Privacy Policy
Effective Date: March 2, 2026 · Last Updated: March 2, 2026
1. Introduction
Poseidon Sales LLC (“Poseidon,” “we,” “us,” or “our”) operates the website useposeidon.com and related subdomains (collectively, the “Service”). This Privacy Policy describes how we collect, use, disclose, and protect your information when you visit our Service, use our products, or participate in our surveys and research programs.
By accessing or using the Service, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our practices, please do not use the Service.
2. Data Controller
Poseidon Sales LLC
447 Broadway, 2nd Floor Suite #1273
New York, NY 10013, United States
Privacy Contact: privacy@useposeidon.com
General Contact: ash@useposeidon.com
3. Information We Collect
3.1 Information You Provide Directly
- Account Information: Name, email address, company name, job title, and password when you create an account.
- Billing Information: Payment details processed through our third-party payment processor (Stripe). We do not store full credit card numbers on our servers.
- Survey & Research Responses: When you participate in our industry surveys (such as the State of RIA Organic Growth survey), we collect your responses, professional information, company details, and contact information. Survey responses are anonymized and aggregated for published reports — individual answers are never attributed to you or your firm without your explicit consent.
- Contact & Support Requests: Name, email, and any information you include in messages to us.
- Lead Magnet Downloads: Name, email, company, and phone number when you download resources such as eBooks, guides, or playbooks.
3.2 Information from Third-Party Authentication
We offer sign-in and identity verification through third-party services:
- Google OAuth: When you sign in with Google, we receive your name, email address, and profile picture. We do not access your Gmail content, Google Drive files, or other Google Workspace data beyond what is needed for authentication.
- LinkedIn OAuth: When you verify your identity via LinkedIn (e.g., for survey participation), we access your name, email address, LinkedIn profile URL, and profile ID. We never post on your behalf, access your connections, or read your LinkedIn messages. LinkedIn data is used solely for identity verification and, where applicable, gift card eligibility.
3.3 Information Collected Automatically
- Usage Data: Pages visited, time on page, click paths, referral source, browser type, device type, operating system, and screen resolution.
- Log Data: IP address, access times, and server logs.
- Cookies & Tracking Technologies: We use cookies, web beacons, and similar technologies to analyze traffic and personalize your experience. See Section 9 (Cookies) for details.
3.4 Information from Other Sources
- Publicly Available Professional Data: We may supplement your information with publicly available professional data (e.g., SEC IAPD filings, firm ADV data) to verify firm eligibility or enrich your experience.
- Analytics Providers: We receive aggregated analytics data from Google Analytics and similar tools.
4. How We Use Your Information
We use the information we collect for the following purposes:
- Provide & Improve the Service: Operate, maintain, and enhance Poseidon's products and features.
- Account Management: Create and manage your account, process transactions, and provide customer support.
- Industry Research & Surveys: Conduct, analyze, and publish industry research reports. Survey data is aggregated and anonymized — we do not identify individual respondents in published findings without explicit permission.
- Gift Card Fulfillment: Verify survey participant eligibility and deliver incentives (e.g., gift cards) through third-party fulfillment partners.
- Marketing Communications: Send you newsletters, product updates, and promotional materials. You can opt out at any time by clicking “unsubscribe” in any email or contacting us.
- Analytics & Performance: Monitor and analyze usage patterns, measure the effectiveness of our marketing, and improve user experience.
- Advertising: Display relevant advertisements and measure their effectiveness.
- Security & Fraud Prevention: Detect, investigate, and prevent fraudulent transactions, abuse, and security incidents.
- Legal Compliance: Comply with applicable laws, regulations, and legal processes.
5. Surveys & Industry Research
Poseidon conducts industry surveys (such as the “State of RIA Organic Growth” survey) to produce aggregated research reports for the financial advisory community. When you participate in a survey:
- Confidentiality: Your individual survey responses are treated as confidential. We do not sell, license, or share your individual responses with third parties.
- Anonymization & Aggregation: Published reports contain only anonymized, aggregated data. No individual answers will ever be attributed to you or your firm unless you provide separate, explicit written consent.
- Identity Verification: We may verify your professional identity (e.g., via LinkedIn OAuth or SEC/FINRA records) to ensure survey quality and prevent fraudulent submissions.
