Legal

Privacy Policy

Effective date: March 8, 2026 · Last updated: March 8, 2026

Goodsite ("we", "our", or "us") operates goodsite.io and related services. This Privacy Policy explains what information we collect, how we use it, and the choices you have.

1. Information We Collect

Information you provide

  • Account data — name, email address, and password when you register.
  • Business data — business name, address, phone number, and other details you enter when creating a website.
  • Payment data — billing details processed by Stripe. We do not store card numbers on our servers.
  • Communications — messages you send us via email or in-app support.

Information collected automatically

  • Usage data — pages visited, features used, and time spent in the app.
  • Device & log data — IP address, browser type, operating system, and referring URLs.
  • Cookies — session cookies required for authentication and analytics cookies (see Section 6).

2. How We Use Your Information

  • Provide, operate, and improve the Goodsite service.
  • Generate and host websites on your behalf.
  • Process payments and manage subscriptions.
  • Send transactional emails (account confirmations, invoices, password resets).
  • Send product updates and marketing communications — you can opt out at any time.
  • Detect and prevent fraud, abuse, and security incidents.
  • Comply with legal obligations.

3. How We Share Your Information

We do not sell your personal data. We share information only in these cases:

  • Service providers — Supabase (database & auth), Stripe (payments), Vercel (hosting), Resend (email), and Google (AI services). Each is bound by data-processing agreements.
  • Legal requirements — when required by law or to protect our rights.
  • Business transfers — in the event of a merger, acquisition, or sale of assets.

4. Data Retention

We retain your account data for as long as your account is active. If you delete your account, we remove your personal data within 30 days, except where retention is required by law or legitimate business need (e.g., billing records).

5. Security

We use industry-standard security measures including TLS encryption in transit, encrypted storage at rest, and role-based access controls. No method of transmission over the Internet is 100% secure; we cannot guarantee absolute security.

6. Cookies

We use the following types of cookies:

  • Essential — required for authentication and core functionality. Cannot be disabled.
  • Analytics — help us understand how visitors use the site (e.g., aggregate page views). You can opt out via your browser settings or a cookie consent manager.

7. Your Rights

Depending on your location, you may have the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate data.
  • Request deletion of your data.
  • Object to or restrict certain processing.
  • Data portability (receive your data in a machine-readable format).
  • Withdraw consent at any time where processing is based on consent.

To exercise any of these rights, email us at privacy@goodsite.io.

8. Children's Privacy

Goodsite is not directed to children under 13. We do not knowingly collect personal information from children. If you believe we have inadvertently collected such information, contact us and we will delete it promptly.

9. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date at the top and, for material changes, notify you by email or in-app notice.

10. Contact Us

Questions or concerns? Reach out to us at:
Goodsite
privacy@goodsite.io