Privacy Policy
Last updated: 2026-03-20
AI Business Factory("we", "us", "our") operates https://rulesforge.vercel.app. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal data when you visit our website or use our services, in accordance with the General Data Protection Regulation (GDPR) and other applicable data-protection legislation.
1. Data We Collect
We may collect the following categories of personal data:
- Identity data— name, email address, username.
- Account data— credentials and profile preferences.
- Transaction data— payment details (processed securely by Stripe and/or Coinbase; we do not store full card numbers or private keys).
- Technical data— IP address, browser type, operating system, referring URLs, pages visited, timestamps collected through server logs and Google Analytics.
- Usage data— information about how you interact with our services.
- Communication data— messages sent to us via forms or email.
2. How We Use Your Data
Your data is processed for the following purposes:
- Providing and maintaining our services.
- Processing transactions and managing subscriptions.
- Communicating with you about your account or our services.
- Analysing usage patterns to improve performance and user experience (Google Analytics).
- Ensuring security and preventing fraud.
- Complying with legal obligations.
We process personal data only when we have a lawful basis to do so, such as your consent, contractual necessity, legitimate interest, or legal obligation (Art. 6 GDPR).
4. Third-Party Services
We share data with the following processors:
- Vercel— hosting and edge delivery. Data may be processed in the EU and US. See Vercel Privacy Policy.
- Stripe— payment processing. Stripe is a PCI DSS Level 1 certified service provider. See Stripe Privacy Policy.
- Coinbase Commerce— cryptocurrency payment processing. See Coinbase Privacy Policy.
- Google Analytics— usage analysis (only when you consent to analytics cookies). See Google Privacy Policy.
We do not sell your personal data. Third-party processors are contractually obligated to handle your data in compliance with the GDPR and our Data Processing Agreements.
5. Your Rights Under the GDPR
As a data subject in the European Economic Area (EEA), you have the following rights:
- Right of access(Art. 15) — obtain a copy of your personal data.
- Right to rectification (Art. 16) — correct inaccurate or incomplete data.
- Right to erasure (Art. 17) — request deletion of your personal data.
- Right to restriction (Art. 18) — restrict processing under certain conditions.
- Right to data portability (Art. 20) — receive your data in a structured, machine-readable format.
- Right to object (Art. 21) — object to processing based on legitimate interest or direct marketing.
- Right to withdraw consent (Art. 7) — withdraw consent at any time without affecting the lawfulness of prior processing.
- Right to lodge a complaint — file a complaint with your local supervisory authority.
To exercise any of these rights, contact us at hello@rulesforge.com. We will respond within 30 days.
6. Data Retention
We retain personal data only for as long as necessary to fulfil the purposes for which it was collected:
- Account data— retained for the lifetime of your account and up to 30 days after deletion.
- Transaction records— retained for the period required by applicable tax and financial regulations (typically 7–10 years).
- Analytics data— aggregated and anonymised within 26 months.
- Server logs— deleted after 90 days.
7. International Data Transfers
Your data may be transferred to and processed in countries outside the EEA. Where such transfers occur, we ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) approved by the European Commission and, where applicable, supplementary measures in line with the Schrems II ruling.
8. Security
We implement industry-standard technical and organisational measures to protect your personal data, including encryption in transit (TLS), secure storage, access controls, and regular security assessments. However, no method of transmission over the Internet is 100% secure, and we cannot guarantee absolute security.
9. Children’s Privacy
Our services are not directed to individuals under 16 years of age. We do not knowingly collect personal data from children. If you believe we have collected data from a child, please contact us immediately.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. We encourage you to review this page periodically. Where changes are significant, we will notify you by email or through a notice on our website.
11. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
- Email: hello@rulesforge.com
- Data Protection Officer: hello@rulesforge.com
- Website: https://rulesforge.vercel.app