Legal

Privacy Policy

Last updated: June 2026

Draft template — not legal advice. Have a qualified lawyer review and adapt this (and fill in the [bracketed] details) before relying on it.

This Privacy Policy explains how [Legal entity name], operator of this website (the “Site”), collects and uses your personal data. For data-protection questions, contact [privacy email].

Data we collect

  • Account details you provide (name, email, password — stored hashed).
  • Newsletter sign-ups (name, email).
  • Purchase data processed by our payment provider (Stripe).
  • Usage data via privacy-friendly analytics.

How we use your data

  • To provide your account, programs, and purchased content.
  • To send the emails and updates you signed up for.
  • To process payments and prevent fraud.
  • To understand and improve the Site.

Legal basis (GDPR)

We process data based on your consent (e.g. newsletter), performance of a contract (purchases and accounts), and our legitimate interests (security and improving the Site).

Sharing & processors

We share data only with processors that help us run the Site, including Stripe (payments), Vercel (hosting), Neon (database), and our analytics and email providers. We do not sell your data.

Your rights

Under the GDPR you may request access, correction, deletion, restriction, portability, and may object to processing or withdraw consent. Contact [privacy email] to exercise these rights.

Retention & transfers

We keep data only as long as necessary for the purposes above or as required by law. Some processors may store data outside the EEA under appropriate safeguards.

Changes

We may update this policy; the “last updated” date will change accordingly.