Information we collect
- Account data: email, display name, hashed password, optional 2FA secret.
- Validation inputs: the startup ideas, markets, and inputs you submit.
- Usage data: pages viewed, feature interactions, device metadata.
- Billing data: handled by our payment processor; we never store card numbers.
How we use your information
- To generate validation reports and product features you request.
- To authenticate you and protect against fraud and abuse.
- To send transactional email (verification, password reset, receipts).
- To improve the platform — aggregated, de-identified metrics only.
Subprocessors
- Cloud infrastructure: hosting, database, and edge compute.
- OpenRouter / model providers: your prompt content is transmitted to LLM providers to generate reports.
- Resend: transactional email delivery.
Data retention
Account and validation data are retained while your account is active. On deletion, personal data is purged within 30 days except where retention is required by law.
Your rights
Depending on your jurisdiction (GDPR, CCPA, DPDP Act), you have rights to access, correct, export, and delete your data. Email privacy@startupdeck.in.
Security
We encrypt sensitive data at rest (AES-GCM for 2FA secrets), hash passwords with bcrypt, and enforce TLS in transit. See our Security page.
Children
StartupDeckAI is not intended for children under 18 and we do not knowingly collect their data.
Changes to this policy
Material changes will be announced by email. Continued use after changes constitutes acceptance.
Contact
Questions? privacy@startupdeck.in.