Data Protection
How we handle and protect your personal data
π
What personal data we handle
π€Your name and email address
π§Recipient's name, email and date of birth
πCapsule message content
β€οΈYour relationship to recipient
π
Capsule unlock dates
π³Payment info (via Lemon Squeezy, not stored by us)
π‘οΈ
How we protect your data
- β All data encrypted in transit using HTTPS/TLS
- β All data encrypted at rest in Supabase (EU servers)
- β Row Level Security (RLS) β you can only access your own capsules
- β Email verification required before account activation
- β Passwords hashed and never stored in plain text
- β No advertising or tracking cookies used
- β Payment data never stored β handled by Lemon Squeezy
- β Access to personal data strictly limited to authorized personnel
π
How long we keep your data
Text capsulesForever β even after cancellation
Audio/Video capsulesWhile subscribed + 6 months grace period
Account dataDeleted within 30 days of deletion request
Support ticketsRetained for 2 years
Payment recordsAs required by law (7 years)
βοΈ
Your GDPR rights
Access
Get a copy of your data
Rectification
Correct inaccurate data
Erasure
Request deletion of your data
Portability
Export your data
Objection
Object to data processing
Restriction
Limit how we use your data
To exercise any right, email us at Contact SupportWe respond within 30 days.
π€
Third party services we use
Supabase
Database & Authentication
Vercel
Hosting & Deployment
Resend
Email Delivery
Lemon Squeezy
Payment Processing
We never sell your data to third parties.
π¬
Questions about your data?
We take data protection seriously. Our support team is here to help.
Contact Support