Privacy Policy

Last updated: March 2026

1. Who We Are

FormFinder AI ("FormFinder", "we", "us", or "our") operates the website formfinderai.com. We are committed to protecting your personal data and complying with the General Data Protection Regulation (GDPR) and applicable Irish and EU data protection law.

For any data-related enquiries, contact us at hello@formfinderai.com.

2. Data We Collect

We collect the following categories of personal data:

  • Account data: Email address and password (hashed) when you create an account.
  • Subscription data: Billing name, payment method details (processed by Stripe — we never store full card numbers).
  • Waitlist data: Email address if you join our waitlist.
  • Usage data: Pages visited, features used, and approximate location (country/region) via anonymised logs.
  • Communications: Any messages you send us by email.

We do not collect sensitive personal data (such as health data, racial or ethnic origin, or financial account details beyond what Stripe processes on our behalf).

3. How We Use Your Data

We use your personal data to:

  • Provide and operate the FormFinder AI service
  • Process subscription payments and manage your account
  • Send you morning tips and service-related emails (if you have opted in)
  • Contact you about your account, subscription changes, or our service
  • Improve and develop the service using anonymised usage analytics
  • Comply with our legal obligations

We do not sell your personal data to third parties and we do not use your data for advertising profiling.

4. Legal Basis for Processing

We process your personal data on the following legal grounds under GDPR:

  • Contract performance: Processing necessary to provide the service you have subscribed to.
  • Legitimate interests: Improving the service, preventing fraud, and operating the platform securely.
  • Consent: Marketing communications (you can withdraw consent at any time).
  • Legal obligation: Where required by applicable law.

5. Third-Party Services

We use the following trusted third-party processors to operate our service:

  • Supabase — Database and authentication. Data stored in EU-based servers.
  • Stripe — Payment processing. Stripe is PCI-DSS compliant and processes card data on our behalf.
  • Resend — Transactional and tips email delivery.
  • Vercel — Website hosting and infrastructure.
  • Anthropic (Claude AI) — AI-generated written analysis for tips. No personal data is included in AI prompts.

All processors are bound by appropriate data processing agreements and operate in compliance with GDPR where applicable.

6. Data Retention

We retain your personal data for as long as your account is active or as needed to provide you with the service. If you close your account, we will delete your personal data within 30 days, except where we are required to retain it for legal or regulatory purposes (such as financial records, which we retain for 7 years in accordance with Irish tax law).

7. Your Rights Under GDPR

As a data subject, you have the following rights:

  • Access: Request a copy of the personal data we hold about you.
  • Rectification: Ask us to correct inaccurate or incomplete data.
  • Erasure: Request deletion of your personal data ("right to be forgotten").
  • Restriction: Ask us to restrict processing of your data in certain circumstances.
  • Portability: Receive your data in a structured, commonly used format.
  • Objection: Object to processing based on legitimate interests.
  • Withdraw consent: Withdraw consent for marketing communications at any time via the unsubscribe link in any email.

To exercise any of these rights, email us at hello@formfinderai.com. We will respond within 30 days. You also have the right to lodge a complaint with the Data Protection Commission of Ireland at dataprotection.ie.

8. Cookies

FormFinder AI uses cookies and similar technologies to operate the service. These include:

  • Essential cookies: Required for authentication and session management. Cannot be disabled.
  • Analytics cookies: Anonymised usage data to improve the service. You can opt out via your browser settings.

We do not use advertising or tracking cookies from third-party ad networks.

9. Security

We take appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. These include encrypted connections (HTTPS), secure database access controls, and regular security reviews.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by email or by posting a prominent notice on our website. Your continued use of the service after changes take effect constitutes acceptance of the updated policy.

11. Contact

For any questions, concerns, or data subject requests, contact us at hello@formfinderai.com.