Legal Document

Privacy Policy

Your privacy matters to us. This policy explains how Stillboard Pro collects, uses, and protects your personal information.

Last updated: January 19, 2026

Welcome to Stillboard Pro ("Stillboard," "we," "us," or "our"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you use our goal-tracking and productivity platform, including our website, mobile applications, and related services (collectively, the "Service").

By accessing or using our Service, you agree to this Privacy Policy. If you do not agree with the terms of this policy, please do not access the Service.

1. Information We Collect

Personal Information You Provide

When you create an account or use our Service, we collect information you voluntarily provide:

  • Account Information: Email address, name, username, and password when you register for an account
  • Profile Information: Optional profile details such as profile picture, timezone, and preferences
  • Goal and Progress Data: Goals you create, daily logs, progress updates, notes, insights, and completion data
  • Communications: Messages you send to our support team, feedback, and survey responses

Usage Data Automatically Collected

We automatically collect certain information when you access or use our Service:

  • Device Information: Device type, operating system, browser type, unique device identifiers
  • Log Data: IP address, access times, pages viewed, features used, and referring URLs
  • Usage Patterns: How you interact with features, session duration, and click patterns
  • Location Data: General geographic location based on IP address (city/country level only)

Payment Information

When you subscribe to our paid services, payment processing is handled securely by Stripe, our third-party payment processor. We do not store your full credit card number, CVV, or other sensitive payment details on our servers. We receive only limited information from Stripe, including the last four digits of your card, card type, expiration date, and billing address, which we use for invoicing and fraud prevention purposes.

2. How We Use Your Information

We use the information we collect for the following purposes:

Provide and Maintain Service

Create and manage your account, enable goal tracking, and deliver core features

Personalize Experience

Customize content, recommendations, and notifications based on your preferences

Process Transactions

Handle subscription payments, issue invoices, and manage billing

Send Communications

Service updates, security alerts, and optional promotional emails (with consent)

Improve Our Service

Analyze usage patterns to enhance features, fix bugs, and develop new functionality

Ensure Security

Detect fraud, prevent abuse, and protect against unauthorized access

Provide Support

Respond to inquiries, troubleshoot issues, and assist with account management

Legal Compliance

Fulfill legal obligations and enforce our terms of service

3. Data Sharing and Third Parties

We do not sell, rent, or trade your personal information to third parties. We may share your information only in the following circumstances:

Service Providers

We work with trusted third-party companies that help us operate our Service, including:

  • Stripe for payment processing
  • Cloud hosting providers (AWS, Vercel)
  • Email service providers for transactional emails
  • Analytics services (with anonymized data)

Legal Requirements

We may disclose your information if required to do so by law, court order, or government request, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.

Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change and any choices you may have regarding your information.

With Your Consent

We may share your information with third parties when you explicitly consent to such sharing, such as when using integrations with other services you authorize.

4. Data Security

We implement comprehensive security measures to protect your personal information:

Encryption in Transit

All data transmitted between your device and our servers is encrypted using TLS 1.3

Encryption at Rest

Your data is encrypted when stored in our databases using AES-256 encryption

Access Controls

Strict access controls and authentication mechanisms limit who can access your data

Regular Audits

We conduct regular security audits and penetration testing to identify vulnerabilities

Secure Infrastructure

Our infrastructure is hosted on enterprise-grade cloud platforms with SOC 2 compliance

Incident Response

We maintain incident response procedures to quickly address any security issues

Important: While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security, but we are committed to implementing industry best practices.

5. Your Rights

For All Users

Regardless of your location, you have the following rights:

  • Access: Request a copy of the personal data we hold about you
  • Correction: Request correction of inaccurate or incomplete data
  • Deletion: Request deletion of your account and associated data
  • Data Export: Download your data in a portable format (JSON/CSV)
  • Opt-Out: Unsubscribe from marketing communications at any time

GDPR Rights (European Economic Area)

If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):

  • Right to Restriction: Request restriction of processing of your personal data
  • Right to Object: Object to processing based on legitimate interests or direct marketing
  • Right to Portability: Receive your data in a structured, machine-readable format
  • Right to Withdraw Consent: Withdraw consent at any time where we rely on consent for processing
  • Right to Lodge Complaint: File a complaint with your local data protection authority

Legal basis for processing: We process your data based on contractual necessity (to provide the Service), legitimate interests (to improve our Service and prevent fraud), and consent (for marketing communications).

CCPA Rights (California Residents)

If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA):

  • Right to Know: Request information about the categories and specific pieces of personal information we have collected
  • Right to Delete: Request deletion of personal information we have collected
  • Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights
  • Do Not Sell: We do not sell your personal information. California residents can opt out of any future sale

To exercise any of these rights, please contact us at privacy@stillboard.com or through your account settings.

6. Cookie Policy

We use cookies and similar tracking technologies to enhance your experience on our Service. Cookies are small text files stored on your device that help us provide and improve our Service.

Essential Cookies

Required for the Service to function properly. These cannot be disabled. They include authentication tokens, session identifiers, and security cookies.

Functional Cookies

Remember your preferences such as language, timezone, and display settings to provide a personalized experience.

Analytics Cookies

Help us understand how visitors interact with our Service by collecting information anonymously. We use this data to improve our Service.

Marketing Cookies

Used to track visitors across websites to display relevant advertisements. These are optional and require your consent.

Managing Cookies

You can control and manage cookies through your browser settings. Most browsers allow you to refuse or delete cookies. However, blocking certain cookies may impact your experience and limit functionality. You can also manage your cookie preferences through our cookie consent banner.

7. Children's Privacy

Our Service is not intended for children under the age of 16. We do not knowingly collect personal information from children under 16. If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us immediately.

If we discover that we have collected personal information from a child under 16 without verification of parental consent, we will take steps to delete that information from our servers as quickly as possible.

8. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make changes:

  • We will update the "Last updated" date at the top of this policy
  • For significant changes, we will notify you via email or through a prominent notice on our Service
  • We encourage you to review this policy periodically to stay informed about how we protect your information

Your continued use of the Service after any changes to this Privacy Policy constitutes your acceptance of the updated policy.

9. Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Data Protection Officer

For GDPR-related inquiries, you may contact our Data Protection Officer:

dpo@stillboard.com

We will respond to your request within 30 days. In certain circumstances, we may need to verify your identity before processing your request.

Your Privacy Matters

At Stillboard Pro, we believe in transparency and respect for your privacy. We are committed to handling your data responsibly and giving you control over your personal information. Thank you for trusting us with your goals and progress.