- Incentives: If you opt in to receive a gift card or other incentive, we share your name and email with our fulfillment partner solely for the purpose of delivering the incentive. We verify firm eligibility before fulfillment.
- Contact Information: We may use the email address you provide during a survey to (a) deliver your incentive, (b) share early access to the published report, or (c) follow up if you explicitly opted in to being contacted. We will not add you to marketing lists without your separate consent.
6. How We Share Your Information
We do not sell your Personal Data. We may share information in the following circumstances:
- Service Providers: We share data with trusted third-party vendors who perform services on our behalf, including:
- Cloud hosting and database services (Google Cloud Platform, Neon)
- Payment processing (Stripe)
- Email delivery (Postmark)
- Authentication services (Google, LinkedIn, Firebase)
- Analytics (Google Analytics)
- Gift card fulfillment (Tremendous)
- Aggregated & De-Identified Data: We may share anonymized, aggregated data that cannot reasonably be used to identify you (e.g., industry survey reports, benchmarking data).
- Legal Requirements: We may disclose your information if required by law, regulation, legal process, or governmental request, or to protect our rights, privacy, safety, or property.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change.
- With Your Consent: We may share your information for any other purpose with your explicit consent.
7. Data Security
We implement industry-standard technical and organizational measures to protect your data, including:
- TLS/SSL encryption for all data in transit
- Encryption at rest for databases containing personal data
- Access controls limited to authorized personnel on a need-to-know basis
- Regular security assessments and monitoring
- Secure authentication mechanisms including OAuth 2.0
While we strive to protect your information, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security, but we are committed to promptly addressing any security incidents.
8. Data Retention
We retain your Personal Data only for as long as necessary to fulfill the purposes described in this policy, unless a longer retention period is required or permitted by law. Specifically:
- Account Data: Retained for the duration of your account and for up to 12 months after account deletion to comply with legal obligations.
- Survey Data: Anonymized survey responses are retained indefinitely for research purposes. Contact information associated with survey responses is retained for up to 24 months after collection, then deleted unless you have a separate account relationship with us.
- Usage & Analytics Data: Retained for up to 26 months, consistent with Google Analytics default retention settings.
- Marketing Data: Retained until you unsubscribe or request deletion.
You may request deletion of your data at any time by contacting privacy@useposeidon.com.
9. Cookies & Tracking Technologies
We use the following categories of cookies and tracking technologies:
- Strictly Necessary: Required for the Service to function (e.g., session cookies, authentication tokens). Cannot be disabled.
- Analytics & Performance: Help us understand how visitors use the Service (e.g., Google Analytics). These collect aggregated, anonymized data.
- Advertising & Targeting: Used to deliver relevant ads and measure campaign effectiveness (e.g., Google Ads, LinkedIn Insight Tag).
- Functional: Remember your preferences and settings to enhance your experience.
You can manage cookie preferences through your browser settings. Most browsers allow you to block or delete cookies. Note that disabling certain cookies may affect Service functionality.
We use Google Tag Manager to manage third-party tracking scripts. For more details, see our Cookie Policy.
Do Not Track
Some browsers transmit “Do Not Track” (DNT) signals. There is no uniform standard for responding to DNT signals. We currently do not respond to DNT signals, but you may opt out of tracking through the cookie management options described above or through industry opt-out tools such as DAA Opt-Out or NAI Opt-Out.
10. Artificial Intelligence & Machine Learning
Poseidon uses AI and machine learning technologies to power features within our platform. Regarding your data:
- We do not use Google Workspace API data to develop, improve, or train generalized or non-personalized AI/ML models.
- We do not transfer Google Workspace API data to third-party AI tools for the development or training of generalized AI/ML models.
- Any AI/ML processing is limited to personalized features within the Service that directly benefit you (e.g., content recommendations, prospecting suggestions).
- We do not use your survey responses to train AI models.
11. Your Privacy Rights
Depending on your location, you may have the following rights regarding your Personal Data:
All Users
- Access: Request a copy of the Personal Data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your Personal Data, subject to legal retention requirements.
- Opt-Out of Marketing: Unsubscribe from marketing emails at any time via the link in any email or by contacting us.
- Withdraw Consent: Where processing is based on consent, you may withdraw consent at any time.
