Privacy Policy
Effective 2026-04-21
What we collect
- Account info from Clerk: email, name, hashed password.
- Will content you provide: legal name, date of birth, beneficiary details, addresses.
- Usage logs: pages visited, actions taken (audit trail).
- Payment metadata from Stripe (we never see card numbers).
How we use it
- To generate your will document.
- To authenticate you and protect your account.
- To process payments.
- To send transactional email (receipts, reminders, updates).
- To meet legal and tax obligations.
How we protect it
Sensitive personal information is encrypted at rest using envelope encryption with AWS KMS. The plaintext encryption keys are never stored on disk. See the security page for technical details.
Who we share it with
- Clerk — authentication.
- AWS — infrastructure, KMS, storage.
- Neon — database.
- Stripe — payments.
- Government authorities — only when required by law.
We do not sell your data. We do not run third-party advertising trackers on authenticated pages.
Your rights
Under CCPA, GDPR, and similar regimes, you have rights to access, correct, export, and delete your data. Use the data-management page in your account, or contact us.
Retention
Account data is retained while your account is active. Audit logs are retained for legal compliance. On account closure, sensitive content is encrypted-zeroed and audit metadata is preserved.
Children
The service is not directed at children under 18.
Contact
Privacy questions: see our contact page.