Privacy Policy
Your privacy matters to us. This policy explains how Stillboard Pro collects, uses, and protects your personal information.
Welcome to Stillboard Pro ("Stillboard," "we," "us," or "our"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you use our goal-tracking and productivity platform, including our website, mobile applications, and related services (collectively, the "Service").
By accessing or using our Service, you agree to this Privacy Policy. If you do not agree with the terms of this policy, please do not access the Service.
1. Information We Collect
Personal Information You Provide
When you create an account or use our Service, we collect information you voluntarily provide:
- Account Information: Email address, name, username, and password when you register for an account
- Profile Information: Optional profile details such as profile picture, timezone, and preferences
- Goal and Progress Data: Goals you create, daily logs, progress updates, notes, insights, and completion data
- Communications: Messages you send to our support team, feedback, and survey responses
Usage Data Automatically Collected
We automatically collect certain information when you access or use our Service:
- Device Information: Device type, operating system, browser type, unique device identifiers
- Log Data: IP address, access times, pages viewed, features used, and referring URLs
- Usage Patterns: How you interact with features, session duration, and click patterns
- Location Data: General geographic location based on IP address (city/country level only)
Payment Information
When you subscribe to our paid services, payment processing is handled securely by Stripe, our third-party payment processor. We do not store your full credit card number, CVV, or other sensitive payment details on our servers. We receive only limited information from Stripe, including the last four digits of your card, card type, expiration date, and billing address, which we use for invoicing and fraud prevention purposes.
2. How We Use Your Information
We use the information we collect for the following purposes:
Provide and Maintain Service
Create and manage your account, enable goal tracking, and deliver core features
Personalize Experience
Customize content, recommendations, and notifications based on your preferences
Process Transactions
Handle subscription payments, issue invoices, and manage billing
Send Communications
Service updates, security alerts, and optional promotional emails (with consent)
Improve Our Service
Analyze usage patterns to enhance features, fix bugs, and develop new functionality
Ensure Security
Detect fraud, prevent abuse, and protect against unauthorized access
Provide Support
Respond to inquiries, troubleshoot issues, and assist with account management
Legal Compliance
Fulfill legal obligations and enforce our terms of service
3. Data Sharing and Third Parties
We do not sell, rent, or trade your personal information to third parties. We may share your information only in the following circumstances:
Service Providers
We work with trusted third-party companies that help us operate our Service, including:
- Stripe for payment processing
- Cloud hosting providers (AWS, Vercel)
- Email service providers for transactional emails
- Analytics services (with anonymized data)
Legal Requirements
We may disclose your information if required to do so by law, court order, or government request, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change and any choices you may have regarding your information.
With Your Consent
We may share your information with third parties when you explicitly consent to such sharing, such as when using integrations with other services you authorize.
4. Data Security
We implement comprehensive security measures to protect your personal information:
Encryption in Transit
All data transmitted between your device and our servers is encrypted using TLS 1.3
Encryption at Rest
Your data is encrypted when stored in our databases using AES-256 encryption
Access Controls
Strict access controls and authentication mechanisms limit who can access your data
Regular Audits
We conduct regular security audits and penetration testing to identify vulnerabilities
Secure Infrastructure
Our infrastructure is hosted on enterprise-grade cloud platforms with SOC 2 compliance
Incident Response
We maintain incident response procedures to quickly address any security issues
Important: While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security, but we are committed to implementing industry best practices.
5. Your Rights
For All Users
Regardless of your location, you have the following rights:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your account and associated data
- Data Export: Download your data in a portable format (JSON/CSV)
- Opt-Out: Unsubscribe from marketing communications at any time
GDPR Rights (European Economic Area)
If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):
- Right to Restriction: Request restriction of processing of your personal data
- Right to Object: Object to processing based on legitimate interests or direct marketing
- Right to Portability: Receive your data in a structured, machine-readable format
- Right to Withdraw Consent: Withdraw consent at any time where we rely on consent for processing
- Right to Lodge Complaint: File a complaint with your local data protection authority
Legal basis for processing: We process your data based on contractual necessity (to provide the Service), legitimate interests (to improve our Service and prevent fraud), and consent (for marketing communications).
CCPA Rights (California Residents)
If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA):
- Right to Know: Request information about the categories and specific pieces of personal information we have collected
- Right to Delete: Request deletion of personal information we have collected
- Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights
- Do Not Sell: We do not sell your personal information. California residents can opt out of any future sale
To exercise any of these rights, please contact us at privacy@stillboard.com or through your account settings.
7. Children's Privacy
Our Service is not intended for children under the age of 16. We do not knowingly collect personal information from children under 16. If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us immediately.
If we discover that we have collected personal information from a child under 16 without verification of parental consent, we will take steps to delete that information from our servers as quickly as possible.
8. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make changes:
- We will update the "Last updated" date at the top of this policy
- For significant changes, we will notify you via email or through a prominent notice on our Service
- We encourage you to review this policy periodically to stay informed about how we protect your information
Your continued use of the Service after any changes to this Privacy Policy constitutes your acceptance of the updated policy.
9. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
General Inquiries
hello@stillboard.comData Protection Officer
For GDPR-related inquiries, you may contact our Data Protection Officer:
dpo@stillboard.comWe will respond to your request within 30 days. In certain circumstances, we may need to verify your identity before processing your request.
Your Privacy Matters
At Stillboard Pro, we believe in transparency and respect for your privacy. We are committed to handling your data responsibly and giving you control over your personal information. Thank you for trusting us with your goals and progress.