Privacy Policy

Last updated: March 16, 2026

1. Information We Collect

Account information. When you register we collect your name, email address, and hashed password. If you sign up via a third-party provider (Google, GitHub) we receive the profile information you authorize.

Payment information. Credit card and billing details are collected and processed by Stripe. We never store your full card number on our servers.

Website content. The websites, pages, images, and text you create using Counselr are stored on our infrastructure so we can host and serve them on your behalf.

Usage data. We collect anonymized analytics — pages visited, features used, device type, and approximate location (country level) via Cloudflare headers — to improve the product.

2. How We Use Your Information

  • Provide, maintain, and improve Counselr services
  • Process transactions and send billing-related communications
  • Detect and prevent fraud, abuse, and security incidents
  • Send product updates and service announcements (you can opt out)
  • Generate aggregated, anonymized statistics about platform usage

We do not sell, rent, or share your personal information with third parties for their marketing purposes.

3. Data Storage & Security

Your data is stored on encrypted servers hosted on DigitalOcean infrastructure in the United States. All connections are encrypted in transit via TLS 1.3 through Cloudflare. Databases are encrypted at rest.

We implement industry-standard security measures including network isolation, role-based access control, regular backups, and automated vulnerability scanning. Despite these measures, no method of transmission or storage is 100% secure.

4. Third-Party Services

We use the following third-party services that may process your data:

  • Stripe — payment processing
  • Cloudflare — CDN, DNS, DDoS protection
  • Anthropic (AI AI) — AI website generation (prompts are processed but not stored for model training)
  • DigitalOcean — cloud infrastructure

Each service operates under its own privacy policy. We encourage you to review them.

5. Cookies & Tracking

We use essential cookies for authentication and locale preferences. We do not use third-party advertising trackers. Anonymized analytics are collected via server-side Cloudflare headers, not client-side scripts.

6. Your Rights

You have the right to:

  • Access, correct, or delete your personal data at any time from account settings
  • Export all your website content and data
  • Withdraw consent for non-essential data processing
  • Request a copy of all data we hold about you
  • Lodge a complaint with your local data protection authority

7. Data Retention

We retain your account data for as long as your account is active. If you delete your account, we remove all personal data within 30 days, except where retention is required by law (e.g., billing records for tax compliance, retained for up to 7 years).

8. Changes to This Policy

We may update this policy from time to time. Material changes will be communicated via email or an in-app notification at least 30 days before they take effect.

9. Contact

For privacy-related inquiries, contact us at privacy@counselr.xyz.