Privacy Policy
Last updated: 5/7/2026
NorthStar ("we", "us") respects your privacy. This policy explains what we collect, why, and your rights. This is a template — please consult a lawyer before relying on it for compliance.
What we collect
- Account data: email, name, avatar (from Google sign-in if used).
- Campaign content: the website URL, budget, location, goal, brand voice, and generated strategies you create.
- Payment metadata: subscription status, plan, and transaction IDs (handled by Paddle, our merchant of record — we do not store full card details).
- Technical data: session cookies and basic logs (IP, user agent) for security.
How we use it
- Provide and improve the service.
- Generate AI strategies via Lovable AI Gateway (Google Gemini, OpenAI). Your inputs are sent to these providers to produce outputs.
- Process subscriptions and refunds via Paddle.
- Communicate with you about your account.
Data sharing
We share data only with sub-processors needed to run the service: Lovable Cloud (hosting + database), Lovable AI Gateway (AI inference), and Paddle (payments). We do not sell your data.
Your rights
Under GDPR / CCPA you may request access, correction, export, or deletion of your data. Contact us at hello@northstar.app and we will respond within 30 days.
Retention
We keep account data while your account is active. On deletion request we remove it within 30 days, except where law requires retention (e.g. tax records).
Contact
hello@northstar.app