Newsletter Compass

Privacy Policy & Terms of Service

Your privacy and rights are important to us. This document explains how we handle your information and the terms of our service.

Privacy Policy

Effective Date: August 4, 2025

Last Updated: August 4, 2025

1. Introduction

Newsletter Compass ("we," "our," or "us") operates the Newsletter Compass web application (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.

2. Information We Collect

2.1 Personal Information

  • Account Information: Name, email address, username, password
  • Profile Information: Creator niche, target audience, brand voice preferences, writing style, goals
  • Payment Information: Processed securely through Stripe (we do not store credit card details)
  • Communication Data: Support messages, feedback, testimonials

2.2 Usage Information

  • Generated Content: AI-generated newsletters, notes, titles, and other content you create
  • Platform Data: Usage patterns, feature interactions, tool preferences
  • Technical Data: IP address, browser type, device information, session data

2.3 Third-Party Data

  • Authentication: Through Supabase for secure account management
  • AI Processing: Content processed through Claude API for generation purposes

3. How We Use Your Information

3.1 Service Provision

  • Deliver personalized AI-generated content based on your profile
  • Maintain and improve platform functionality
  • Process payments through Leadership in Change LLC
  • Provide customer support

3.2 Personalization

  • Tailor content generation to your specified niche and style
  • Maintain consistency across all generated materials
  • Improve AI recommendations based on usage patterns

3.3 Business Operations

  • Analyze usage trends for product development
  • Send service-related communications
  • Comply with legal obligations

4. Legal Basis for Processing (GDPR)

We process your data based on:

  • Contract Performance: To provide the Newsletter Compass service
  • Legitimate Interest: For product improvement and customer support
  • Consent: For marketing communications (with opt-out options)
  • Legal Compliance: To meet regulatory requirements

5. Data Sharing and Disclosure

5.1 Third-Party Service Providers

  • Supabase: Authentication and database management
  • Stripe: Payment processing through Leadership in Change LLC
  • Anthropic (Claude API): AI content generation
  • Analytics Providers: Usage tracking and improvement

5.2 Legal Requirements

We may disclose information when required by law, court order, or to protect our rights and safety.

5.3 Business Transfers

In case of merger, acquisition, or sale, user data may be transferred with appropriate notice.

6. Data Security

We implement industry-standard security measures including:

  • Encryption in transit and at rest
  • Secure authentication protocols
  • Regular security audits
  • Access controls and monitoring

7. Your Rights (GDPR)

7.1 Access and Portability

  • Request access to your personal data
  • Receive data in a structured, machine-readable format

7.2 Correction and Deletion

  • Correct inaccurate personal information
  • Request deletion of your data (subject to legal requirements)

7.3 Processing Control

  • Object to processing for direct marketing
  • Restrict processing in certain circumstances
  • Withdraw consent where applicable

7.4 Complaints

Contact your local data protection authority if you have concerns about our data practices.

8. Data Retention

  • Account Data: Retained while account is active plus 30 days after deletion
  • Generated Content: Retained for service provision unless deleted by user
  • Usage Analytics: Anonymized data retained for product improvement
  • Payment Records: Retained as required by law (typically 7 years)

9. International Data Transfers

Data may be processed in countries outside the EU/EEA with appropriate safeguards including:

  • Adequacy decisions
  • Standard contractual clauses
  • Binding corporate rules

10. Children's Privacy

Our Service is not intended for users under 13. We do not knowingly collect data from children under 13.

11. Contact Information

  • Data Protection Officer: Joel Salinas, [Email to be added]
  • General Inquiries: [Email to be added]
  • Business Entity: Leadership in Change LLC