1. Introduction
Welcome to Accountability Checkpoint ("we," "our," or "us"). We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application and services.
2. Information We Collect
2.1 Personal Information
When you create an account, we collect:
- Email address - Used for account authentication and communication
- Full name - Used for personalization and display purposes
- Password - Stored securely using SHA-256 encryption
2.2 Goal and Progress Data
When you use our goal tracking features, we collect:
- Goal titles, descriptions, and categories
- Target frequencies and completion dates
- Progress tracking data and completion records
- Streak information and achievement metrics
- Sub-goals and nested task structures
- Privacy settings for each goal
2.3 Accountability Partner Information
If you choose to add accountability partners:
- Partner names and email addresses (optional)
- Unique access tokens for partner viewing
- Encouragement messages and interactions
- Partner relationship status
2.4 Payment Information
Payment processing is handled securely by Stripe. We do not store your full credit card information on our servers. We only store:
- Stripe customer ID
- Subscription ID and status
- Subscription period dates
- Trial period information
2.5 Usage Data
We automatically collect:
- Login dates and times
- Session duration and activity
- Browser type and device information
- IP address for security purposes
3. How We Use Your Information
We use your information to:
- Provide Services: Deliver goal tracking, accountability features, and progress monitoring
- Account Management: Create and manage your user account
- Authentication: Verify your identity and secure your account
- Payment Processing: Process subscription payments through Stripe
- Communication: Send account-related notifications, trial reminders, and subscription updates
- Improve Services: Analyze usage patterns to enhance functionality
- Security: Detect and prevent fraud, abuse, and security incidents
- Legal Compliance: Comply with legal obligations and enforce our terms
4. Data Sharing and Disclosure
4.1 Third-Party Service Providers
We share data with trusted service providers:
- Stripe: Payment processing (subject to Stripe's Privacy Policy)
- Cloudflare: Hosting and infrastructure services
- Email Service: Transactional email delivery (if applicable)
4.2 Accountability Partners
When you share goals with accountability partners, only the goals you explicitly mark as "public" are visible to them. Private goals remain completely confidential.
4.3 Legal Requirements
We may disclose your information if required by law, court order, or to protect our rights and safety.
5. Data Security
We implement industry-standard security measures:
- Encryption: Passwords are hashed using SHA-256
- HTTPS: All data transmission is encrypted using SSL/TLS
- Session Management: Secure 30-day session tokens
- Database Security: Data stored in Cloudflare D1 with access controls
- Payment Security: PCI-compliant payment processing via Stripe
6. Data Retention
We retain your personal information for as long as your account is active. If you delete your account, we will delete or anonymize your personal data within 30 days, except where retention is required by law or for legitimate business purposes (e.g., fraud prevention).
7. Your Rights and Choices
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your account and data
- Export: Download your goal data in a portable format
- Opt-Out: Unsubscribe from marketing communications
- Withdraw Consent: Revoke consent for data processing
To exercise these rights, contact us at privacy@accountabilitycheckpoint.com
8. Cookies and Tracking
We use essential cookies and local storage to maintain your session and remember your authentication status. See our Cookie Policy for details.
9. Age Restriction Policy
Our services are intended for individuals 18 years of age or older. We do not knowingly collect information from anyone under 18. If you believe we have collected information from a minor under 18, please contact us immediately and we will delete such information.
10. International Data Transfers
Your data may be stored and processed in the United States and other countries where Cloudflare operates data centers. We ensure appropriate safeguards are in place for international transfers.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through the application. Your continued use of our services after changes constitute acceptance of the updated policy.
12. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us:
Effective Date: October 23, 2025
Last Reviewed: October 23, 2025