Privacy Policy
Effective Date: August 12, 2025 | Last Updated: August 12, 2025
1. Introduction
OrgYouNeed, Inc. ("we," "us," or "our") is committed to protecting your privacy and handling your personal information with care and transparency. This Privacy Policy explains how we collect, use, share, and protect your information when you use our website, mobile applications, and related services (collectively, the "Service").
Contact Information:
- Company: OrgYouNeed, Inc.
- Email: [email protected]
- Website: https://orgyouneed.com
- Data Protection Officer: [email protected]
2. Information We Collect
2.1 Information You Provide to Us
Account Information:
- • Full name and email address
- • Organization name and details
- • Profile information and preferences
- • Payment information (processed through Stripe)
- • Communication preferences
Content and Communications:
- • Event information and descriptions
- • Member messages and communications
- • Support requests and feedback
- • Survey responses and reviews
2.2 Information We Collect Automatically
Usage Information:
- • Pages visited and features used
- • Time spent on the Service
- • Click patterns and navigation paths
- • Event RSVPs and member interactions
Technical Information:
- • IP address and location data
- • Browser type and version
- • Operating system and device info
- • Network connection information
3. How We Use Your Information
3.1 Primary Service Purposes
Account Management:
- • Creating and maintaining your user account
- • Authenticating your identity and login
- • Managing your organization's profile
- • Processing payments and subscriptions
Service Delivery:
- • Providing core platform functionality
- • Facilitating event management and RSVPs
- • Enabling member communication
- • Generating reports and analytics
4. Legal Basis for Processing (GDPR)
For users in the European Union, we process your personal information based on the following legal grounds:
Contract Performance:
Providing the Service you've subscribed to, processing payments, and delivering customer support.
Legitimate Interests:
Improving our Service, ensuring security, preventing fraud, and business analytics.
Consent:
Marketing communications, non-essential cookies, and sharing for marketing partnerships.
Legal Obligations:
Complying with applicable laws and responding to lawful government requests.
5. Information Sharing and Disclosure
5.1 Within Your Organization
Organization administrators can access member information within their organization but cannot access data from other organizations.
5.2 Third-Party Service Providers
Supabase
Database hosting and authentication services
Cloudflare
Content delivery, security, and analytics
Stripe
Payment processing and subscription management
ForwardEmail.net
Email delivery and communication services
6. International Data Transfers
We operate globally and may transfer your information to countries other than where you reside, including the United States. When we transfer personal information from the European Economic Area (EEA) to other countries, we use appropriate safeguards such as Standard Contractual Clauses (SCCs) approved by the European Commission.
7. Data Retention
Account Information:
Retained while your account is active, deleted within 30 days of account closure.
Usage and Analytics Data:
Individual user data up to 2 years, aggregated data may be retained indefinitely.
Payment Information:
Transaction records for 7 years for tax compliance, payment methods managed by Stripe.
8. Your Privacy Rights
8.1 Rights Under GDPR (EU Residents)
Right to Access
Request copies of your personal information
Right to Rectification
Correct inaccurate information
Right to Erasure
"Right to be forgotten"
Right to Restrict
Limit processing activities
Data Portability
Transfer data to another service
Right to Object
Object to processing activities
8.2 Rights Under CCPA (California Residents)
- Right to Know: What personal information is collected, used, shared or sold
- Right to Delete: Request deletion of personal information
- Right to Opt-Out: We do not sell personal information to third parties
- Right to Non-Discrimination: Equal service regardless of privacy choices
How to Exercise Your Rights
9. Children's Privacy
Our Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we discover that we have collected personal information from a child under 13 without parental consent, we will delete that information promptly.
10. Security Measures
Technical Safeguards:
- • Encryption in transit (TLS 1.3) and at rest (AES-256)
- • Multi-factor authentication
- • Regular security audits
- • Secure coding practices
Administrative Safeguards:
- • Employee background checks
- • Regular security training
- • Incident response procedures
- • Vendor security assessments
12. Updates to This Privacy Policy
We may update this Privacy Policy periodically. We will notify you of material changes via email (30 days advance notice) and through prominent notices within the Service. Your continued use of the Service after the effective date constitutes acceptance of the changes.
13. Contact Information and Complaints
Privacy Questions and Requests
[email protected]
Regulatory Complaints
Version: 1.0
Effective Date: August 12, 2025
Last Updated: August 12, 2025
Review Schedule: Annual review and updates as needed