Legal
Privacy Policy
Version 1.0 — Effective Date: January 2025
1. Introduction
The Legal Prompts ("Company," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, applications, and AI-powered legal document generation services (collectively, the "Service").
Please read this Privacy Policy carefully. By accessing or using the Service, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not access or use the Service.
This Privacy Policy applies to all users of the Service, including visitors, registered users, and subscribers.
2. Information We Collect
2.1 Information You Provide Directly
We collect information you provide when you:
- Create an Account: Name, email address, password (stored in hashed form)
- Subscribe to Our Service: Billing information is collected and processed by Stripe; we do not store complete credit card numbers
- Use Our Document Generation Tools: Information you input to generate legal documents (party names, addresses, terms, etc.)
- Contact Us: Name, email address, and the content of your communications
- Participate in Surveys or Promotions: Any information you voluntarily provide
2.2 Information Collected Automatically
When you access the Service, we automatically collect:
- Device Information: Device type, operating system, unique device identifiers, browser type and version
- Log Information: IP address, access times, pages viewed, links clicked, and the page you visited before navigating to the Service
- Usage Information: Features used, documents generated, prompts submitted, and interaction patterns
- Location Information: General location derived from IP address (country, region, city)
2.3 Information from Third Parties
We may receive information from:
- Payment Processors: Transaction confirmation and limited billing details from Stripe
- Analytics Providers: Aggregated usage data
- Authentication Services: If you sign in using a third-party service (Google, etc.), we receive basic profile information
3. How We Use Your Information
We use the information we collect to:
3.1 Provide and Maintain the Service
- Process your document generation requests
- Create and manage your account
- Process payments and subscriptions
- Provide customer support
- Send transactional communications (confirmations, receipts, updates)
3.2 Improve and Develop the Service
- Analyze usage patterns to improve features and user experience
- Conduct research and development
- Test new features and functionality
- Monitor and analyze trends and usage
3.3 Communicate With You
- Send service-related announcements
- Respond to your inquiries and support requests
- Send marketing communications (with your consent, where required)
- Notify you of changes to our policies
3.4 Ensure Security and Compliance
- Detect, prevent, and address fraud, abuse, and security issues
- Enforce our Terms of Service
- Comply with legal obligations
- Protect the rights, property, and safety of our users and the public
4. Data Sharing & Disclosure
✓ We do NOT sell your personal information to third parties.
We may share your information in the following circumstances:
4.1 Service Providers
We share information with third-party service providers who perform services on our behalf:
- Stripe: Payment processing (we do not store complete credit card information)
- Anthropic/AI Providers: AI document generation (your inputs are processed to generate documents)
- Supabase: Database hosting and authentication
- Vercel: Web hosting and content delivery
- Analytics Providers: To understand usage patterns (data is aggregated)
4.2 Legal Requirements
We may disclose your information if required by law or in response to:
- Valid legal process (subpoenas, court orders, government requests)
- Requests from law enforcement or government authorities
- To protect our rights, property, or safety
- To investigate potential violations of our Terms of Service
4.3 Business Transfers
If we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change in ownership or control.
4.4 With Your Consent
We may share your information for other purposes with your explicit consent.
5. AI & Document Generation
Our Service uses artificial intelligence (AI) technology to generate legal documents. This section explains how your data is processed in connection with AI document generation.
5.1 How AI Processing Works
- When you submit information to generate a document, your inputs are sent to our AI provider (Anthropic)
- The AI processes your inputs and generates the requested document
- Generated documents are returned to you through our Service
5.2 Data Usage for AI Training
✓ We do NOT use your personal data or generated documents to train AI models.
Your inputs and generated documents are processed solely to provide the Service to you. We have agreements in place with our AI providers that prohibit the use of your data for model training.
5.3 Document Storage
- Generated documents may be temporarily stored to deliver them to you
- Documents not saved to your account are automatically deleted within 24 hours
- Documents saved to your account are retained until you delete them or close your account
5.4 Sensitive Information
We recommend that you avoid including highly sensitive personal information (Social Security numbers, financial account numbers, medical information) in document generation inputs unless absolutely necessary. If such information is required for your document, it will be processed in accordance with this Privacy Policy.
