Privacy Policy
Last updated: [DATE — TO BE FILLED]
This page is a skeleton. The actual Privacy Policy must be drafted to cover:
- PII handled (names, addresses, immigration status, medical context)
- HIPAA context and CMIA §56.11 implications
- Data retention periods and deletion policy
- Third-party sharing: Stripe (payments), cloud hosting, PDF storage
- CCPA rights for California residents
- Cookie / analytics policy
- Contact email for privacy requests
1. Overview
[PLACEHOLDER — describe what RightForms is and its commitment to user privacy.]
2. Information We Collect
[PLACEHOLDER — list categories: account info (name, email), questionnaire data (addresses, family members, medical/immigration context), payment info (processed by Stripe, not stored by us), usage data.]
3. How We Use Your Information
[PLACEHOLDER — describe purposes: generate requested documents, send transactional emails, improve the service, comply with legal obligations.]
4. Third-Party Services
[PLACEHOLDER — Stripe for payment processing, cloud storage provider for generated PDFs, hosting provider. Link to each provider's privacy policy.]
5. Your Rights (CCPA / California Residents)
[PLACEHOLDER — right to know, right to delete, right to opt out of sale (we don't sell data), non-discrimination. Provide contact method for requests.]
6. Data Retention
[PLACEHOLDER — how long we keep generated PDFs and questionnaire data; deletion schedule or user-initiated deletion.]
7. Contact
[PLACEHOLDER — privacy contact email and mailing address.]
For privacy-related questions, email [email protected].