Privacy notice

1. Data categories

2. Why data is used

Data is used to create and secure accounts, record required terms acceptance, verify Product access, operate the beta, prevent abuse, diagnose failures, test one-time payment and subscription lifecycles, respond to lawful requests, and improve reliability. User-controlled profile metadata is not used to grant roles, Founder status, discounts, or Product access.

3. Service providers

The current technical flow uses Supabase for authentication and database services, Cloudflare for hosting, network security and access controls, Google Workspace for support email, and Stripe for sandbox billing. Each provider may process technical data under its own terms and privacy documentation.

4. Sharing

The current private-beta design does not include selling account data. Before external beta onboarding, the completed notice must confirm the operator's actual practices and explain any disclosure to service providers, professional advisers, or authorities.

5. Retention and deletion

Authentication, security, Product, support-correspondence, and sandbox billing records are kept only as needed for the beta, responding to inquiries, fraud prevention, troubleshooting, and legal obligations. A category-by-category retention schedule must be published before external beta onboarding.

6. Privacy rights

Depending on location, users may have rights to access, correct, delete, restrict, or export personal data and to object or complain to a regulator. The final notice will identify the responsible operator and any jurisdiction-specific process for exercising those rights or making a complaint.

7. Privacy contact

Privacy questions and requests can be sent to [email protected]. The final notice must still identify the responsible legal operator before external beta onboarding.