Privacy Policy
Effective Date: {{ EFFECTIVE_DATE }}
This Privacy Policy explains how Shoretn (“we,” “us,” or “our”) collects, uses, and shares information when you use our websites, applications, APIs, and services (collectively, the “Service”).
By using the Service, you consent to this Privacy Policy.
1. Information We Collect
We collect information in the following ways:
1.1 Account Information
We do not store passwords or authentication credentials.
Authentication is handled by Auth0. When you sign in, we receive and store only the identifiers provided by Auth0, including:
- Auth0 user ID
- Email address
- Stripe customer ID (for billing)
We use these identifiers to associate your account with your data and purchases.
1.2 Usage and Analytics Data
We may collect usage data such as:
- pages visited
- links created and clicked
- device and browser type
- approximate location (based on IP address)
We may use PostHog for analytics. Data is used to improve performance, detect issues, and understand usage patterns. Analytics may be sampled or aggregated.
1.3 Logs
Our servers (e.g., Railway) may automatically record:
- IP address
- browser type
- request timestamps
- referring pages
Logs are used for security, troubleshooting, and preventing abuse.
1.4 Payment Information
We do not store payment card details.
Payments are processed by Stripe. We store the Stripe customer ID so we can:
- link purchases to your account
- manage subscriptions
- detect billing issues
Stripe’s use of your data is governed by their privacy policy.
2. How We Use Information
We use the information we collect to:
- operate and improve the Service
- authenticate users through Auth0
- identify accounts via Auth0 user ID and Stripe customer ID
- provide analytics and usage reports
- deliver customer support
- detect and prevent fraud, security issues, and abuse
- comply with legal obligations
We do not sell personal information.
3. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- keep you signed in
- manage sessions
- provide analytics
Cookies are first-party (set by us) and are not used for advertising.
Authentication cookies may be set by Auth0 as part of the login process. These are used only to maintain your session.
More detail is provided in our Cookie Policy.
4. Data Sharing
We may share information with:
- Auth0 (authentication)
- Stripe (payments)
- PostHog (analytics)
- Cloud hosting providers such as Railway
- Service providers who assist with operations
We do not share information with advertisers or sell personal data.
We may disclose information where required by law, or in response to a lawful request.
5. Data Retention and Deletion
5.1 Retention
We retain information for as long as needed to provide the Service.
Analytics and logs may be retained for a limited time for security and performance.
5.2 Deletion
You may request deletion through the UI or by emailing us.
When an account is deleted:
- Your account is marked as deleted immediately (soft delete), and access is disabled.
- Remaining personal data is permanently deleted after 30 days, except where required by law.
Backups may persist for a short period but are automatically purged.
6. Security
We use administrative, technical, and physical safeguards to protect information.
- We do not handle or store passwords.
- Authentication is performed by Auth0 using their security practices.
- Payments are handled by Stripe.
No method of transmission or storage is 100% secure, but we work to protect your information.
7. Children's Privacy
The Service is not directed to children under 13. We do not knowingly collect information from children under 13. If you believe a child has provided information, contact us.
8. Changes to This Policy
We may update this Privacy Policy. If changes materially affect your rights, we will provide notice (e.g., email or notice in the Service). Continued use after changes become effective means you accept the updated policy.
9. Contact
For questions or requests, contact:
Email: legal@shoretn.com
Jurisdiction: Georgia, USA
If you are located outside the United States, you consent to processing in the United States.
Changelog
- {{ EFFECTIVE_DATE }} — Initial publication of Privacy Policy.