StockWell("StockWell," "we," "us") respects your privacy. This Privacy Policy describes how we handle personal data when you use the StockWell website and services (the "Service"). We aim to collect as little as we need to run the Service well.
1. Data we collect
- Account data: your email address and authentication credentials, managed through our authentication provider (Supabase).
- Profile & household data: a display name (if you provide one), your household name, and which members belong to it.
- Inventory data: the storage areas, locations, items, packages, quantities, dates, and notes you enter.
- Payment data: if you subscribe to a paid plan, your payment details are collected and processed by Stripe. We do not store your full card number; we keep limited billing metadata (plan, status, and Stripe identifiers).
- Usage & device data: basic, privacy-friendly analytics (e.g. pages visited) and standard server logs used to keep the Service secure and reliable.
2. How we use your data
- To provide, maintain, and improve the Service;
- To authenticate you and keep your account secure;
- To process subscriptions, payments, and applicable sales tax;
- To send essential account communications (e.g. confirmation, password reset, and — if you opt in — alerts and updates);
- To detect, prevent, and respond to fraud, abuse, or security issues.
We do not sell your personal data, and we do not share your inventory with other users outside your own household.
3. Third-party processors
We rely on a small set of trusted providers to operate the Service. Each processes data only as needed to provide their service:
- Supabase — database, authentication, and storage;
- Vercel — application hosting and content delivery;
- Stripe — payment processing and sales-tax calculation;
- Our email provider — transactional email (confirmation, password reset, invitations).
4. Data isolation & security
Each household's data is isolated at the database level using row-level security, so members can only access their own household's inventory. We keep credentials and secrets in secure environment configuration, never in client code. No system is perfectly secure, but we take reasonable measures to protect your data and will notify affected users of a material breach as required by law.
5. Data retention, export & deletion
We retain your data while your account is active. You can export your inventory and delete your account and associated data at any time from your account settings. When you delete your account, we remove your personal data from the live Service, except where we must retain limited records to comply with legal, tax, or accounting obligations (for example, payment records).
6. Your rights
Depending on where you live (for example, under CCPA/CPRA in California or GDPR in the EU/UK), you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. To exercise these rights, contact us at support@mystockwell.com. We will respond within the timeframe required by applicable law.
7. Cookies & analytics
We use a minimal set of cookies and privacy-friendly analytics to keep you signed in and understand aggregate usage. See our Cookie Notice for details.
8. Children
The Service is not directed to children under 13, and we do not knowingly collect personal data from them.
9. Changes to this policy
We may update this Privacy Policy from time to time. We will update the "last updated" date above and, for material changes, provide additional notice where appropriate.
10. Contact
For privacy questions or data requests, email support@mystockwell.com.