Legal information
Privacy Policy
How MyInviteCraft processes account, invitation, guest, media, analytics, email, billing, and security data.
Effective and last updated: August 24, 20261. Scope
This Policy explains the personal and operational data we process when you use MyInviteCraft, why we use it, and your choices. When an invitation owner enters guest data for an event, that owner is also responsible for collecting it lawfully and transparently.
2. Account data
When you create and use an account, we process your email address, display name and profile information, workspace and account state, plan and usage limits, authentication, password-reset, and session information.
3. Invitation and event data
We store invitation and event content, drafts, published snapshots, title, date, time, location, map information, template, design, language, branding, and section settings. Drafts and unpublished invitation media are not served as public pages; published content is visible at the invitation link you share.
4. Guest, RSVP, and planning data
At a customer’s direction, we may process guest and party names, contact details, attendance status, party size, language preference, dietary and operational notes, seating plans and table/seat assignments, and other wedding or event-planning data. Private RSVP and seating links should be shared only with intended recipients.
5. Uploaded media
To provide the service, we store and process images, video, audio, fonts, favicons, and technical metadata needed for operation, such as file name, type, size, storage location, and processing details. Media access controls depend on invitation draft/publication state and request authorization; a public media URL is not itself authorization.
6. Privacy-minimized analytics
To show customers general invitation usage, we process limited analytics such as an allowlisted event type, invitation, rendered locale, general call-to-action or semantic target, timestamp, and optionally a secret-keyed digest of a random 24-hour browser session identifier.
Analytics intentionally do not store raw IP addresses, user agents, device fingerprints, arbitrary URLs or JSON, guest contact data, or personalized access tokens. ANALYTICS_RETENTION_DAYS currently limits the reporting aggregation window; automatic physical deletion of analytics rows has not yet been implemented.
7. Transactional email
A configured email/SMTP provider may process the relevant email address, message content, and delivery metadata to send service messages such as password recovery, RSVP notifications, and invitation publication confirmations. This Policy does not name a provider until one is selected and configured, and does not describe marketing email.
8. Billing
When paid plans are enabled, Paddle may process payment, tax, subscription, and billing information under its own terms and privacy notice. MyInviteCraft stores operational records such as subscription state, plan, transaction identifiers, and receipt links; it does not store raw card numbers.
9. Operational and security data
To authenticate users, protect the service, limit abuse, and investigate problems, we may process session cookies and tokens, CSRF data, audit records, request identifiers, error and service logs, rate-limit signals, and necessary IP/request security metadata. Operational security records are separate from analytics. We do not currently promise a single fixed automatic deletion schedule for every operational IP record or audit log.
10. Cookies and local storage
We use necessary HTTP-only session cookies, CSRF protection, and browser local/session storage for authentication, security, and application state. The analytics session identifier is kept per browser tab in sessionStorage and expires after 24 hours. We do not currently use advertising or marketing cookies.
11. Purposes and legal bases
We process data to provide requested service features, administer accounts and subscriptions, protect security, support users, comply with law, and improve the service in a privacy-conscious way. Depending on applicable law, the basis may be performance of a contract, legitimate interests, legal obligation, or consent.
12. Retention
We retain data for as long as reasonably necessary for service, security, dispute, backup, financial, and legal needs. Timing depends on data type, account state, and applicable requirements. Automated physical cleanup does not yet exist for every category; deletion requests are currently evaluated manually and may be subject to backup cycles and mandatory retention.
13. Providers and international processing
Hosting, database, media, email, monitoring, and—when enabled—billing providers may process data for us. Providers may process data in countries where they operate, subject to safeguards required by applicable law. We do not claim certifications or contractual transfer mechanisms that have not been confirmed.
14. Your rights
Depending on applicable law, you may request access, correction, deletion, or portability, object to or restrict processing, and withdraw consent where processing relies on consent. Self-service export and account deletion are not currently available; requests are handled manually through the operator contact channel. We may need to verify identity and apply lawful exceptions.
15. Children
MyInviteCraft is a general-purpose SaaS service and is not directed to children. A person without legal capacity to contract should not use it without a parent or legal guardian’s permission and supervision. Contact us if you believe a child’s data was collected inappropriately.
16. Contact and changes
Use the operator contact channel below for a privacy question or rights request. When this Policy changes, we will update the date and provide appropriate notice for material changes.
