Privacy Policy
Your privacy is our priority. Learn how we protect and manage your data.
Effective Date: 2024-12-15
Version: 2.0
1. Information We Collect
Account Information
- Name, email address, username, and password
- Company name, startup stage, and industry information
- Profile preferences and settings
Payment Information
- Billing address and payment method details
- Payment history and subscription information
- All payment processing is handled securely via Stripe
Usage Data
- Pages visited, features used, time spent on platform
- Goal creation and completion data
- Resource access and bookmark information
- AI coaching interaction patterns
AI Content and Coaching Data
- Questions and prompts submitted to PivotPal
- AI-generated responses and coaching content
- Voice chat recordings and transcripts (when enabled)
- Business ideas and strategies shared during sessions
2. How We Use Your Data
Service Delivery
- Provide and maintain our platform and AI coaching services
- Process payments and manage subscriptions
- Deliver personalized coaching recommendations
- Generate AI responses tailored to your context
Improvement and Personalization
- Customize your dashboard and content
- Remember your preferences and settings
- Analyze usage patterns to improve our services
- Develop new features for entrepreneurs
Communication
- Send transactional emails
- Provide customer support
- Send marketing communications (with consent)
- Deliver educational content
3. Legal Bases for Processing (GDPR)
Purpose | Legal Basis |
---|---|
Service delivery | Performance of contract |
Marketing emails | Consent |
Legal compliance | Legal obligation |
Platform improvements | Legitimate interest |
4. Data Retention
- Active accounts: Data retained while account is active
- Coaching sessions: Up to 2 years for service quality
- Voice recordings: Up to 90 days
- Financial records: 7 years for legal compliance
- Deleted accounts: Anonymized after 30 days
5. Your Rights
GDPR Rights (EU Residents)
- Access your personal data
- Correct inaccurate data
- Request deletion ("right to be forgotten")
- Data portability
- Object to processing
- Restrict processing
CCPA Rights (California Residents)
- Know what data we collect
- Delete personal information
- Opt-out of data sales (we don't sell data)
- Non-discrimination for exercising rights
8. Data Security
Encryption
Data encrypted in transit and at rest
Access Control
Strict authentication and authorization
Regular Audits
Security testing and compliance checks
9. AI-Specific Privacy Protections
Your AI Data is Protected
- Conversations are not used to train public AI models
- Business ideas remain confidential
- AI responses generated specifically for you
- Voice recordings encrypted and auto-deleted
- Context data isolated per user
10. Contact Information
Privacy Inquiries
Data Protection Officer
Supervisory Authorities
You have the right to file a complaint with your local data protection authority:
- UK: Information Commissioner's Office (ICO)
- EU: Your national Data Protection Authority
- California: California Attorney General
Last updated: 2024-12-15