Privacy Policy
Last updated: July 1, 2026
Loyaltide (“we,” “us,” “our”) is a churn intelligence tool for SaaS founders. This policy explains what data we collect, how we use it, and the rights you have over it. Loyaltide is operated from Sweden, and we handle personal data in line with the EU General Data Protection Regulation (GDPR).
1. What we collect
- Account information — your name, email address, and company name, provided when you sign up.
- Billing data — when you subscribe to Loyaltide, Stripe processes your payment details on our behalf. We never see or store your full card number.
- Connected Stripe data — when you connect your own Stripe account via Stripe Connect (read-only), we sync a copy of your customers’ billing signals: names, emails, plans, MRR, subscription status, and events like failed payments, downgrades, and cancellations. We cannot move money or make changes in your connected Stripe account — access is strictly read-only.
2. How we use it
We use the data above to:
- Compute risk scores for your customers and show them on your dashboard.
- Send you email alerts — new high-risk customers, trial reminders, and account activation.
- Operate and improve the product, and provide support when you contact us.
We do not sell your data, or your customers’ data, to anyone.
3. Who we share it with
We use a small number of trusted service providers to run Loyaltide. Each only receives the data it needs to do its job:
- Stripe — payment processing (our billing) and the Connect integration (your billing data source).
- Supabase — our database and authentication provider. All account and customer data is stored here.
- Resend — sends transactional emails (account verification, alerts, password resets) on our behalf.
- Vercel — hosts the Loyaltide application.
We don’t share your data with anyone else, except where required by law.
4. Data retention and deletion
We keep your data for as long as your account is active. You can disconnect your Stripe account at any time from Settings, which stops future syncing — previously synced customer data is deleted when you disconnect. If you delete your Loyaltide account, we delete your account data and all synced customer data within 30 days, except where we’re required to retain records (for example, billing records for tax purposes).
5. Your rights (GDPR)
Because Loyaltide is based in the EU, you have the following rights over your personal data, regardless of where you’re located:
- Access — ask us what data we hold about you.
- Export — request a copy of your data in a portable format.
- Deletion — ask us to delete your account and associated data.
- Correction — ask us to fix inaccurate data.
To exercise any of these rights, email us at mustafa@loyaltide.com. We’ll respond within 30 days.
6. Cookies
We use only the minimum cookies necessary to keep you signed in — session/authentication cookies set by Supabase Auth. We do not currently use any tracking, advertising, or analytics cookies. If that changes, we’ll update this policy and ask for consent where required.
7. Security
Data is encrypted in transit (HTTPS) and at rest by our infrastructure providers. Access to your data is protected by row-level security so that only your account can read your data. Stripe access tokens and other secrets are never exposed to the browser.
8. Changes to this policy
We may update this policy from time to time. If we make material changes, we’ll notify you by email. The “Last updated” date above reflects the most recent revision.
9. Contact
Questions about this policy or your data? Email mustafa@loyaltide.com.