[FIELD] values (your name and contact email). Full commercial terms will be added when paid plans launch. This text is not legal advice — have it reviewed before you start charging.Privacy Policy
Last updated: [DATE]
This Privacy Policy explains how personal data is processed when you use Accessure. During this early phase the service is run by an individual: the data controller is [YOUR FULL NAME], contactable at [CONTACT EMAIL]. (No company has been incorporated yet; this page will be updated with the legal entity once it is.)
1. Data we collect
Account / contact data: your email address and any name or agency name you provide, plus a hashed password if you create an account. Service data: the website URLs you submit for scanning and the resulting scan findings. Technical data: your IP address and basic request metadata, used for security and rate-limiting.
2. How we use it
To provide the free scanning tool, run and display scans, secure the service, and send the transactional emails you request (for example email verification or, if you opt in, waitlist updates). We do not sell your personal data and we do not use it for advertising.
3. Legal bases (GDPR)
We rely on: your consent (e.g. waitlist or marketing emails), legitimate interests (securing and improving the service), and performance of a contract where you use an account. You can withdraw consent at any time.
4. Processors and sharing
We use a small number of providers to operate the service, including [Resend — transactional email] and [HOSTING PROVIDER]. They process data on our instructions. Where data is transferred outside the EEA, we rely on standard contractual clauses or equivalent safeguards. We do not otherwise share your data except where required by law.
5. Retention
We keep your data only as long as needed for the purposes above, or until you ask us to delete it. Waitlist contacts are removed on request or when no longer relevant.
6. Your rights
Under the GDPR you may access, correct, export, restrict, object to, or delete your personal data, and lodge a complaint with your supervisory authority (in Italy, the Garante per la protezione dei dati personali). To exercise your rights contact [CONTACT EMAIL].
7. Security
We protect data with measures including password hashing, transport encryption and request rate-limiting. No system is perfectly secure; we will notify you of qualifying breaches as required by law.
8. Cookies
See our Cookie Policy for details on the storage we use.
9. Changes and contact
We may update this policy and will revise the date above. Questions: [CONTACT EMAIL].