At MindPlan Pro ("we", "us", "our"), we care about your privacy. This Privacy Policy explains what personal information we collect when you use MindPlan Pro (the "Service"), how we use it, who we share it with, and the rights you have. By using the Service, you agree to this policy.
Contents
1. Information we collect
We collect information in three ways: information you give us, information we collect automatically, and information from third-party services you choose to connect.
Information you provide
- Account information: your name, email address, and password (or third-party login identifier if you sign in with Google, Microsoft, Apple, or Facebook).
- Content you create: mind maps, flowcharts, tasks, notes, and any other material you build or import into the Service.
- Billing details: if you subscribe to a paid plan, our payment processor (Stripe) handles payment information. We never store full card numbers ourselves.
- Support communications: messages you send us via the contact form, email, or in-app support.
Information collected automatically
- Usage data: features you use, actions you take, frequency of use, device and browser information, IP address, language preference, time zone.
- Diagnostic data: errors, performance metrics, and crash reports to help us improve reliability.
2. How we use your information
We use your information to:
- Provide, maintain, and improve the Service.
- Generate AI-powered features (mind map generation, content suggestions, etc.) using the prompts you submit.
- Process payments and manage your subscription.
- Send you transactional emails (account verification, password reset, billing receipts, important service notices).
- Send you product updates and educational content (you can unsubscribe anytime).
- Respond to support requests and feedback.
- Detect, prevent, and address fraud, abuse, security, and technical issues.
- Comply with legal obligations.
3. Third-party services we use
We rely on trusted sub-processors to deliver the Service. Each handles a specific function and is bound by contract to protect your data:
- Base44 (a Wix company): hosting, application backend, authentication, database. base44.com
- OpenAI / large language model providers (via Base44): when you use AI features, your prompts are sent to an LLM provider to generate responses. We do not train models on your content.
- Stripe: payment processing. stripe.com/privacy
- SendGrid (by Twilio): transactional and product emails. twilio.com/legal/privacy
- Google / Microsoft / Apple / Facebook: only if you choose to log in with these providers. We receive your name and email from them; nothing else.
4. Data sharing and disclosure
We do not sell your personal data. We share information only:
- With the sub-processors listed above, strictly to operate the Service.
- When required by law, court order, or other legal process.
- To protect our rights, property, or safety, or that of our users or the public.
- In connection with a merger, acquisition, or sale of assets (you will be notified).
- With your explicit consent for any other purpose.
5. Cookies and tracking
We use cookies and similar technologies to keep you signed in, remember your preferences (language, theme), and understand how the Service is used. You can disable cookies in your browser settings, but parts of the Service may not work correctly.
6. Data retention
We keep your account information and content for as long as your account is active. If you delete your account, we delete your personal data within 30 days, except where we are required by law to retain it (for example, billing records for tax purposes). Anonymized usage data may be retained longer for analytics.
7. Your rights and choices
Depending on where you live, you may have the right to:
- Access: request a copy of the personal data we hold about you.
- Correction: ask us to fix inaccurate information.
- Deletion: ask us to delete your account and personal data ("right to be forgotten").
- Portability: get your data in a structured, machine-readable format.
- Opt-out: unsubscribe from marketing emails (transactional emails are required for the Service).
- Withdraw consent: where we rely on consent, you can withdraw it at any time.
To exercise any of these rights, email us at hello@mindplanpro.com. We will respond within 30 days. You also have the right to complain to your local data protection authority.
8. Security
We use industry-standard security measures: encryption in transit (TLS), encryption at rest, access controls, and regular security reviews of our infrastructure. No method is 100% secure, but we work hard to protect your data and notify you promptly if a breach affects you.
9. International transfers
MindPlan Pro is operated from Latin America. Your data may be processed in countries other than your own (including the United States, where our sub-processors operate). We rely on appropriate safeguards (standard contractual clauses or equivalent) for these transfers.
10. Children's privacy
The Service is not directed to children under 13 (or under 16 in the EU). We do not knowingly collect data from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
11. Changes to this policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you by email or via an in-app notice before they take effect. The "Last updated" date at the top reflects the most recent version.
12. Contact us
Questions, requests, or concerns about this policy? Reach us at:
- Email: hello@mindplanpro.com
- Website: mindplanpro.com