Privacy Policy
Last updated: September 9, 2026
This Privacy Policy explains how Found3r ("Found3r", "we", "us") collects, uses, shares, and protects personal data when you use found3r.dev and related services. We aim to collect only what we need to run the Service well.
1. Data we collect
Information you give us. Your name, email address, and account credentials when you sign up; the ideas, project descriptions, and other content you submit; and messages you send to support.
Billing information. When you subscribe, our payment processor collects your payment details and billing address. Full card numbers are handled entirely by the processor and never reach or get stored on our servers. We receive only limited data such as the last four digits, card brand, expiry, and transaction status.
Information collected automatically. IP address, browser and device type, pages viewed, referring URL, and timestamps, collected through server logs and privacy-respecting analytics to keep the Service secure and understand how it is used.
Information from third parties. If you sign in through an identity provider, we receive your basic profile details (such as email and name) from that provider.
2. How we use your data
- To provide, operate, and maintain the Service and your account.
- To process payments, manage subscriptions, and send billing notices.
- To respond to support requests and communicate service updates.
- To monitor, secure, and debug the Service, and to prevent fraud and abuse.
- To analyse usage in aggregate so we can improve features and performance.
- To send product updates and marketing where you have opted in — you can unsubscribe at any time.
- To comply with legal obligations and enforce our Terms of Service.
We do not sell your personal data, and we do not share it with third parties for their own advertising purposes.
3. Legal bases (EEA and UK users)
Where the GDPR applies, we process personal data on these bases:
- Performance of a contract — to deliver the Service you signed up for.
- Legitimate interests — to secure the Service, prevent abuse, and improve our product, balanced against your rights.
- Consent — for optional marketing emails and non-essential analytics, which you may withdraw at any time.
- Legal obligation — to meet accounting, tax, and other statutory duties.
4. Who we share data with
We share personal data only with service providers who help us operate the Service, under contracts that require them to protect it. These categories include:
- Cloud hosting and application infrastructure providers.
- Database and backend platform providers.
- Authentication and identity providers.
- Payment processors, for subscription billing.
- AI model providers, which process the content you submit in order to generate outputs.
- Email delivery and customer support tooling.
- Product analytics and error monitoring providers.
We may also disclose data if required by law, to enforce our agreements, to protect the rights and safety of our users, or in connection with a merger, acquisition, or sale of assets — in which case we will notify you.
5. International transfers
We and our providers may process data in countries other than yours, including the United States. Where we transfer personal data out of the EEA or UK, we rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses.
6. Cookies and similar technologies
We use strictly necessary cookies to keep you signed in and to maintain session security. We also use limited analytics cookies to understand aggregate usage. You can block or delete cookies in your browser settings, but the Service may not function correctly without the essential ones.
7. Data retention
We keep personal data for as long as your account is active and for as long afterwards as needed to comply with legal, tax, and accounting obligations or to resolve disputes. When you delete your account, we delete or anonymise your personal data within 90 days, except where longer retention is legally required. Backups are purged on a rolling schedule.
8. Your rights
Depending on where you live, you may have the right to access, correct, delete, or export your personal data; to object to or restrict processing; to withdraw consent; and to lodge a complaint with your data protection authority. California residents have the right to know what personal information we collect, to request deletion, and not to be discriminated against for exercising those rights.
To exercise any of these rights, email privacy@found3r.dev. We respond within the time limits required by applicable law, normally within 30 days.
9. Security
We use encryption in transit, access controls, scoped credentials, and least-privilege practices to protect your data, and we review our providers’ security posture. No system is perfectly secure, so we cannot guarantee absolute security. If a breach affects your personal data, we will notify you and the relevant authorities as required by law.
10. Children
The Service is not directed to anyone under 18, and we do not knowingly collect personal data from children. If you believe a child has provided us personal data, contact privacy@found3r.dev and we will delete it.
11. Changes to this policy
We may update this Privacy Policy as the Service evolves. We will post the revised version here and update the "Last updated" date. If changes are material, we will notify you by email or in the Service before they take effect.
12. Contact
Found3r
Privacy enquiries and data requests: privacy@found3r.dev
General enquiries: support@found3r.dev
Questions about this policy? Email legal@found3r.dev.