Founders Helm

Privacy Policy

Last updated: January 30, 2026

1. Introduction

Founders Helm ("we," "us," or "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and share your information when you use our platform and services ("the Service"). By using the Service, you consent to the practices described in this policy.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, and profile photo when you create an account (including via Google or GitHub OAuth)
  • Billing Information: Payment details are processed securely by Stripe. We store your Stripe customer ID but do not store credit card numbers directly.
  • User Content: Any data, documents, contacts, code snippets, landing pages, projects, and other content you create or upload to the Service
  • Communications: Messages you send to us for support or feedback

2.2 Information Collected Automatically

  • Usage Data: Pages visited, features used, and actions taken within the Service
  • Device Information: Browser type, operating system, and device identifiers
  • Log Data: IP address, access times, and referring URLs
  • Analytics: Aggregated usage patterns to improve the Service

3. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve the Service
  • Process payments and manage your subscription
  • Send transactional emails (account confirmations, billing receipts, security alerts)
  • Respond to your support requests and communications
  • Monitor and analyze usage trends to improve user experience
  • Detect, prevent, and address technical issues or abuse
  • Comply with legal obligations

We do not sell your personal information to third parties. We do not use your content to train machine learning models. Any AI features (such as the AI Advisor) process your data only to provide you with responses and do not retain that data for training purposes.

4. Data Storage and Security

Your data is stored securely using industry-standard infrastructure:

  • Database: Your data is stored in Supabase (built on PostgreSQL) with row-level security policies ensuring you can only access your own data
  • Encryption: All data is encrypted in transit (TLS/SSL) and at rest
  • Authentication: Managed through Supabase Auth with secure session handling
  • Payment Processing: Handled entirely by Stripe, a PCI DSS Level 1 certified payment processor

While we implement appropriate security measures, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security of your data.

5. Third-Party Services

We use the following third-party services to operate the platform:

  • Supabase: Database hosting, authentication, and file storage
  • Stripe: Payment processing and subscription management
  • Vercel: Application hosting and deployment
  • OpenAI: Powers AI Advisor features (data is not used for model training)

Each third-party provider has their own privacy policy governing how they handle data. We encourage you to review their policies. We only share the minimum data necessary for each service to function.

6. Cookies and Tracking

The Service uses essential cookies and local storage for:

  • Authentication: Maintaining your login session
  • Preferences: Storing your workspace selection and UI preferences

We do not use third-party advertising cookies or cross-site tracking. You can manage cookie preferences through your browser settings, though disabling essential cookies may affect the functionality of the Service.

7. Data Retention

We retain your data for as long as your account is active. If your trial expires and you do not upgrade, your data is preserved in read-only mode indefinitely so you can access it if you choose to upgrade later. If you request account deletion, we will permanently delete your personal data and content within 30 days, except where we are required to retain certain information for legal or compliance purposes.

8. Your Rights

Depending on your location, you may have the following rights regarding your data:

  • Access: Request a copy of the personal data we hold about you
  • Correction: Request correction of inaccurate personal data
  • Deletion: Request deletion of your personal data and account
  • Export: Export your data in a portable format (available via Settings)
  • Objection: Object to certain types of data processing
  • Restriction: Request restriction of processing in certain circumstances

To exercise any of these rights, contact us at privacy@foundershelm.com. We will respond to your request within 30 days.

9. Children's Privacy

The Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child under 18, we will take steps to delete that information promptly.

10. International Data Transfers

Your data may be processed and stored in countries other than your country of residence. By using the Service, you consent to the transfer of your data to these countries. We ensure that appropriate safeguards are in place to protect your data in accordance with this Privacy Policy.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on the Service and updating the "Last updated" date. We may also send you an email notification for significant changes. Your continued use of the Service after changes take effect constitutes acceptance of the revised policy.

12. Contact Us

If you have any questions about this Privacy Policy or how we handle your data, please contact us at privacy@foundershelm.com.