Skip to content
Home

Privacy Policy

Last updated: August 23, 2026

1. What We Collect

When you purchase Write It Down, request the tips and discount offer, or sign up for updates, we collect your email address. A Family & Friends purchaser may also provide two to four recipient email addresses. We do not collect passwords, bank information, or payment card details. If you use the optional Dashboard, selected spreadsheet data is processed transiently as described in Section 4. It is not stored in our database.

2. How We Use Your Data

  • Email address: to deliver a purchased Google Sheet template, send requested tips and a discount code, and send occasional product updates. You can unsubscribe at any time.
  • Abuse-prevention identifier: when the tips form is submitted, we retain a one-way hash derived from the IP address for no longer than one hour. We use it only to enforce submission limits and do not store the raw address.
  • Gift recipient addresses: to deliver the selected Sheet v2 copies and provide order support. These addresses are stored with the bundle order. They are not placed in Stripe metadata, analytics events, or messages to other recipients.
  • Payment information: processed securely by Stripe. We never see or store your credit card details.

3. Your Financial Data

All data you enter into the Write It Down spreadsheet lives in your own Google Drive. If you do not use the optional Dashboard, Write It Down has no access to that data. If you connect a spreadsheet to the Dashboard, access is limited to files you explicitly select through Google Picker and is used only as described below.

4. Dashboard & Google Account Access

The optional Write It Down Dashboard at write-it-down.com/dashboard lets you visualize your sheet over time. Using it is entirely optional.

Your spreadsheet contents are never stored on our servers. When the Dashboard synchronizes a selected spreadsheet, the rows pass through our Vercel-hosted application over HTTPS and are processed temporarily in memory to parse the sheet, convert currencies, and calculate charts. We do not write those rows to our database, analytics systems, or application logs. They are discarded when the request finishes.

When you sign in with Google, we request the following scopes:

  • Email and basic profile: to identify you as a Write It Down customer.
  • Google Drive (drive.file): file-level access, used with Google Picker so you can select which spreadsheets to connect. The Dashboard uses the Google Sheets API to read only those selected files. It cannot access other files in your Drive. Write It Down does not call Google write endpoints and does not modify or delete your files.

What we store: your email address, sign-in timestamps, and anonymous usage events (e.g. “dashboard viewed”) to improve the product. We also cache historical foreign-exchange rates we look up from public sources. OAuth refresh tokens are kept in an encrypted authentication session cookie rather than our database. A short-lived Google access token is available only to your signed-in Dashboard session so Google Picker and authorized API requests can work.

What we never store: the contents of your sheet (transactions, amounts, categories, descriptions). Sheet data is read on demand from Google’s API and discarded as soon as the response is sent.

What stays on your device: your selected file IDs, display settings, and a cache of recently read rows are kept in your browser’s local storage. The Dashboard may send cached rows to its aggregation endpoint for temporary in-memory processing as described above, but the cache is never uploaded for persistent storage. Disconnect a sheet or clear your browser data to remove the local copy.

Use of Google user data: we use Google user data only to power the dashboard features described above. We do not sell, transfer, or otherwise share Google user data with third parties for advertising, analytics, or any other purpose unrelated to the dashboard. Our use complies with the Google API Services User Data Policy, including the Limited Use requirements.

You can revoke our access at any time at myaccount.google.com/permissions.

5. Data Protection and Security

  • Encryption in transit: Google OAuth tokens, selected spreadsheet data, and account information are transmitted only over HTTPS/TLS.
  • Protected sessions: authentication sessions are encrypted and stored in Secure, HTTP-only, SameSite cookies. Refresh tokens are not stored in our database. Google access tokens are short-lived and can be revoked at any time.
  • Least-privilege access: we request only the per-file drive.file scope. Every spreadsheet must be selected by the user through Google Picker before the Dashboard can read it.
  • Server-side secrets: OAuth client secrets, database credentials, and service credentials are stored as protected server environment variables and are not exposed in browser code.
  • No spreadsheet-content retention: spreadsheet rows are processed transiently in memory and are not persisted to our databases, analytics services, or logs. Stored account and activity records are limited to production service credentials and authorized operators.

6. Analytics

We use Google Analytics and DataFast (a self-hosted, EU-friendly analytics product) to understand which channels bring visitors and which actions lead to a purchase. We also use Meta Pixel and Meta Conversions API to measure whether ads lead to a tips request or purchase. Meta may receive a one-way hash of an email address, the IP address, browser user agent, and Meta cookie identifiers for event matching. We never send spreadsheet contents or financial data to analytics or advertising services.

For DataFast, on first visit you choose between two analytics modes via a consent banner: Accept sets one analytics cookie used to attribute purchases back to the channel that brought you. Reject switches to a cookieless variant that only counts anonymous pageviews and aggregate goals — no per-visitor attribution. You can change your mind by clearing the cookie/local storage in your browser.

7. Cookies

If you sign in to the Dashboard, we use essential authentication cookies to keep your session secure and prevent cross-site request forgery. These cookies are required for Dashboard functionality and are not used for advertising.

We also use one optional analytics cookie if you accept the consent banner (see Analytics above). It holds an opaque visitor ID — no email, name, payment data, or spreadsheet content — and is used to link sessions for attribution. Rejecting the banner means the optional analytics cookie is not set and does not affect site functionality.

8. Third-Party Services

  • Stripe: payment processing
  • Resend: transactional emails
  • Google Analytics: website analytics
  • Meta: advertising measurement through Pixel and Conversions API. See Meta’s Privacy Policy.
  • MongoDB: lead, customer, gift recipient, bundle delivery, and dashboard activity storage
  • Vercel: application hosting and temporary in-memory Dashboard processing
  • Google (OAuth, Picker, Drive, and Sheets APIs): Dashboard sign-in, file selection, and read-only use of selected spreadsheets

9. Data Deletion

You can request deletion of your email and account data at any time by contacting us at l.cundric@gmail.com. We will process your request within 30 days.

You can also disconnect spreadsheets in Dashboard settings, clear the Dashboard’s local browser cache, and revoke Write It Down’s Google access at myaccount.google.com/permissions.

California residents: under the CCPA you have the right to request deletion of your personal information and to know what we’ve collected. Email us with the subject “CCPA request” and we’ll respond within 45 days. We do not sell personal information.

10. Contact

If you have questions about this privacy policy, email us at l.cundric@gmail.com.