Privacy policy

Last updated: Sep 9, 2026

1. Introduction

Welcome to BizIdeasDB ("we," "our," or "us"). We respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and protect your information when you use our business idea research and discovery platform. By using our service, you consent to the collection and use of information in accordance with this policy.

2. Information we collect

2.1 Information you provide

We collect several types of information that you directly provide to us:

  • Account information (email address, name, profile details).
  • A profile avatar image you choose to upload.
  • Payment processing information via Stripe, including billing details.
  • Business ideas you save or favorite for later reference.
  • Bug reports, feature requests, and communications with our support team.
  • Marketing communication preferences.

2.2 Automatically collected information

When you interact with our service, we automatically collect:

  • Usage data and analytics through Umami (privacy-focused analytics).
  • Idea viewing and export activity, used to enforce plan-based usage limits.
  • Device information (browser type, operating system, device type).
  • IP address and approximate location data (country/region).
  • Access timestamps and session duration.
  • Performance and error data.
  • Cookie and similar technology data.

3. How we use your information

We use your information for the following purposes:

  • To provide and maintain our service, including delivering business idea research content and exports.
  • To process payments and subscriptions and prevent fraudulent transactions.
  • To enforce plan-based usage limits on idea views and exports.
  • To communicate essential information about your account, purchases, or transactions.
  • To improve our services based on usage patterns and feedback.
  • To provide customer support and respond to inquiries.
  • To comply with legal obligations and enforce our terms.
  • To protect against unauthorized access and ensure platform security.

4. Cookie policy

Our cookie usage is minimal and privacy-focused:

  • Essential cookies: Required for basic platform functionality and security.
  • Analytics cookies: Privacy-focused Umami analytics for understanding usage patterns.
  • Preference cookies: Store your language and theme preferences.

You can control cookie preferences through your browser settings.

5. Data storage and security

We implement robust security measures to protect your data:

  • Secure file storage using encrypted S3-compatible storage systems.
  • End-to-end encrypted data transmission using TLS.
  • Secure payment processing through Stripe's PCI-compliant infrastructure.
  • Regular security audits and vulnerability assessments.
  • Access controls and authentication mechanisms.
  • Data backup and disaster recovery procedures.

6. Data retention

We retain your data according to these principles:

  • Account information: Retained while your account is active.
  • Transaction records: Kept for legal and tax compliance (typically 7 years).
  • Profile avatar images: Stored until replaced or your account is deleted.
  • Favorited ideas and viewing history: Retained while your account is active.
  • Analytics data: Retained for 12 months.
  • Communication records: Kept for 2 years after last interaction.

7. Third-party services

We work with carefully selected third-party services:

  • Stripe: Payment processing and subscription management.
  • S3-compatible storage: Secure file hosting and delivery.
  • Resend: Transactional email communications.
  • Umami: Privacy-focused analytics.

Each third-party service processes data according to their respective privacy policies and our data processing agreements.

8. International data transfers

Your data may be processed in countries outside your residence. We ensure appropriate safeguards are in place through:

  • Standard contractual clauses.
  • Data processing agreements.
  • Selection of providers compliant with international data protection standards.

9. Your rights

Under applicable data protection laws, you have the following rights:

  • Access your personal data and request copies.
  • Correct inaccurate or incomplete data.
  • Request deletion of your data (right to be forgotten).
  • Object to certain data processing activities.
  • Data portability (receive and transfer your data).
  • Withdraw consent for optional data processing.
  • Lodge complaints with supervisory authorities.

10. Age restrictions

Our service is not intended for users under 16 years of age. We do not knowingly collect data from users under 16. If we become aware of such data collection, we will take steps to delete the information.

11. Changes to this policy

We may update this privacy policy periodically. We will notify you of any material changes through:

  • Email notifications to account holders.
  • Notices on our platform.
  • Updated "Last updated" date at the top of this policy.

12. Contact information

For questions about this Privacy Policy or to exercise your rights, please contact our Data Protection Officer at: [email protected].