Privacy Policy
Effective date: [EFFECTIVE DATE]
This policy explains what personal information [BUSINESS LEGAL NAME] ("ChartRelay", "we", "us"), located at [BUSINESS ADDRESS], collects when you use the ChartRelay website and API, how we use it, and the choices you have.
What we collect
- Account details. Your name, email address, and password. We store only a one-way hash of your password, never the password itself.
- API keys. We store a hash and a short prefix of each key so we can recognize it. We cannot show you a full key again after it is created.
- Chart data. The chart specifications you send (titles, labels, values, and styling) and the charts we render from them.
- Usage data. Records of API calls and renders, timestamps, and which key was used, so we can enforce plan limits and show you usage.
- Billing details. Your plan, subscription status, and Stripe customer and subscription identifiers. Card numbers and payment details are collected and stored by Stripe, not by us.
- Technical data. IP addresses and request information, used for security and rate limiting. We set a session cookie to keep you signed in. We do not use advertising cookies.
How we use it
- To provide the Service: authenticate you, render charts, host chart URLs, and meter usage.
- To bill you for paid plans and manage your subscription.
- To send transactional email, such as email verification, password resets, and important account or billing notices.
- To keep the Service secure, prevent abuse, and fix problems.
- To meet legal obligations.
We do not sell your personal information, and we do not use your chart data to train machine learning models.
Who we share it with
We share information only with service providers that help us run ChartRelay, and only as much as they need:
- Stripe, for payment processing and subscription management.
- [EMAIL PROVIDER NAME], our transactional email provider, to deliver account emails.
- [HOSTING PROVIDER NAME], which hosts our servers and database.
We may also disclose information if the law requires it, to protect rights and safety, or as part of a merger or sale of the business, in which case this policy continues to apply to your information.
Public chart URLs
Rendered chart URLs are not secret. Anyone with a link can view that chart. Do not include confidential or sensitive personal data in chart specifications.
How long we keep it
We keep account information while your account is open. Chart data and usage records are kept while your account is open so rendered URLs keep working, unless you ask us to delete them. When you delete your account from the dashboard, your account, workspace, API keys, renders and usage history are removed from our database immediately, and the rendered chart URLs stop being served. Copies of chart images already held by browsers, proxies or link-preview caches are outside our control and may keep displaying for up to a year, because chart assets are served with a long cache lifetime. Billing records are kept by Stripe under their own retention rules, and we may keep the minimum needed for legal, tax, or accounting reasons.
Security
We use reasonable safeguards, including hashed passwords and API keys, signed session cookies, and encrypted connections. No system is perfectly secure, and we cannot guarantee absolute security.
Your choices and rights
Two of these rights are self-service and need no request at all. In the Danger zone of your dashboard, Export my data downloads a JSON file of everything we hold for the account, and Delete account removes it permanently. For anything else — correcting details, or a question about what an export contains — write to support@chartrelay.dev. Depending on where you live, you may have additional rights under local law. We will not discriminate against you for exercising them.
Children
ChartRelay is not intended for anyone under 18, and we do not knowingly collect information from children.
International users
ChartRelay is operated from the United States, and your information is processed in the United States.
Changes to this policy
If we make a material change, we will email account holders before it takes effect and update the effective date above.
Contact
Privacy questions or requests: support@chartrelay.dev. [BUSINESS LEGAL NAME], [BUSINESS ADDRESS]. See also our Terms of Service and our support page.