Last updated: [DATE] · Effective: [DATE]
1. Introduction
[Who you are, what this policy covers, and which product/website it applies to.]
2. Information we collect
[List what you actually collect: account info (name, email), authentication data, payment info handled by Stripe, usage analytics via PostHog if enabled, and any uploads via Uploadthing. Be specific, don't list what you don't collect.]
3. How we use your information
[Explain the purposes: providing the service, billing, sending transactional email via Resend, support, and product analytics. Tie each use to data from section 2.]
4. Cookies and tracking
[Describe session cookies (auth), and any analytics/tracking cookies (PostHog), note whether they're essential or optional and how users opt out.]
5. Third-party services
[List your processors and link their policies: Stripe (payments), Resend (email), your database host, Vercel (hosting), PostHog/Sentry if enabled, Uploadthing (storage). Disclose what each receives.]
6. Data sharing and disclosure
[State that you don't sell personal data, and the limited cases where you share it: processors above, legal requirements, business transfers.]
7. Data retention
[How long you keep account data, what happens on account/team deletion, and any backup retention window.]
8. Your rights
[Access, correction, deletion, export, and objection rights. Reference GDPR/CCPA obligations if you serve the EU/California, and how users exercise these rights.]
9. Data security
[Describe safeguards: encryption in transit, hashed passwords via Better Auth, access controls. Don't over-promise.]
10. International data transfers
[If data leaves the user's region, explain the mechanism and safeguards.]
11. Children's privacy
[State your minimum age and that you don't knowingly collect data from children below it.]
12. Changes to this policy
[How you'll notify users of updates and where the current version lives.]
13. Contact us
[Your privacy contact email and, if required, a DPO or EU representative. Use your real support address, e.g. support@keel.dev.]