Privacy
What we hold about you, who else touches it, and how to make it go away.
Last updated 2 August 2026
Draft, pending legal review
This page describes how we intend to operate, written by the people building the product. It has not been reviewed by a lawyer, and it does not yet name a governing jurisdiction. If you are relying on anything here for a decision that matters, write to us and ask.
What we collect
When you create an account: your email address, a password we never see in plain text, and a display name if you give one.
While you use the site: which Builds you opened, which steps you ticked off, which Builds you saved, and any feedback you send us on a Build.
When you first arrive: where you came from. If you followed a link with campaign tags on it, or arrived from another site, we store that against your account so we know which pages are worth writing. It is a first-party cookie, and it is the only cookie we set that is not needed to keep you signed in.
What we do not collect
We do not store card numbers. Payment happens on Stripe’s side and we receive only a customer reference and whether the subscription is live.
We do not record what you type into an AI tool. Builds are followed in somebody else’s product, and nothing you paste into ChatGPT or Claude comes back to us. Prompt text you copy from a Build is never sent anywhere by us either.
Who else handles it
Running this needs a handful of other companies. Each one sees only the part it needs:
- Supabase stores the database and handles sign-in. This is where your account and progress live.
- Vercel serves the website.
- Stripe takes payments and sends receipts. They hold the card details; we do not.
- Resend sends the email we send you.
- Plausible counts page views on the public pages. It is cookieless and aggregate only, so it cannot follow one person around, and it does not run inside the members’ area at all.
- Sentry records errors so we can fix them. It sees technical detail about a failure, not what you were writing.
Members and free accounts get email about the Builds themselves: what has been published, where you left off, and anything that has broken. Marketing email is separate, and you opt into it at signup rather than being opted in by default. Every one has an unsubscribe link, and unsubscribing from marketing does not stop the email you need to use your account.
Getting your data out, or deleted
Write to support@smartwaybuilds.io from the address on the account and ask for a copy of what we hold, or ask us to delete the account. Deletion removes the account, the progress and the saved list. Payment records stay with Stripe for as long as their own rules require, because that part is not ours to erase.
Children
This is not built for children, and accounts are meant for people over 16. We do not knowingly keep data about anyone younger. Tell us if we have and it goes.
Changes
If what we collect changes, this page changes with it and the date at the top moves. A change that affects what we do with data already collected gets an email, not a quiet edit.