California Residents (CCPA/CPRA)
Under the California Consumer Privacy Act (as amended by the California Privacy Rights Act), California residents have additional rights:
- Right to Know: Request details about the categories and specific pieces of Personal Information we have collected, the sources, purposes, and third parties with whom we share it.
- Right to Delete: Request deletion of Personal Information we have collected from you.
- Right to Correct: Request correction of inaccurate Personal Information.
- Right to Opt-Out of Sale/Sharing: We do not sell your Personal Information. We do not share your Personal Information for cross-context behavioral advertising.
- Right to Limit Use of Sensitive Personal Information: We do not use or disclose sensitive personal information for purposes other than those permitted under the CPRA.
- Non-Discrimination: We will not discriminate against you for exercising your privacy rights.
To exercise your rights, contact us at privacy@useposeidon.com. We will verify your identity before processing your request.
Categories of Personal Information collected in the preceding 12 months: Identifiers (name, email, IP address); professional information (job title, company, AUM); internet activity (browsing history, interactions with the Service); geolocation data (approximate, derived from IP); and inferences drawn from the above.
Residents of Other U.S. States
If you reside in Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, or other states with comprehensive privacy laws, you may have similar rights to access, correct, delete, and opt out of certain data processing. Contact us to exercise these rights.
European Economic Area, UK & Switzerland (GDPR/UK GDPR)
If you are located in the EEA, UK, or Switzerland, you have rights under the General Data Protection Regulation, including:
- Right to access, rectify, or erase your Personal Data
- Right to restrict or object to processing
- Right to data portability
- Right to withdraw consent at any time
- Right to lodge a complaint with your local supervisory authority
Legal bases for processing: We process your data based on (a) your consent, (b) performance of a contract, (c) our legitimate interests (e.g., operating the Service, conducting research, preventing fraud), or (d) compliance with legal obligations. Where we rely on legitimate interests, we balance those interests against your rights and freedoms.
International transfers: Your data may be transferred to and processed in the United States. We use Standard Contractual Clauses (SCCs) and other appropriate safeguards to ensure adequate protection of your data during international transfers.
Canadian Residents (PIPEDA)
If you are a Canadian resident, you have the right to access, correct, and challenge the accuracy of your personal information held by us. Contact us to exercise these rights.
12. Children's Privacy
The Service is designed for business professionals and is not directed to individuals under the age of 18. We do not knowingly collect Personal Data from children. If we learn that we have collected data from a child under 18, we will take steps to delete that information promptly. If you believe a child has provided us with Personal Data, please contact us at privacy@useposeidon.com.
13. Third-Party Links & Services
The Service may contain links to third-party websites or services (e.g., LinkedIn, Stripe, Google). We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing them with your information.
14. Data Breach Notification
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify affected individuals and relevant supervisory authorities as required by applicable law, typically within 72 hours of becoming aware of the breach. Notification will include the nature of the breach, the data affected, and the steps we are taking to address it.
15. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make material changes, we will update the “Last Updated” date at the top of this page and, where required by law, notify you via email or a prominent notice on the Service.
We encourage you to review this Privacy Policy periodically. Your continued use of the Service after changes are posted constitutes acceptance of the updated policy.
16. Contact Us
If you have questions about this Privacy Policy, want to exercise your rights, or have a privacy concern, contact us at:
Poseidon Sales LLC
447 Broadway, 2nd Floor Suite #1273
New York, NY 10013, United States
privacy@useposeidon.com
We aim to respond to all privacy-related inquiries within 30 days.
Definitions
- Personal Data: Any information that identifies or could reasonably be used to identify a natural person, directly or indirectly.
- Usage Data: Information collected automatically, such as IP addresses, browser type, pages visited, and other diagnostic data.
- Service: The Poseidon website (useposeidon.com), related subdomains (helm.useposeidon.com, beacon.useposeidon.com), and the Poseidon platform.
- User / You: The individual accessing or using the Service.
- Data Controller: The entity that determines the purposes and means of processing Personal Data (Poseidon Sales LLC).
- Data Processor: An entity that processes Personal Data on behalf of the Data Controller.
- Cookies: Small data files stored on your device by your web browser.
- Tracker: Any technology (cookies, pixels, web beacons, embedded scripts) that enables tracking of users.