for example hosting, authentication, storage, messaging, and payments). These providers process data under contract and only for authorized purposes.
We may disclose data when required by law, legal process, or to protect rights, security, and platform integrity.
International Transfers
If personal data is transferred across borders, we apply appropriate safeguards required by applicable law, such as contractual protections and security controls.
Retention
We retain personal data for as long as needed to provide the service, comply with legal obligations, resolve disputes, and enforce agreements.
Retention periods vary by data category, account status, and legal requirements.
Security
Axon uses administrative, technical, and organizational safeguards designed to protect personal data, including access controls, encryption in transit, and audit-focused security practices.
No method of transmission or storage is completely risk-free, but we continuously improve our controls to reduce risk.
Your Privacy Rights (EU/US)
Depending on your location, you may have rights to access, correct, delete, or export your data, and to object to or restrict certain processing.
U.S. state privacy laws may also provide rights related to data portability, correction, deletion, and opt-out choices. We honor applicable rights requests in line with legal requirements.
Cookies and Similar Technologies
We use cookies and similar technologies for core functionality (such as authentication/session handling), security, and service performance.
Where required by law, we provide consent controls for non-essential tracking technologies.
Children
Axon is intended for business and organizational use and is not directed to children under the age threshold defined by applicable law.
Policy Changes and Contact
We may update this policy periodically. When material changes occur, we will update the date above and provide notice as required by law.
For privacy requests or questions, contact us using the details below.
Contact
For legal, privacy, or compliance requests
Email: axon@xdbx.eu
Product URL: https://axon.xdbx.eu
Related docs: Terms of Service, Cookie Policy, Data Rights Requests.
This page is a product-facing legal summary and should be reviewed by your legal counsel for jurisdiction-specific requirements.