Placeholder template — not legal advice. This is starter copy so the flow is wired end to end. Replace it with policy reviewed for your jurisdiction and entity before charging customers.

Privacy Policy

Effective date: [DATE]

This Privacy Policy explains how [YOUR COMPANY LLC] (“we”, “us”) collects, uses, and protects personal information when you use Good 2 Great Events (the “Service”).

1. Information we collect

  • Account information: name, email, and password (stored hashed by our authentication provider).
  • Content you provide: organizations, events, tasks, budgets, guest and RSVP lists, and uploaded photos.
  • Usage & device data: log data and basic analytics used to operate and improve the Service.

2. How we use information

We use personal information to provide and secure the Service, communicate with you about your account, and improve the product. We do not sell your personal information.

3. Sub-processors

We rely on third-party providers to run the Service, including hosting, database, and authentication ([e.g., Supabase], your hosting provider, and — once billing ships — a payment processor). Each processes data only to provide their service to us. [Maintain a current sub-processor list.]

4. Data retention

We retain your data for as long as your account is active. Deleted organizations are held for a recovery window and then permanently removed. [Confirm the exact retention period.]

5. Security

We use per-tenant access controls (row-level security), encrypted transport, and scoped access to protect your data. No method of storage or transmission is completely secure.

6. Your rights

Depending on your location, you may have rights to access, correct, export, or delete your personal data. To exercise them, contact us at the address below. [Add GDPR/CCPA-specific language if you serve those regions.]

7. Contact

Questions about privacy? Contact us at privacy@good2great.events.