Privacy Policy
Last updated: January 19, 2026
1. Information We Collect
1.1 Personal Information
We collect minimal personal information to provide our service:
- Email Address: Required for report delivery only
- Payment Information: Processed securely through Stripe (we never store your credit card details)
We DO NOT collect: Your name, phone number, physical address, social security number, or any government-issued ID.
1.2 Assessment Data
Your responses to the 30-question assessment are collected to generate your personalized risk analysis report. This data includes:
- Your answers to assessment questions
- Calculated risk scores and analysis results
- Session metadata (timestamps, IP address for security purposes)
2. How We Use Your Information
Your information is used exclusively for the following purposes:
- Report Generation: To create your personalized AI-driven wealth succession analysis
- Report Delivery: To send the PDF report to your email address
- Payment Processing: To complete your transaction securely
- Service Improvement: Anonymized, aggregated data may be used to improve our AI models
We will NEVER use your email for marketing purposes, sell your data to third parties, or share your information with anyone except as required by law.
3. Data Retention and Deletion
3.1 Automatic Deletion
We implement aggressive data minimization practices:
- Assessment Data: Automatically deleted 72 hours after completion
- Session Data: Cleared from our servers after 72 hours
- PDF Download Links: Expire after 7 days
3.2 Permanent Records
We retain only the following for legal and accounting purposes:
- Transaction records (email, amount, date) - retained for 7 years as required by law
- Error logs (anonymized) - retained for 90 days for debugging purposes
4. Data Security Measures
We employ industry-leading security practices to protect your data:
- Encryption in Transit: TLS 1.3 for all data transmission
- Encryption at Rest: AES-256 encryption for all stored data
- Secure Infrastructure: Hosted on Vercel with enterprise-grade security
- Database Security: Neon PostgreSQL with SSL/TLS encryption
- Payment Security: PCI DSS compliant through Stripe
- Access Control: Strict role-based access with multi-factor authentication
5. GDPR Compliance
For users in the European Union, we comply with the General Data Protection Regulation (GDPR). You have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate personal data
- Right to Erasure: Request deletion of your personal data
- Right to Data Portability: Receive your data in a machine-readable format
- Right to Object: Object to processing of your personal data
To exercise any of these rights, contact us at privacy@successionlab.com
6. Cookies and Tracking
We use minimal cookies for essential functionality:
- Session Cookies: To maintain your assessment progress
- Security Cookies: To prevent fraud and abuse
We do NOT use tracking cookies, advertising cookies, or third-party analytics beyond basic server logs.
7. Third-Party Services
We use the following trusted third-party services:
- Stripe: Payment processing (PCI DSS compliant)
- Brevo: Email delivery service
- Cloudflare R2: Secure PDF storage
- DeepSeek: AI report generation
Each service has been vetted for security and privacy compliance. We share only the minimum necessary data with these providers.
8. Children's Privacy
Our service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe we have inadvertently collected such information, please contact us immediately.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. Your continued use of the service after such changes constitutes acceptance of the updated policy.
10. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
Email: privacy@successionlab.com
Response time: 48 hours