Privacy Policy

Last Updated: August 10, 2026

Introduction

At Athena Collective we respect your privacy and are committed to protecting your personal data. This policy explains what we collect when you visit our website and use our membership platform, why we collect it, who we share it with, and the choices and rights you have.

The controller responsible for your personal data is Athena Collective Network Incorporated, a company incorporated and existing under the laws of the Province of British Columbia, having its registered office at 1600 – 925 West Georgia Street, Vancouver, British Columbia V6C 3L2, Canada (“Athena Collective”, “Athena”, “we”, “us”).

This policy covers the Athena Collective website, member platform and community. It is incorporated into our Terms of Service. If you have questions about anything here, email us at hello@athenacollective.co.

The Data We Collect About You

Personal data means any information about an individual from which that person can be identified. We collect the following kinds of personal data:

  • Identity and account data — first name, last name, and the credentials you use to sign in. Authentication is handled by our identity provider, Auth0. If you sign in with Google, we receive your basic profile and email from Google, but never your Google password.
  • Contact data — email address, telephone number, and links you choose to add such as your website and LinkedIn profile.
  • Profile data — your photo, location, role, company, bio, and the visibility preferences you set for your profile.
  • Business data — information about your business, including stage, industry, market reach, goals, and self-reported metrics. This can include commercially sensitive information such as revenue figures, which we calculate and store when you provide the underlying numbers.
  • Assessment data — your answers to our personal and business assessments. We retain your individual responses, and we use them to generate derived information about you and your business, including skill scores across our skills framework, a business health score, a business archetype, strengths, blind spots, growth blockers, and a personalized roadmap.
  • Community and content data — direct messages you send to other members, connection requests, reflections and notes, events, resources and perks you submit, and files and images you upload.
  • Participation data — event registrations and attendance, workshop and resource activity, perks and discount codes you reveal, and referral codes you use or generate.
  • Payment data — subscription status, plan, billing period, invoices and payment history. Your card details are collected and stored by Stripe, our payment processor. We never receive or store your full card number.
  • Technical data — IP address, browser type and version, time zone and approximate location, device and operating system, and other technology you use to access the platform.
  • Usage and session data — how you navigate and interact with the platform. This includes session recordings, as described under Analytics and Session Recording below.
  • Communications data — your correspondence with us, your email preferences, and whether you opened or clicked our emails.

How We Use Your Personal Data

We will only use your personal data when the law allows us to. Most commonly, we use it in the following circumstances:

  • Where we need to perform our contract with you — providing your membership, processing payments, running your assessments and roadmap, and giving you access to the community.
  • Where it is necessary for our legitimate interests, and your interests and fundamental rights do not override them — improving the platform, keeping it secure, understanding how it is used, and telling you about relevant features and offers.
  • Where you have given consent — for example non-essential analytics and marketing emails, which you can withdraw at any time.
  • Where we need to comply with a legal obligation, including tax, accounting and fraud prevention.

Specifically, we use your data to create and administer your account, generate your assessment results, roadmap and recommendations, match you with other members and with relevant partners and perks, run events, send transactional and (with your consent) marketing email, provide support, prevent fraud and abuse, and measure and improve the Services.

What Other Members Can See

Athena is a community, so parts of your profile are shown to other members by design. Paying members can see your name, photo, location, role, company, bio and links in the member directory, and can send you a connection request or message.

You control some of this in your account settings, including whether your email address is visible and whether your founder profile is shown. Your email is hidden from other members by default. Content you mark as public, such as a public reflection, and anything you post in a shared community channel, is visible to other members. Your individual assessment answers and your private notes are never shown to other members, though information derived from them may be used to suggest relevant connections.

If you send a connection request, the recipient receives your message along with your contact and profile details so they can reply.

Who We Share Your Data With

We do not sell your personal data. We share it with service providers who process it on our behalf, and only for the purposes below:

  • Auth0 — account authentication and login security.
  • Stripe — payment processing, subscription management, invoices and the billing portal.
  • Slack — our member community workspace. If you join, your use of Slack is also governed by Slack's own privacy policy, and we sync limited channel and membership information back to your account.
  • Resend — sending transactional and marketing email, and managing our email audiences.
  • Mixpanel — product analytics and session recording.
  • Google Analytics and Google Ads — website analytics and advertising conversion measurement.
  • Apollo.io — business visitor identification on our public marketing pages.
  • Sentry — error monitoring and diagnostic session replay.
  • DigitalOcean — hosting of uploaded files and images, and content delivery.

