Legal

Privacy Policy

Last updated: March 15, 2025

Your privacy is important to us. Let's Work is committed to protecting your personal information and being transparent about what data we collect and how we use it.

1. Information We Collect

1.1 Information You Provide

  • Account Information: Name, email address, and password when you create an account
  • Profile Information: Avatar, display name, and preferences you choose to add
  • Content: Projects, tasks, comments, and files you create or upload
  • Payment Information: Billing address and payment method (processed securely by Paddle)
  • Communications: Messages you send to our support team

1.2 Information Collected Automatically

  • Device Information: Browser type, operating system, device type
  • Usage Data: Features used, pages visited, actions taken within the app
  • Log Data: IP address, access times, error logs for troubleshooting
  • Cookies: Session cookies and preference cookies (see Cookie Policy below)

2. How We Use Your Information

We use the collected information for the following purposes:

  • Provide the Service: To create and manage your account, enable collaboration features, and process your requests
  • Improve the Service: To understand how users interact with our platform and make improvements
  • Communication: To send service updates, security alerts, and respond to support requests
  • Billing: To process payments and manage subscriptions
  • Security: To detect and prevent fraud, abuse, and security threats
  • Legal Compliance: To comply with legal obligations and enforce our terms

3. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: All data is encrypted using AES-256 encryption at rest and TLS 1.3 in transit
  • Unique Keys: Each organization has its own unique encryption key
  • Secure Infrastructure: Our servers are hosted on Supabase with enterprise-grade security
  • Access Control: Strict access controls and authentication mechanisms
  • Regular Audits: We regularly review and update our security practices

4. Information Sharing

We do not sell your personal information. We may share your information only in these circumstances:

  • With Your Team: Information shared within your workspace is visible to other team members
  • Service Providers: Trusted third-party services that help us operate (payment processing, hosting, analytics)
  • Legal Requirements: When required by law, court order, or governmental authority
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • With Your Consent: When you explicitly authorize us to share information

Third-Party Services We Use:

  • - Supabase (Database & Authentication)
  • - Paddle (Payment Processing)
  • - Vercel (Website Hosting)

5. Data Retention

We retain your personal information for as long as necessary to:

  • Provide the Service and maintain your account
  • Comply with legal obligations
  • Resolve disputes and enforce agreements

When you delete your account, we will delete your personal information within 30 days, except where we are required to retain it for legal purposes.

6. Your Rights

You have the following rights regarding your personal data:

  • Access: Request a copy of your personal data
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your data ("right to be forgotten")
  • Export: Export your data in a portable format (PDF, Excel)
  • Restriction: Request restriction of processing in certain circumstances
  • Objection: Object to processing based on legitimate interests
  • Withdraw Consent: Withdraw consent where processing is based on consent

To exercise these rights, contact us at support@letsworktr.com.

7. Cookies

We use cookies and similar technologies to:

  • Essential Cookies: Required for the Service to function (authentication, security)
  • Analytics Cookies: Help us understand how visitors use our website
  • Preference Cookies: Remember your settings and preferences

You can manage your cookie preferences through our cookie consent banner or your browser settings.

8. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for such transfers, including:

  • Standard Contractual Clauses approved by the European Commission
  • Compliance with applicable data protection laws

9. Children's Privacy

Our Service is not directed to individuals under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that we have collected personal information from a child under 16, we will take steps to delete such information promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. For significant changes, we will provide a more prominent notice (such as an email notification). We encourage you to review this Privacy Policy periodically.

11. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us:

GDPR Compliance (For EU Users)

If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):

  • Right to lodge a complaint with a supervisory authority
  • Right to data portability
  • Right not to be subject to automated decision-making

Our legal basis for processing your data includes: contract performance, legitimate interests, consent, and legal obligations.