Privacy Policy

Last updated: May 27, 2024

This Privacy Policy describes how MindStash ("we," "us," or "our") collects, uses, and shares your personal information when you use our website, applications, and services (collectively, the "Service").

By using MindStash, you agree to the collection and use of information in accordance with this Privacy Policy. We value your privacy and are committed to protecting your personal data.

1. Information We Collect

1.1 Personal Information

We may collect the following types of personal information:

  • Account Information: When you register for MindStash, we collect your email address and name.
  • Content Information: Information you provide when using our Service, including interests you share via email to (username)@mindstash.app.
  • Communication Data: Information contained in your communications with us, including support requests sent to hello@mindstash.app.

1.2 Usage Data

We automatically collect certain information when you use our Service:

  • Analytics Data: Basic web analytics regarding our website and application usage, such as pages visited, time spent on the Service, and referring websites.
  • Device Information: Information about your device, such as IP address, browser type, and operating system.
  • Google Analytics: We use Google Analytics to collect standard internet log information and details of visitor behavior patterns. This helps us track the number of visitors to our site and understand how visitors use our Service.

2. How We Use Your Information

We use your personal information for the following purposes:

  • To provide and maintain our Service
  • To personalize your experience and deliver content relevant to your interests
  • To communicate with you, including sending weekly digest emails and responding to your inquiries
  • To improve our Service based on your feedback and usage patterns
  • To monitor the usage of our Service and prevent potential abuse
  • To comply with legal obligations

3. Storage and Security

3.1 Data Storage and Processing

We use Supabase, a third-party database service provider, to store your data. Our primary database is located in Central EU (Frankfurt) and is hosted on AWS (Amazon Web Services).

We use the OpenAI API to process content you submit to MindStash. When you submit content to be researched (your "finds"), this information is shared with OpenAI for processing. OpenAI's use of this data is governed by their privacy policy and terms of service.

3.2 Data Security

We implement appropriate technical and organizational measures to protect your personal information from unauthorized access, disclosure, alteration, or destruction. However, no method of transmission over the internet or electronic storage is 100% secure, and we cannot guarantee absolute security.

4. Data Sharing and Third Parties

4.1 Service Providers

We may share your personal information with third-party service providers to facilitate our Service, including:

  • Supabase: For data storage and database management
  • SendGrid: For email communication services
  • OpenAI: For processing user-submitted content ("finds") and generating research summaries
  • Google Analytics: For website usage analytics and understanding user behavior

These third-party service providers have access to your personal information only to perform specific tasks on our behalf and are obligated not to disclose or use it for any other purpose.

4.2 No Selling of Data

We do not sell, trade, or otherwise transfer your personal information to outside parties. We do not share your data with third parties for marketing or advertising purposes.

5. Your Data Rights

Under EU data protection laws, you have the following rights regarding your personal data:

  • Access: You can request a copy of the personal data we hold about you.
  • Rectification: You can request that we correct inaccurate or incomplete information.
  • Erasure: You can request that we delete your personal data (subject to certain conditions).
  • Restriction: You can request that we restrict the processing of your personal data.
  • Data Portability: You can request a machine-readable copy of your data.
  • Objection: You can object to our processing of your personal data.

To exercise any of these rights, please contact us at hello@mindstash.app.

6. Data Retention

We will retain your personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, or as required by law. When we no longer need to use your data, we will either securely delete it or anonymize it so that it can no longer be associated with you.

7. Account Deletion

You can request the deletion of your account and associated data by sending an email to hello@mindstash.app. Upon receiving your request, we will delete your personal information from our active databases, though some information may be retained in our backups for a limited period.

8. Communication Preferences

8.1 Marketing Communications

You can manage your email marketing preferences by:

  • Using the unsubscribe link in any marketing email we send
  • Adjusting your preferences in your account settings
  • Contacting us directly at hello@mindstash.app

8.2 Service Communications

Some communications, such as weekly digest emails that are core to our Service, may not be optional. If you wish to stop receiving these, you will need to delete your account.

9. Cookies and Tracking

We use cookies and similar tracking technologies to track activity on our Service and hold certain information. Cookies are files with a small amount of data that may include an anonymous unique identifier.

You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.

We use Google Analytics, which uses cookies to help us analyze how users use our site. The information generated by the cookie about your use of our website (including your IP address) will be transmitted to and stored by Google on servers in the United States. Google will use this information for the purpose of evaluating your use of our website, compiling reports on website activity, and providing other services relating to website activity and internet usage. You can opt-out of Google Analytics by installing the Google Analytics Opt-out Browser Add-on.

10. Children's Privacy

Our Service is not directed to individuals under the age of 13, and we do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.

11. International Data Transfers

Your information may be transferred to and processed on computers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ. By using our Service, you consent to this transfer.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.

You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.

13. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us at:

Email: hello@mindstash.app

By using the MindStash Service, you acknowledge that you have read and understood this Privacy Policy.