6. Data Retention
We retain your information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.
| Data Type | Retention Period |
|---|---|
| Account Information | Until account deletion + 30 days |
| Saved Documents | Until deleted by user or account closure |
| Unsaved Generated Documents | 24 hours |
| Transaction Records | 7 years (legal/tax requirements) |
| Log Data | 90 days |
| Support Communications | 2 years |
7. Your Rights
Depending on your location, you may have the following rights regarding your personal information:
- Right to Access: Request a copy of the personal information we hold about you
- Right to Rectification: Request correction of inaccurate or incomplete information
- Right to Erasure: Request deletion of your personal information
- Right to Portability: Request your data in a structured, machine-readable format
- Right to Object: Object to processing of your personal information in certain circumstances
- Right to Restrict Processing: Request restriction of processing in certain circumstances
- Right to Withdraw Consent: Withdraw consent where processing is based on consent
To exercise any of these rights, please contact us at contact@thelegalprompts.com. We will respond to your request within 30 days.
You may also have the right to lodge a complaint with your local data protection authority.
8. Security Measures
We implement appropriate technical and organizational measures to protect your personal information, including:
- Encryption: All data transmitted between your browser and our servers is encrypted using TLS/SSL
- Password Security: Passwords are hashed using industry-standard algorithms (bcrypt)
- Access Controls: Access to personal information is limited to authorized personnel on a need-to-know basis
- Infrastructure Security: We use secure cloud infrastructure with regular security audits
- Payment Security: Credit card information is processed by Stripe, a PCI-DSS compliant payment processor
- Regular Updates: We regularly update and patch our systems to address security vulnerabilities
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
10. Children's Privacy
The Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information promptly.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us at contact@thelegalprompts.com.
11. International Data Transfers
The Legal Prompts is based in the United States. If you access the Service from outside the United States, your information may be transferred to, stored, and processed in the United States or other countries where our service providers operate.
By using the Service, you consent to the transfer of your information to countries outside your country of residence, which may have different data protection rules than your country.
We take appropriate safeguards to ensure that your personal information remains protected in accordance with this Privacy Policy when transferred internationally.
12. California Privacy Rights (CCPA)
If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with additional rights regarding your personal information:
- Right to Know: You have the right to request information about the categories and specific pieces of personal information we have collected about you
- Right to Delete: You have the right to request deletion of your personal information, subject to certain exceptions
- Right to Opt-Out: You have the right to opt out of the sale of your personal information. Note: We do not sell your personal information
- Right to Non-Discrimination: You have the right not to be discriminated against for exercising your CCPA rights
To exercise your California privacy rights, please contact us at contact@thelegalprompts.com or call us with "California Privacy Request" in the subject line.
Categories of Personal Information Collected:
- Identifiers (name, email, IP address)
- Commercial information (subscription history, payment information)
- Internet activity (browsing history, usage data)
- Professional information (if provided for document generation)
13. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR):
Legal Bases for Processing
We process your personal information based on the following legal bases:
- Contract: Processing necessary to perform our contract with you (providing the Service)
- Legitimate Interests: Processing necessary for our legitimate interests (improving the Service, security)
- Consent: Processing based on your consent (marketing communications)
- Legal Obligation: Processing necessary to comply with legal requirements
Your GDPR Rights
In addition to the rights listed in Section 7, you have the right to:
- Lodge a complaint with your local supervisory authority
- Object to automated decision-making, including profiling
To exercise your rights, please contact us at contact@thelegalprompts.com.
14. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons. When we make material changes, we will:
- Update the "Effective Date" at the top of this Privacy Policy
- Notify you by email (if you have an account) or by posting a prominent notice on our website
- Where required by law, obtain your consent to the changes
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
15. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:
The Legal Prompts
Data Protection Contact
Email: contact@thelegalprompts.com
Jurisdiction: Delaware, USA
We will respond to your inquiry within 30 days. For data protection inquiries from the EEA, we will respond within the timeframes required by applicable law.