Privacy Policy
How we collect, use, and protect your information
Last updated: January 15, 2025
At ZeroSetup ("we," "our," or "us"), we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our application development platform and related services.
ZeroSetup is a comprehensive starter kit that helps developers build production-ready applications with features including authentication, payments, team collaboration, and various integrations. This policy covers all aspects of our service.
Account Information
When you create an account, we collect your email address, name, and any profile information you choose to provide.
Payment Information
We collect billing information necessary to process payments through our payment processors. We do not store your complete credit card information on our servers.
Usage Data
We collect information about how you use our service, including features accessed, projects created, and team interactions.
Technical Information
We automatically collect certain technical information including IP address, browser type, device information, and usage analytics through PostHog.
Service Provision
To provide, maintain, and improve our services, including authentication, project management, and team collaboration features.
Communication
To send you important service updates, security alerts, and respond to your inquiries via email.
Billing and Payments
To process payments, manage subscriptions, and handle billing inquiries through our payment partners.
Analytics and Improvement
To analyze usage patterns and improve our service performance and user experience.
Team Members
Information you share within your organization or team is visible to other team members as part of the collaboration features.
Service Providers
We share information with trusted third-party service providers who help us operate our service, including payment processors, email services, and analytics providers.
Legal Requirements
We may disclose information when required by law or to protect our rights, users, or the public.
Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
Payment Processing
We use Stripe for payment processing. These services have their own privacy policies governing the collection and use of your payment information.
Analytics
We use PostHog for analytics to understand how our service is used and to improve user experience.
Email Services
We use email service providers to send transactional emails and important service communications.
Cloud Storage
We use S3-compatible storage services (AWS/Cloudflare) to store and manage your uploaded files and data.
Encryption
We use industry-standard encryption to protect your data both in transit and at rest.
Access Controls
We implement strict access controls and authentication mechanisms to protect your account and data.
Regular Security Reviews
We regularly review and update our security practices to protect against unauthorized access and data breaches.
Incident Response
We have procedures in place to detect, respond to, and notify users of any security incidents that may affect their data.
Account Access
You can access, update, and delete your account information through your account settings.
Data Portability
You can export your data from our service at any time through the available export features.
Account Deletion
You can delete your account and associated data through your account settings or by contacting us.
Communication Preferences
You can manage your email communication preferences through your account settings.
Active Accounts
We retain your information for as long as your account is active or as needed to provide our services.
Deleted Accounts
When you delete your account, we will delete your personal information within 30 days, except where we are required to retain it for legal purposes.
Backup Data
Some information may remain in our backup systems for up to 90 days after deletion for disaster recovery purposes.
Global Infrastructure
Our services may be hosted on servers located in different countries. We ensure appropriate safeguards are in place for international data transfers.
Compliance
We comply with applicable data protection laws regarding international transfers, including GDPR requirements for transfers outside the EU.
If you have any questions about this Privacy Policy or our data practices, please contact us:
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last updated" date. We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information.