Privacy Policy

Effective Date: August 12, 2025 | Last Updated: August 12, 2025

1. Introduction

OrgYouNeed, Inc. ("we," "us," or "our") is committed to protecting your privacy and handling your personal information with care and transparency. This Privacy Policy explains how we collect, use, share, and protect your information when you use our website, mobile applications, and related services (collectively, the "Service").

Contact Information:

2. Information We Collect

2.1 Information You Provide to Us

Account Information:

  • • Full name and email address
  • • Organization name and details
  • • Profile information and preferences
  • • Payment information (processed through Stripe)
  • • Communication preferences

Content and Communications:

  • • Event information and descriptions
  • • Member messages and communications
  • • Support requests and feedback
  • • Survey responses and reviews

2.2 Information We Collect Automatically

Usage Information:

  • • Pages visited and features used
  • • Time spent on the Service
  • • Click patterns and navigation paths
  • • Event RSVPs and member interactions

Technical Information:

  • • IP address and location data
  • • Browser type and version
  • • Operating system and device info
  • • Network connection information

3. How We Use Your Information

3.1 Primary Service Purposes

Account Management:

  • • Creating and maintaining your user account
  • • Authenticating your identity and login
  • • Managing your organization's profile
  • • Processing payments and subscriptions

Service Delivery:

  • • Providing core platform functionality
  • • Facilitating event management and RSVPs
  • • Enabling member communication
  • • Generating reports and analytics

5. Information Sharing and Disclosure

5.1 Within Your Organization

Organization administrators can access member information within their organization but cannot access data from other organizations.

5.2 Third-Party Service Providers

Supabase

Database hosting and authentication services

Cloudflare

Content delivery, security, and analytics

Stripe

Payment processing and subscription management

ForwardEmail.net

Email delivery and communication services

6. International Data Transfers

We operate globally and may transfer your information to countries other than where you reside, including the United States. When we transfer personal information from the European Economic Area (EEA) to other countries, we use appropriate safeguards such as Standard Contractual Clauses (SCCs) approved by the European Commission.

7. Data Retention

Account Information:

Retained while your account is active, deleted within 30 days of account closure.

Usage and Analytics Data:

Individual user data up to 2 years, aggregated data may be retained indefinitely.

Payment Information:

Transaction records for 7 years for tax compliance, payment methods managed by Stripe.

8. Your Privacy Rights

8.1 Rights Under GDPR (EU Residents)

👁️

Right to Access

Request copies of your personal information

✏️

Right to Rectification

Correct inaccurate information

🗑️

Right to Erasure

"Right to be forgotten"

⏸️

Right to Restrict

Limit processing activities

📦

Data Portability

Transfer data to another service

🚫

Right to Object

Object to processing activities

8.2 Rights Under CCPA (California Residents)

  • Right to Know: What personal information is collected, used, shared or sold
  • Right to Delete: Request deletion of personal information
  • Right to Opt-Out: We do not sell personal information to third parties
  • Right to Non-Discrimination: Equal service regardless of privacy choices

How to Exercise Your Rights

Response Time: 30 days (GDPR), 45 days (CCPA)
Identity Verification: We may request additional information to verify your identity

9. Children's Privacy

Our Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we discover that we have collected personal information from a child under 13 without parental consent, we will delete that information promptly.

10. Security Measures

Technical Safeguards:

  • • Encryption in transit (TLS 1.3) and at rest (AES-256)
  • • Multi-factor authentication
  • • Regular security audits
  • • Secure coding practices

Administrative Safeguards:

  • • Employee background checks
  • • Regular security training
  • • Incident response procedures
  • • Vendor security assessments

11. Cookies and Tracking Technologies

Essential Cookies:

Authentication, security, and basic functionality - required for the Service to work.

Analytics Cookies:

Usage statistics, performance monitoring, and service improvement.

Marketing Cookies (with consent):

Conversion tracking, retargeting, and personalized advertising.

12. Updates to This Privacy Policy

We may update this Privacy Policy periodically. We will notify you of material changes via email (30 days advance notice) and through prominent notices within the Service. Your continued use of the Service after the effective date constitutes acceptance of the changes.

13. Contact Information and Complaints

Privacy Questions and Requests

Data Protection Officer:
[email protected]
Response Time: 5 business days for initial response

Regulatory Complaints

EU Residents: Contact your local supervisory authority
California Residents: California Attorney General's Office

Version: 1.0

Effective Date: August 12, 2025

Last Updated: August 12, 2025

Review Schedule: Annual review and updates as needed