Privacy statement

This is a template. Fill in the marked fields and have the text reviewed before going live. This is not legal advice.

1. Controller

[COMPANY NAME], [ADDRESS], Chamber of Commerce [NUMBER], email [SUPPORT@DOMAIN].

2. What data is processed

We process only: the email address you use to start a session, the contents of documents you upload, the text of your conversation in the application, the generated document, and technical logs (IP address, timestamp) for security and abuse prevention. Payments are handled by Stripe; we never receive full card details.

3. Purpose and legal basis

Processing is necessary to perform the contract (Article 6(1)(b) GDPR): producing the project document you requested. For security logs we rely on legitimate interest (Article 6(1)(f)).

4. Retention

Project data — uploads, conversation and generated documents — is automatically and permanently deleted 30 days after the last activity. You can also delete a project yourself at any time from Settings. Payment records (amount, date, email address, Stripe reference) are kept for seven years to satisfy tax retention obligations.

Documents you have checked, and the results, fall under the same 30-day period.

To stop the free document check being used more than once per person, after that check we keep a keyed derivative (an HMAC hash) of your email address. The address cannot be recovered from it and it is not linked to any document, result or other data. Legal basis: legitimate interest in preventing abuse of a free offer (Article 6(1)(f) GDPR). The hash is deleted after 365 days and is kept even if you erase your data — otherwise erasing and signing up again would yield another free check. You can object via [SUPPORT@DOMAIN].

5. Access by us

The administrators of [COMPANY NAME] have technical access to the server and the database. We only look inside a project or a document check if the user explicitly asks us to, for example to fix a fault, and only for that request. That is a rare exception. Anyone who tests the service at our invitation knows in advance that we look at the test project to process their feedback.

6. Demo and news by email

For the demo on the homepage we ask for your email address. We use it to send you a sign-in link and to keep the demo available to real visitors. Your demo is an ordinary project and falls under the same 30-day period.

If you tick the news box on the demo form, we keep your email address, your language and the date of your consent in order to send you occasional news about the service by email. Legal basis: consent (Article 6(1)(a) GDPR). We only record that consent after you have clicked the sign-in link. You can withdraw it at any time via [SUPPORT@DOMAIN] or with the unsubscribe link in every news email, and "Erase all my data" withdraws it too. Until you withdraw it, we keep your address for this purpose.

7. Processors and transfers

Anthropic PBC (United States) processes the text of your brief and conversation to generate the document, and the text of a document you have checked to produce the review. Transfers rely on the EU Standard Contractual Clauses.

We use Anthropic's commercial API for this. Under Anthropic's commercial terms, that data is not used to train AI models by default. Anthropic deletes the text within 30 days of receipt. Only if their automated systems flag a request as violating their usage policy does Anthropic keep the text for up to two years and the classification for up to seven. We send Anthropic no feedback about your data and give no consent for training.

Railway Corporation hosts the server and the database, in its EU West region in Amsterdam (the Netherlands), under a data processing agreement with the EU standard contractual clauses. Stripe Payments Europe Ltd. handles payments. Brevo (Sendinblue SAS, France) delivers sign-in links and confirmations; Brevo keeps delivery logs for at most a month and no copy of the emails.

8. Confidential business information

Project briefs often contain your client's confidential information. Check that you are permitted to share it with an external service. We recommend anonymising third-party personal data (names, contact details) before uploading where possible.

9. Your rights

You have the right of access, rectification, erasure, restriction and data portability. You can erase everything yourself using "Erase all my data" in the application. For other requests: [SUPPORT@DOMAIN]. You may lodge a complaint with the Dutch Data Protection Authority.

10. Security

All traffic runs over TLS. Access to a project session requires a single-use sign-in link sent by email. Documents are never stored in a publicly accessible location.

The server and the database run on encrypted storage. Our backups contain no project content: only payment records and the register of deletions, themselves encrypted. Anything you erase, or that is deleted after 30 days, therefore cannot be restored from a backup either.