Privacy Policy

DRAFT — prepared for attorney review. Last updated 2026-07-09.

What we store: your email, a password hash, your API keys (AES-256-GCM encrypted with a key held outside the database), content metadata (captions, video URLs, logs), and usage/audit records.

What we never access: your decrypted API keys. There is no administrative path to read them.

Cookies: a session cookie for login; a consent cookie if you accept analytics; a rotating 24-hour anonymous id for logged-out visitors who consent. No trackers, no ads, no third-party analytics — ever.

Analytics (first-party only): we record product events (pages opened, features used, session heartbeats) tied to your account id or a rotating anonymous id — never your name, email, or content. We honor Do-Not-Track and Global Privacy Control; anonymous visitors are only measured after explicit consent. Events are kept at most 90 days. (Section added 2026-07-10 — attorney review required.)

Where: data lives on a DigitalOcean server (US region) with nightly encrypted backups (14-day retention).

Sharing: we share data only with processors needed to run the Service (Stripe for billing, SendGrid for email) and never sell it.

Your rights: request export or deletion of your account data at any time (Settings or support@drop-empire.com); deletion completes within 30 days. If a breach affects your data we will notify you without undue delay.