Megamize ("we," "us," "our") is a CRO/conversion-optimization consultancy operated by Aaron Ginn out of the United States. This Privacy Policy explains what personal information we collect, how we use it, who we share it with, and the rights you have. By using megamize.co, receiving outreach from us, or working with us as a client, you agree to this Policy.
Data controller: Megamize (Aaron Ginn, sole proprietor)
Email: aaron@megamize.co
Mailing address: Available on request — email above
We collect publicly available business contact information from sources like Apollo, LinkedIn, and your company website. This includes:
We process this data under the legitimate interests basis (Article 6(1)(f) GDPR) for B2B prospecting purposes, balanced against your privacy interests. You may opt out at any time (see Section 7).
We use a small number of cookies and tracking technologies. Details in our Cookie Policy.
We use AI services to generate research briefs + personalize outreach drafts. When we research a publicly available company website or LinkedIn profile, the page contents may be sent to:
We do not send your private data, financial information, or anything not publicly accessible to AI services without explicit consent.
We use the following third-party processors. Each is contractually bound to protect your data and use it only for the services they provide to us.
| Provider | Purpose | Region |
|---|---|---|
| Vercel | Web hosting | USA |
| Supabase | Database (prospect + audit data) | USA |
| Clerk | Authentication for /dashboard | USA |
| Resend | Transactional email (audit form notifications) | USA |
| Smartlead | Cold email sending | USA |
| Quo | Cold calling + SMS | USA |
| Apollo | B2B contact data (cold prospect sourcing) | USA |
| LeadMagic | Engagement-gated contact enrichment | USA |
| Anthropic (Claude) | AI research + content drafting | USA |
| Firecrawl | Public web page fetching for research | USA |
We do not sell your personal information to third parties.
Depending on your jurisdiction, you may have the right to:
To exercise any of these rights, email aaron@megamize.cowith the subject line "Privacy Request." We respond within 30 days.
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including the right to know, delete, and opt out of the "sale" of personal information. We do not sell personal information. To exercise other CCPA rights, email aaron@megamize.co.
If you are in the EU, UK, or EEA, our processing of your data falls under GDPR. Our lawful bases are:
You may file a complaint with your local supervisory authority. EU-based users can find theirs at edpb.europa.eu.
We use industry-standard encryption in transit (HTTPS) and at rest (Supabase + Vercel encryption). Authentication is gated by Clerk with multi-factor authentication available. We limit internal access to data on a need-to-know basis.
Breach notification: if your personal data is compromised, we will notify affected individuals within 72 hours of confirming the breach, as required by GDPR Article 33.
Our services are not directed at children under 16. We do not knowingly collect personal information from minors. If you believe we have, email aaron@megamize.co and we will delete it.
We may update this Policy from time to time. Material changes will be flagged at the top of the page or notified via email to active subscribers. The "Last updated" date at the top reflects the most recent revision.
Questions, concerns, or requests: aaron@megamize.co