Terrace — Privacy Policy
Effective date: [DATE] Last updated: [DATE]
This Privacy Policy explains how [COMPANY LEGAL NAME] ("Terrace," "we," "us") collects, uses, and shares information when you use the Terrace application and websites (the "Service").
1. Information We Collect
Account information. Name, email address, password (stored as a secure hash by our authentication provider), and, if you sign in with Google or Microsoft, the profile information those providers share (name, email, account identifier).
Organization and content data. The process documentation, maps, comments, attachments, review records, and settings you and your organization create in the Service ("Customer Content"). Customer Content belongs to your organization and is controlled by its administrators.
Billing information. For paid plans, payments are processed by our payment processor (Stripe). We receive plan, seat, and transaction status information; we do not store full card numbers.
Usage and device information. Log data such as IP address, browser type, pages viewed, actions taken (for example, publishing a process), timestamps, and error reports, used for security, debugging, and improving the Service.
Cookies. We use cookies and similar technologies for authentication and session management. [Confirm with counsel whether analytics cookies are used and update accordingly.]
2. How We Use Information
We use information to: provide and operate the Service; authenticate you and secure accounts and organizations; process AI-generation requests you initiate; send transactional emails (verification, invitations, review notifications, receipts); provide support; monitor, debug, and improve the Service; enforce our Terms and protect against fraud and abuse; and comply with law. We do not sell personal information, and we do not use Customer Content to advertise to you.
3. AI Features
When you use AI features (such as generating a process from a description), the text you submit and relevant process context are sent to our AI service provider (Anthropic) to produce the output, subject to their data-processing commitments. AI inputs and outputs are handled as Customer Content. We do not permit our AI providers to use your content to train their generally available models [CONFIRM against current provider terms].
4. How Information Is Shared
Within your organization. Content and activity are visible to members of your organization according to roles and permissions set by its administrators. Administrators can access content created in their organization.
Share links and exports. If you or your organization create share links or exports, the shared content is accessible to whoever receives the link or file.
Service providers (subprocessors). We use vetted providers to run the Service, limited to what each needs:
- Supabase — database, authentication, and file storage (hosted on [AWS, REGION])
- Vercel — application hosting and delivery
- Resend — transactional email delivery
- Anthropic — AI content generation (when you use AI features)
- Stripe — payment processing (paid plans)
- Google / Microsoft — sign-in, if you choose OAuth login
Legal and safety. We may disclose information to comply with law, enforce our Terms, or protect the rights, safety, and security of users, the public, or the Service.
Business transfers. If we are involved in a merger, acquisition, or asset sale, information may be transferred as part of that transaction with notice as required by law.
5. Data Retention and Deletion
We retain account information while your account is active. Customer Content is retained under your organization's control: administrators may delete processes and content in-app, and audit and version history are retained as part of the organization's records. When an organization's account is terminated, Customer Content is made available for export for [30] days and then deleted in the ordinary course, subject to backup cycles (backups roll off within [35] days) and legal obligations. To request account deletion, contact [CONTACT EMAIL].
6. Security
We use industry-standard measures appropriate to the Service, including encryption in transit (TLS), encryption at rest by our hosting providers, role-based access control with row-level security enforced at the database layer, and least-privilege access to production systems. No method of transmission or storage is completely secure; we cannot guarantee absolute security. Report vulnerabilities to [SECURITY EMAIL].
7. Your Rights and Choices
Depending on your location, you may have rights to access, correct, export, or delete your personal information, or to object to or restrict certain processing (including under GDPR or CCPA where applicable). Because Customer Content is controlled by your organization, requests concerning content in an organization workspace may be directed to that organization's administrator; we will assist organizations in responding. To exercise rights regarding your account information, contact [CONTACT EMAIL]. You may also unsubscribe from non-essential emails via the links they contain. [Counsel to confirm GDPR/CCPA applicability, lawful bases, and whether a DPA and EU representative are needed.]
8. International Transfers
The Service is hosted in [REGION, e.g., the United States]. If you use the Service from other regions, your information will be transferred to and processed in the hosting region. [Counsel to add transfer mechanisms if EU/UK customers are targeted.]
9. Children
The Service is not directed to children under 16, and we do not knowingly collect personal information from them. If you believe a child has provided us information, contact [CONTACT EMAIL] and we will delete it.
10. Changes to This Policy
We may update this Policy from time to time. For material changes, we will provide notice (for example, by email or in-app) before the changes take effect. The "Last updated" date reflects the latest revision.
11. Contact
[COMPANY LEGAL NAME] · [MAILING ADDRESS] · [CONTACT EMAIL]