Privacy Policy

Last updated: January 1, 2025

1. Introduction

EmailSigPro ("we", "our", or "us") is committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our email signature generation platform at emailsigpro.com (the "Service").

2. Information We Collect

2.1 Information you provide

  • Account information: name, email address, password
  • Profile data: job title, company name, phone number, website, address
  • Payment information: processed securely by Stripe or Razorpay (we never store card numbers)
  • Team information: names and emails of team members you invite
  • Uploaded media: profile photos, company logos, banner images

2.2 Information collected automatically

  • Usage analytics: signature views, copies, exports (hashed IP, no personal identification)
  • Log data: IP address, browser type, pages visited, timestamps
  • Cookies: authentication tokens, preferences (see Section 7)

3. How We Use Your Information

  • To provide and improve the Service
  • To process payments and manage subscriptions
  • To send transactional emails (verification, password reset, receipts)
  • To send product updates and tips (you can unsubscribe anytime)
  • To detect and prevent fraud and abuse
  • To comply with legal obligations

4. Data Sharing

We do not sell your personal data. We share data only with:

  • Cloudinary — for image hosting and processing
  • Stripe / Razorpay — for payment processing
  • MongoDB Atlas — for database hosting (encrypted at rest)
  • OpenAI — for AI features (only the text you explicitly submit)
  • Resend / SendGrid — for transactional email delivery
  • Law enforcement when required by valid legal process

5. Data Retention

  • Account data: retained while your account is active
  • Analytics events: automatically deleted after 90 days
  • Payment records: retained for 7 years for tax/legal compliance
  • Deleted accounts: anonymised within 30 days of deletion request

6. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal data we hold about you
  • Correct inaccurate data
  • Request deletion of your account and associated data
  • Data portability (export your signature data)
  • Opt out of marketing communications
  • Lodge a complaint with your local data protection authority

To exercise these rights, email us at privacy@emailsigpro.com.

7. Cookies

  • Strictly necessary: Authentication tokens (httpOnly, secure cookies)
  • Preferences: Theme and language settings (localStorage)
  • Analytics: Anonymous usage metrics (no third-party tracking)

We do not use advertising or cross-site tracking cookies.

8. Security

We protect your data using TLS 1.3 encryption in transit, AES-256 encryption at rest (MongoDB Atlas), bcrypt password hashing, JWT-based authentication with short-lived access tokens, and regular security audits.

9. Children's Privacy

Our Service is not directed to children under 13 (or 16 in the EU). We do not knowingly collect personal information from children. If you believe we have, please contact us immediately.

10. Changes to This Policy

We may update this policy periodically. We will notify you of material changes by email and by updating the "Last updated" date above. Continued use of the Service after changes constitutes acceptance.

11. Contact Us

For privacy questions or requests:
Email: privacy@emailsigpro.com
Address: EmailSigPro, [Your Company Address]