Back to Home

Privacy Policy

Last updated: March 5, 2026

1. Information We Collect

Account Information

When you create an account, we collect:

  • Name and email address (via Google OAuth)
  • Profile information from your Google account
  • Authentication tokens for secure access

Usage Information

We collect information about how you use StartupGPT:

  • Startup projects you create and manage
  • AI chat conversations and interactions
  • Generated content (business plans, landing pages, applications)
  • Usage patterns and feature interactions

Technical Information

We automatically collect:

  • IP address and browser type
  • Device information and operating system
  • Log data (access times, pages viewed, errors)
  • Cookies and similar tracking technologies

2. How We Use Your Information

We use your information to:

  • Provide and improve StartupGPT services
  • Generate AI-powered startup content and recommendations
  • Authenticate and secure your account
  • Send important updates and service notifications
  • Analyze usage patterns and session recordings to improve the user experience
  • Prevent fraud and ensure platform security
  • Comply with legal obligations

3. Third-Party Services

We use the following third-party services:

  • Google OAuth: For authentication
  • OpenAI & Anthropic: For AI content generation
  • Stripe: For payment processing (PCI-DSS compliant; we never access your payment card details)
  • Sentry: For error tracking and monitoring
  • Google Ads: For advertising services

These services have their own privacy policies and may collect data as described in their policies.

3a. Session Recording & Analytics (PostHog)

We use PostHog, a product analytics platform with data stored in the European Union, to understand how visitors interact with our website. With your analytics consent, PostHog collects:

  • Page views, clicks, scrolls, and navigation patterns
  • Session recordings that replay your interactions with the site (mouse movements, clicks, page transitions)
  • Device type, browser, screen size, and operating system
  • Custom events related to your use of the startup creation wizard and other features

What PostHog does NOT capture:

  • Credit card numbers, payment details, or any financial information — all payment processing is handled exclusively by Stripe and never passes through our analytics
  • Passwords — all password fields are automatically masked in session recordings
  • Sensitive personal documents or uploaded file contents

PostHog analytics are only activated after you grant analytics consent via our cookie banner. You can withdraw consent at any time through the cookie settings. All PostHog traffic is routed through our own subdomain (larissa.startupgpt.pro) to the PostHog EU servers. For more information, see PostHog's privacy policy.

4. Data Sharing

We do not sell your personal data. We may share data:

  • With service providers who help operate StartupGPT
  • When required by law or legal process
  • To protect our rights and prevent fraud
  • With your explicit consent

5. Your Rights (GDPR)

If you're in the EU/EEA, you have the right to:

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate data
  • Erasure: Request deletion of your data
  • Portability: Receive your data in a portable format
  • Object: Object to certain data processing
  • Withdraw Consent: At any time

To exercise these rights, contact us at privacy@startupgpt.pro

6. Data Security

We implement industry-standard security measures including:

  • Encryption in transit (HTTPS/TLS)
  • Secure authentication with JWT tokens
  • Regular security audits and monitoring
  • Access controls and logging

However, no system is 100% secure. We cannot guarantee absolute security.

7. Data Retention

We retain your data for as long as:

  • Your account is active
  • Needed to provide services
  • Required by law

When you delete your account, we will delete or anonymize your personal data within 30 days, except where required to retain it by law.

8. Children's Privacy

StartupGPT is not intended for users under 18 years old. We do not knowingly collect data from children. If you believe we have collected data from a child, please contact us immediately.

9. Changes to This Policy

We may update this policy from time to time. We will notify you of significant changes by email or through the platform. Continued use after changes constitutes acceptance.

10. Contact Us

For privacy questions or to exercise your rights, contact us at: