Privacy Policy

Your privacy is important to us. This policy explains how Community Harvest collects, uses, and protects your personal information.

Last Updated: January 7, 2025 | Effective Date: January 7, 2025

1. Information We Collect

Personal Information

  • Account Information: Name, email address, profile picture
  • Authentication Data: Login credentials managed by Kinde Auth
  • Profile Data: User preferences, theme settings, notification preferences
  • Financial Information: Bank account details, payment methods (processed by Stripe)
  • Address Information: Country, currency preferences for localization

Usage Information

  • Activity Data: Groups joined, pots created, contributions made
  • Communication Data: Messages sent within groups and pots
  • Device Information: Browser type, device type, screen resolution
  • Log Data: IP addresses, access times, pages visited

2. Cookies & Tracking Technologies

Cookie Consent: We respect your privacy choices. You can manage your cookie preferences at any time using our cookie consent banner or by visiting your browser settings.

Essential Cookies

Required for basic site functionality. Cannot be disabled.

  • • Authentication (Kinde Auth)
  • • Session management
  • • Security tokens
  • • Theme preferences

Analytics Cookies

Help us understand how you use our site. Requires your consent.

  • • Google Analytics (GA4)
  • • Page view tracking
  • • User behavior analysis
  • • Performance monitoring

Marketing Cookies

Used for advertising and personalization. Currently not implemented.

  • • Future advertising platforms
  • • Remarketing campaigns
  • • Conversion tracking
  • • Personalized content

3. How We Use Your Data

Service Provision

  • Create and manage your account
  • Process financial transactions
  • Enable group and pot functionality
  • Provide customer support
  • Send service-related notifications

Improvement & Analytics

  • Analyze usage patterns and trends
  • Improve site performance and features
  • Detect and prevent fraud
  • Ensure platform security
  • Develop new features and services

4. Data Sharing & Disclosure

We do not sell, rent, or trade your personal information. We only share your data in the following limited circumstances:

  • Service Providers: Third-party services that help us operate our platform (Kinde Auth, Stripe, Google Analytics)
  • Legal Requirements: When required by law, court order, or government request
  • Safety & Security: To protect the rights, property, or safety of our users or others
  • Business Transfers: In connection with a merger, acquisition, or sale of assets (with user notification)
  • With Consent: When you explicitly consent to sharing your information

5. Data Security

We implement industry-standard security measures to protect your personal information:

  • HTTPS encryption for all data transmission
  • Secure authentication via Kinde Auth
  • Regular security audits and updates
  • Access controls and monitoring
  • PCI DSS compliant payment processing
  • Data minimization practices
  • Regular backups and disaster recovery
  • Employee security training

6. Your Privacy Rights

Your Rights: Under GDPR, CCPA, and other privacy laws, you have specific rights regarding your personal data. Contact us to exercise these rights.

Access & Control

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate information
  • Deletion: Request deletion of your data
  • Portability: Export your data in a readable format

Consent & Processing

  • Withdraw Consent: Opt out of data processing
  • Object: Object to certain types of processing
  • Restrict: Limit how we process your data
  • Complain: File complaints with supervisory authorities

7. Third-Party Services

We use trusted third-party services to provide our platform functionality. Each service has its own privacy policy:

Kinde Auth

Authentication and user management

  • • User login/logout
  • • Session management
  • • Account security
View Kinde Privacy Policy →

Stripe

Payment processing and financial services

  • • Payment methods
  • • Transaction processing
  • • Fraud prevention
View Stripe Privacy Policy →

Google Analytics

Website analytics and performance monitoring

  • • Usage analytics
  • • Performance metrics
  • • User behavior insights
View Google Privacy Policy →

Data Retention: We retain your personal data only as long as necessary to provide our services or as required by law. You can request deletion of your account and associated data at any time.

Questions About Your Privacy?

We're here to help. Contact us with any questions about this privacy policy or how we handle your data.

This privacy policy may be updated from time to time. We will notify you of any material changes by posting the new policy on this page and updating the “Last Updated” date.