Privacy Policy
How customer data is handled
This policy is a plain-language MVP privacy notice for Your Justice Compass. It should be reviewed by a qualified attorney before the product handles substantial customer data, payments, uploads, or sensitive case materials at scale.
Information we collect
- Account information such as email address and authentication records.
- Content you choose to enter, such as workplace timelines, evidence descriptions, case-preparation notes, and generated reports when those tools are available.
- Technical information used to operate the site, maintain security, improve reliability, and understand basic usage.
How information is used
- To create and secure user accounts.
- To provide the education library, account dashboard, and case-organization tools.
- To store user-owned timelines, evidence notes, reports, and access status.
- To improve site functionality, prevent abuse, and support billing or subscription access when payments are added.
Sensitive information
- Workplace discrimination issues can involve sensitive employment, medical, family, identity, wage, and workplace facts.
- Users should avoid entering information they do not want stored in the app.
- Document uploads should not be added until storage rules, deletion controls, and retention language are stronger.
Data access and security
- Passwords are handled by Supabase Auth and are not stored as readable text by this app.
- Database access uses row level security so ordinary users can access only their own user-owned records.
- Backend secrets are stored in environment variables and should not be committed to GitHub.
- No internet service can guarantee perfect security, but the app is designed to use common modern protections.
Data deletion
- Users can request deletion from the account page.
- Deleting an account deletes user-owned records tied to the account in this app, including profile, case projects, timelines, evidence items, AI reports, and entitlement records.
- Some limited records may remain where required for security, fraud prevention, billing, tax, legal compliance, backups, or dispute handling.
Third-party services
- The app may use services such as Vercel, Supabase, Stripe, OpenAI, GitHub, Cloudflare, and analytics or email providers as the product develops.
- Those services process information under their own terms and privacy practices.