Privacy Policy
Last updated: March 16, 2026
1. Information We Collect
Account information. When you register we collect your name, email address, and hashed password. If you sign up via a third-party provider (Google, GitHub) we receive the profile information you authorize.
Payment information. Credit card and billing details are collected and processed by Stripe. We never store your full card number on our servers.
Website content. The websites, pages, images, and text you create using Counselr are stored on our infrastructure so we can host and serve them on your behalf.
Usage data. We collect anonymized analytics — pages visited, features used, device type, and approximate location (country level) via Cloudflare headers — to improve the product.
2. How We Use Your Information
- Provide, maintain, and improve Counselr services
- Process transactions and send billing-related communications
- Detect and prevent fraud, abuse, and security incidents
- Send product updates and service announcements (you can opt out)
- Generate aggregated, anonymized statistics about platform usage
We do not sell, rent, or share your personal information with third parties for their marketing purposes.
3. Data Storage & Security
Your data is stored on encrypted servers hosted on DigitalOcean infrastructure in the United States. All connections are encrypted in transit via TLS 1.3 through Cloudflare. Databases are encrypted at rest.
We implement industry-standard security measures including network isolation, role-based access control, regular backups, and automated vulnerability scanning. Despite these measures, no method of transmission or storage is 100% secure.
4. Third-Party Services
We use the following third-party services that may process your data:
- Stripe — payment processing
- Cloudflare — CDN, DNS, DDoS protection
- Anthropic (AI AI) — AI website generation (prompts are processed but not stored for model training)
- DigitalOcean — cloud infrastructure
Each service operates under its own privacy policy. We encourage you to review them.
5. Cookies & Tracking
We use essential cookies for authentication and locale preferences. We do not use third-party advertising trackers. Anonymized analytics are collected via server-side Cloudflare headers, not client-side scripts.
6. Your Rights
You have the right to:
- Access, correct, or delete your personal data at any time from account settings
- Export all your website content and data
- Withdraw consent for non-essential data processing
- Request a copy of all data we hold about you
- Lodge a complaint with your local data protection authority
7. Data Retention
We retain your account data for as long as your account is active. If you delete your account, we remove all personal data within 30 days, except where retention is required by law (e.g., billing records for tax compliance, retained for up to 7 years).
8. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated via email or an in-app notification at least 30 days before they take effect.
9. Contact
For privacy-related inquiries, contact us at privacy@counselr.xyz.