Legal
Privacy notice
Draft for founder/legal review — July 27, 2026
Information CatalogTrail handles
CatalogTrail handles account and organization identifiers, email addresses, billing identifiers, limited Square merchant and location information, supported Item Library values, change history, alert settings, and operational event metadata.
Why it is used
Information is used to authenticate users, connect Square, create change history, deliver configured alerts, manage subscriptions, support the service, prevent abuse, and improve reliability.
Service providers
The planned production service uses Vercel for hosting, Neon for PostgreSQL, Clerk for authentication, Square for source data, Stripe for billing, Resend for email, and Sentry for error monitoring.
Retention and deletion
Supported change history is planned for 24 months while an account is active. Raw provider webhook payloads and routine job metadata are planned for 30 days. Explicit account deletion revokes provider access and schedules customer data removal within the published period.
Your choices
You may disconnect Square, cancel billing, update alert recipients, or request workspace deletion from product settings. Contact privacy@catalogtrail.com for privacy questions.
Important draft status
This is implementation copy, not legal advice. The founder must establish the business entity, jurisdiction, controller/processor roles, lawful bases, final retention periods, and applicable rights before publishing it as a binding policy.