Privacy Policy
Your privacy is important to us. This policy explains how Community Harvest collects, uses, and protects your personal information.
Quick Navigation
1. Information We Collect
Personal Information
- Account Information: Name, email address, profile picture
- Authentication Data: Login credentials managed by Kinde Auth
- Profile Data: User preferences, theme settings, notification preferences
- Financial Information: Bank account details, payment methods (processed by Stripe)
- Address Information: Country, currency preferences for localization
Usage Information
- Activity Data: Groups joined, pots created, contributions made
- Communication Data: Messages sent within groups and pots
- Device Information: Browser type, device type, screen resolution
- Log Data: IP addresses, access times, pages visited
3. How We Use Your Data
Service Provision
- Create and manage your account
- Process financial transactions
- Enable group and pot functionality
- Provide customer support
- Send service-related notifications
Improvement & Analytics
- Analyze usage patterns and trends
- Improve site performance and features
- Detect and prevent fraud
- Ensure platform security
- Develop new features and services
4. Data Sharing & Disclosure
We do not sell, rent, or trade your personal information. We only share your data in the following limited circumstances:
- Service Providers: Third-party services that help us operate our platform (Kinde Auth, Stripe, Google Analytics)
- Legal Requirements: When required by law, court order, or government request
- Safety & Security: To protect the rights, property, or safety of our users or others
- Business Transfers: In connection with a merger, acquisition, or sale of assets (with user notification)
- With Consent: When you explicitly consent to sharing your information
5. Data Security
We implement industry-standard security measures to protect your personal information:
- HTTPS encryption for all data transmission
- Secure authentication via Kinde Auth
- Regular security audits and updates
- Access controls and monitoring
- PCI DSS compliant payment processing
- Data minimization practices
- Regular backups and disaster recovery
- Employee security training
6. Your Privacy Rights
Your Rights: Under GDPR, CCPA, and other privacy laws, you have specific rights regarding your personal data. Contact us to exercise these rights.
Access & Control
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate information
- Deletion: Request deletion of your data
- Portability: Export your data in a readable format
Consent & Processing
- Withdraw Consent: Opt out of data processing
- Object: Object to certain types of processing
- Restrict: Limit how we process your data
- Complain: File complaints with supervisory authorities
7. Third-Party Services
We use trusted third-party services to provide our platform functionality. Each service has its own privacy policy:
Kinde Auth
Authentication and user management
- • User login/logout
- • Session management
- • Account security
Stripe
Payment processing and financial services
- • Payment methods
- • Transaction processing
- • Fraud prevention
Google Analytics
Website analytics and performance monitoring
- • Usage analytics
- • Performance metrics
- • User behavior insights
Data Retention: We retain your personal data only as long as necessary to provide our services or as required by law. You can request deletion of your account and associated data at any time.
Questions About Your Privacy?
We're here to help. Contact us with any questions about this privacy policy or how we handle your data.
This privacy policy may be updated from time to time. We will notify you of any material changes by posting the new policy on this page and updating the “Last Updated” date.