1. Information We Collect
We collect information you provide directly to us, such as when you create an account, use our services, or contact us for support.
- Account information: username, email address, password (hashed)
- Content data: posts, drafts, ideas, and other content you create
- Usage data: features used, actions taken, session duration
- Payment information: processed securely by Stripe — we never store card details
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our services
- Generate AI-powered content recommendations personalized to your doctrine and voice
- Send transactional emails (account verification, password reset, billing)
- Analyze usage patterns to improve the product
- Comply with legal obligations
3. Data Sharing
We do not sell your personal data. We share data only with:
- AI providers (OpenAI, Anthropic, or Google) to generate content — your content is sent to these APIs
- Stripe for payment processing
- Resend/SendGrid for transactional email delivery
- Law enforcement when required by law
4. Data Retention
We retain your data for as long as your account is active. When you delete your account:
- Your account is deactivated immediately
- All personal data is permanently deleted within 30 days
- Anonymized usage statistics may be retained for analytics
5. Your Rights (GDPR)
If you are in the European Economic Area, you have the right to:
- Access: Request a copy of your data via Settings → Privacy → Export Data
- Deletion: Delete your account and all data via Settings → Privacy → Delete Account
- Portability: Export your data in JSON format
- Rectification: Update your information in Settings
6. Security
We implement industry-standard security measures including:
- PBKDF2-HMAC-SHA256 password hashing
- JWT tokens with expiration
- HTTPS encryption in transit
- Rate limiting to prevent abuse
- Audit logging for sensitive actions
7. Cookies
We use only essential cookies required for authentication (JWT token stored in localStorage). We do not use tracking or advertising cookies.