We may also share your data in these situations:

  • With partners, at your request. If you enquire about a vendor, sponsor, perk or partner offer, we pass the relevant details to that provider so they can respond to you. If you choose to explore financing through a partner such as Wayflyer, information about you and your business, including revenue figures, is shared with them so they can assess your application. Those providers are independent and handle your data under their own privacy policies.
  • Aggregate reporting to campaign partners. Partners who refer members to us can receive aggregate performance reporting, such as counts of signups attributed to their campaigns. This does not identify individual members.
  • Legal and safety. Where we are required by law, or where we need to investigate fraud, enforce our Terms, or protect the rights and safety of our members.
  • Business transfers. If we are involved in a merger, acquisition or sale of assets, your data may transfer as part of that transaction, subject to this policy.

Analytics, Session Recording and Cookies

We use cookies and similar technologies to keep you signed in, remember your preferences, understand how the platform is used, and measure our advertising.

Please note that our analytics tooling records browsing sessions. This captures pages you visit and how you interact with them, including within signed-in areas of the platform, and can include text you enter into the platform. Our error monitoring also captures a replay of activity around an error so we can diagnose it. We use these recordings only to understand and fix usability and technical problems, we do not use them to monitor individuals, and we do not capture your card details, which are entered on Stripe's systems rather than ours.

We ask for your consent before setting anything beyond strictly necessary cookies, and analytics and marketing can be accepted separately. You can change your choices at any time by selecting Cookie Preferences in the footer of any page, and we honour Global Privacy Control signals as a decision to decline. You can also control cookies through your browser settings, opt out of Google Analytics using Google's browser add-on, and use the tracking protection most browsers offer. Blocking essential cookies will stop you from signing in. See our Cookie Policy for the full list of providers.

Where Your Data Is Stored

We are based in Canada, and our members are located around the world. Your data is stored and processed in Canada, the United States and the European Union, depending on the service involved. Uploaded files are stored in Canada, and some of our analytics and error monitoring is processed in the European Union.

This means your personal data may be transferred outside the country where you live, including to countries whose data protection laws differ from your own. Where we make such transfers, we rely on appropriate safeguards, such as our providers' standard contractual clauses, to protect your data.

How Long We Keep Your Data

We keep your personal data for as long as your account is open and for as long as we need it for the purposes described in this policy.

If your membership ends, we retain your account, assessment results and roadmap so you can pick up where you left off if you return, unless you ask us to delete them. We keep billing and transaction records for as long as required by tax and accounting law. Analytics and session recordings are kept for a limited period under our providers' retention settings. Messages and content you shared with other members, and information already shared with a partner at your request, may remain with them after your account is closed.

Data Security

We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used or accessed in an unauthorized way, altered or disclosed. Access is encrypted in transit, payment details are handled by Stripe rather than by us, and we limit access to your personal data to those employees, contractors and providers who have a business need to know.

No system is completely secure, so we cannot guarantee absolute security. If we become aware of a breach affecting your personal data, we will notify you and the relevant authorities where the law requires it. Please contact us immediately if you believe your account has been compromised.

Your Legal Rights

Depending on where you live, you have rights under data protection laws in relation to your personal data, including the right to:

  • Request access to your personal data.
  • Request correction of your personal data.
  • Request erasure of your personal data.
  • Object to processing of your personal data.
  • Request restriction of processing your personal data.
  • Request transfer of your personal data to you or another provider.
  • Withdraw consent at any time, where we rely on consent.

You can update much of your information yourself in your account settings. To make any other request, including access, export or deletion of your account and data, email us at hello@athenacollective.co. We will respond within the time required by applicable law, and in any case within 30 days. We may need to verify your identity before we act on a request, and we may need to keep certain records, such as billing history, where the law requires it.

You will not have to pay a fee to exercise your rights. If you are not satisfied with how we have handled your request, you have the right to complain to your local data protection authority.

Marketing and Email Preferences

With your consent, we send you email about Athena features, events, perks and offers. You can unsubscribe at any time using the link in any marketing email, or by emailing us. We will still send you transactional messages you need in order to use your membership, such as billing notices, trial reminders, security alerts and replies to your requests.

Children

The Services are intended for adults running or building businesses. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it.

Changes to This Policy

We may update this policy from time to time. When we do, we will change the “Last Updated” date above, and if the changes are material we will give you reasonable notice by email or through the platform.

Contact Us

If you have any questions about this privacy policy or our privacy practices, or you would like to exercise your rights, please contact us at:

Athena Collective Network Incorporated
1600 – 925 West Georgia Street
Vancouver, British Columbia V6C 3L2
Canada

Email: hello@athenacollective.co