Privacy Policy
Last updated: December 2024
Our Commitment to Your Privacy
At Data Publisher for Word, your privacy is fundamental to how we operate. This Privacy Policy explains how we collect, use, and protect your information when you use our service.
Key Privacy Principles
- Data Minimization: We only collect data necessary for the service to function
- Complete Isolation: You only see your own data, always
- No Data Mining: We never analyze or use your content for any purpose
- Transparent Practices: Clear, honest communication about data handling
Information We Collect
Account Information
When you create an account, we collect:
- Email address (used for login and important notifications)
- Name (for personalization and account management)
- Company name (optional, for business users)
- Password (encrypted and never stored in plain text)
Document and Data Content
To provide our service, we temporarily process:
- CSV files you upload (processed and stored encrypted)
- Word document templates you create or modify
- Images you upload to our image libraries
- Generated documents (available only to you)
Usage Information
We collect minimal usage data to improve the service:
- Feature usage patterns (which features are used most)
- Error logs (to fix bugs and improve stability)
- Performance metrics (to optimize speed and reliability)
- Basic analytics (page views, session duration)
How We Use Your Information
Service Delivery
- Process your CSV data to generate Word documents
- Store your templates and image libraries
- Provide customer support and technical assistance
- Send service-related notifications (system updates, account changes)
Service Improvement
- Analyze usage patterns to identify popular features
- Monitor system performance to prevent downtime
- Fix bugs and improve user experience
- Develop new features based on user needs
Legal and Security
- Comply with applicable laws and regulations
- Protect against fraud and abuse
- Enforce our Terms of Service
- Respond to legal requests when required
Data Security
We implement industry-standard security measures to protect your data:
Technical Safeguards
- Encryption: All data is encrypted in transit (TLS 1.3) and at rest (AES-256)
- Authentication: JWT-based secure authentication with session management
- Access Controls: Role-based access with principle of least privilege
- Network Security: Firewalls, intrusion detection, and regular security audits
Operational Safeguards
- Employee Training: Regular security awareness training for all staff
- Access Monitoring: All system access is logged and monitored
- Incident Response: Procedures for rapid response to security events
- Regular Audits: Third-party security assessments and penetration testing
Data Sharing and Disclosure
We do not sell, rent, or share your personal data with third parties for their marketing purposes.
We may share your information only in these limited circumstances:
Service Providers
We work with trusted third-party service providers who help us operate our service:
- Cloud Infrastructure: Microsoft Azure (hosting and data storage)
- Payment Processing: Stripe (credit card processing)
- Email Service: SendGrid (transactional emails)
- Analytics: Google Analytics (website usage, anonymized)
All service providers are bound by strict confidentiality agreements and data protection requirements.
Legal Requirements
We may disclose your information if required by law or to:
- Comply with legal process (subpoenas, court orders)
- Protect our rights and property
- Investigate fraud or security issues
- Protect the safety of our users or the public
Your Rights and Choices
Access and Portability
- View all your account information and data
- Export your templates and image libraries
- Download copies of your generated documents
- Request a complete data export
Correction and Deletion
- Update your account information at any time
- Delete individual files or image libraries
- Request complete account deletion
- Correct any inaccurate personal information
Communication Preferences
- Opt out of marketing emails (service emails will continue)
- Choose notification preferences
- Unsubscribe from newsletters and product updates
Data Retention
We retain your data only as long as necessary:
Active Accounts
- Account Data: Retained while your account is active
- Document Content: Retained until you delete it
- Usage Logs: Retained for 90 days for troubleshooting
Deleted Accounts
- Personal Data: Permanently deleted within 30 days
- Content: Permanently deleted within 30 days
- Legal Records: Retained only as required by law
International Data Transfers
Your data is primarily stored in the United States on Microsoft Azure infrastructure. If you're located outside the US, your data may be transferred to and processed in the United States. We ensure all international transfers comply with applicable data protection laws.
Children's Privacy
Our service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately.
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. We will:
- Post the updated policy on our website
- Update the "Last modified" date
- Notify you of material changes via email
- Provide 30 days notice for significant changes
Contact Us
If you have questions about this Privacy Policy or our data practices:
We take your privacy seriously and will respond to all inquiries within 5 business days.