PRIVACY POLICY

Last updated: October 7, 2025

1. Introduction

Goodideafy ("we," "us," or "our") respects your privacy. This Privacy Policy explains how we collect, use, and protect your information when you use our Service.

2. Information We Collect

Ideas You Submit

When you use Goodideafy, we collect the text of ideas you submit. We process this data to:

  • Generate YES/NO responses
  • Provide optional explanations (Pro feature)
  • Improve our Service
  • Prevent abuse and ensure safety

We store ideas in a hashed and truncated format. We do NOT store your full ideas indefinitely.

Usage Data

We automatically collect:

  • IP address (for rate limiting and abuse prevention)
  • Browser type and version
  • Pages visited and features used
  • Time and date of visits
  • Interaction events (clicks, submissions)

Payment Information

If you purchase Pro features, we use Stripe to process payments. We do NOT store your credit card details. Stripe's privacy policy applies to payment data: stripe.com/privacy

3. How We Use Your Information

We use collected information to:

  • Provide and improve the Service
  • Generate AI responses to your ideas
  • Prevent spam and abuse
  • Analyze usage patterns and trends
  • Process payments for Pro features
  • Communicate with you about the Service
  • Comply with legal obligations

4. Third-Party Services

We use the following third-party services that may collect data:

OpenAI

We use OpenAI's API to generate responses. Your ideas are sent to OpenAI for processing. OpenAI's data usage policy: openai.com/policies/privacy-policy

Vercel Analytics

We use Vercel for hosting and analytics to understand how users interact with our Service.

Stripe

We use Stripe for payment processing. Stripe collects payment and billing information.

PostHog (optional)

We may use PostHog for product analytics to improve user experience.

5. Data Retention

We retain data for as long as necessary to provide the Service and comply with legal obligations:

  • Ideas: Hashed and truncated, retained for up to 30 days for caching and abuse prevention
  • Usage analytics: Retained indefinitely in aggregated form
  • Payment records: Retained as required by tax and financial regulations (typically 7 years)

6. Your Rights (GDPR & UK GDPR)

If you are in the EU or UK, you have the right to:

  • Access: Request a copy of your data
  • Rectification: Correct inaccurate data
  • Erasure: Request deletion of your data ("right to be forgotten")
  • Restriction: Limit how we process your data
  • Portability: Receive your data in a portable format
  • Object: Object to processing of your data

To exercise these rights, contact us at: privacy@goodideafy.com

7. Cookies and Tracking

We use minimal cookies and browser storage:

  • Session cookies for basic functionality
  • Analytics cookies to understand usage (you can disable these in your browser)
  • No advertising or third-party tracking cookies

8. Data Security

We implement appropriate technical and organizational measures to protect your data, including:

  • HTTPS encryption for all connections
  • Secure API key management
  • Regular security updates
  • Limited data retention

However, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.

9. Children's Privacy

Goodideafy is not intended for users under 18 years old. We do not knowingly collect data from children. If you believe a child has provided us with personal information, contact us immediately.

10. International Data Transfers

Your data may be transferred to and processed in countries outside your country of residence, including the United States (where OpenAI and Vercel are based). We ensure appropriate safeguards are in place for such transfers.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the new policy on this page with an updated "Last updated" date.

12. Contact Us

For questions about this Privacy Policy or to exercise your rights, contact us at:

Email: privacy@goodideafy.com

📧 Data Requests

To request your data, request deletion, or exercise any GDPR rights, email us at privacy@goodideafy.com. We will respond within 30 days.