Legal
Privacy Policy
Last updated: [EFFECTIVE DATE]
Mockup notice: This document is a structural template that satisfies the baseline expectations of Stripe, Apple App Review, and Twilio A2P 10DLC reviewers. It is not legal advice. Have counsel review and tailor before publication.
1. Who we are
This privacy policy describes how NextTat (“NextTat,” “we,” “us,” or “our”), a [ENTITY TYPE, e.g. Delaware corporation] with its principal place of business at [STREET ADDRESS, CITY, STATE ZIP, COUNTRY], collects, uses, discloses, and protects personal information when you visit our website at https://nexttat.com (the “Site”), use our mobile application NextTat (the “App”), or otherwise interact with us (collectively, the “Services”).
2. Information we collect
2.1 Information you provide
- Account information: name, email address, and (if you purchase) billing information processed by our payment processor.
- Communications: the contents of messages you send us through the Site contact form, email, or SMS, and any attachments.
- Optional profile information: company name, role, and any details you choose to share.
2.2 Information collected automatically
- Usage data: pages viewed, links clicked, referring URL, approximate location derived from IP, device and browser information.
- Cookies and similar technologies: see §7 below.
- App diagnostics: crash reports and aggregated performance metrics, with no personally identifying content from scans.
2.3 Information stored on your device, not by us
The NextTat App performs 3D capture and reconstruction locally on your device. Camera frames, LiDAR depth data, and reconstructed 3D models do not leave your device unless you explicitly export, share, or upload them yourself. We do not have access to your raw scan data.
3. How we use information
- To provide, maintain, and improve the Services.
- To process payments and manage subscriptions through our payment processor.
- To respond to your inquiries and provide customer support.
- To send you transactional messages (e.g. receipts, security alerts, service updates).
- To send you marketing communications, but only where permitted by law and with your consent where required.
- To detect, investigate, and prevent fraud, abuse, and security incidents.
- To comply with legal obligations and enforce our Terms of Service.
4. How we share information
We do not sell personal information. We share personal information only as follows:
- Service providers that help us operate the Services (hosting, analytics, payment processing, email/SMS delivery, customer support tooling). These providers are contractually limited to processing information on our behalf.
- Legal & safety: when required by law, valid legal process, or to protect rights, property, or safety.
- Business transfers: in connection with a merger, acquisition, or sale of assets, with notice to affected users.
- With your consent or at your direction.
5. Payment processing
Payments are processed by [PAYMENT PROCESSOR, e.g. Stripe, Inc.]. We do not store full card numbers on our systems. The payment processor's privacy policy applies to information it collects directly from you during checkout.
6. SMS / text messaging terms
If you choose to opt in to SMS communications from us, the following terms apply:
- You consent by checking the SMS opt-in box on our contact form or by providing your mobile number to a NextTat team member in a context that makes clear that SMS messages will follow.
- Message and data rates may apply. Message frequency varies.
- Reply STOP to any message to opt out. Reply HELP for help, or contact support@nexttat.com.
- Carriers are not liable for delayed or undelivered messages.
- We will never share or sell mobile information (phone numbers or message content) to third parties or lead generators for marketing purposes. The only entities that receive your number are the carriers and Twilio (our SMS delivery provider), strictly to deliver the messages you requested.
- Supported carriers: [LIST: AT&T, T-Mobile, Verizon, etc.]
7. Cookies and analytics
We use cookies and similar technologies to operate the Site, remember your preferences, and measure traffic. You can control cookies through your browser settings; disabling cookies may impair some functionality.
8. Data retention
We retain personal information for as long as needed to provide the Services and as required by law. Inactive accounts may be deleted after [RETENTION PERIOD] of inactivity.
9. Security
We use commercially reasonable administrative, technical, and physical safeguards to protect personal information. No system is perfectly secure; if you believe your account or data may be compromised, contact us at security@nexttat.com.
10. Your rights
Depending on where you live, you may have rights to access, correct, delete, port, or restrict processing of your personal information, and to object to certain processing. To exercise these rights, contact legal@nexttat.com. We will respond consistent with applicable law.
10.1 California (CCPA / CPRA)
California residents have additional rights, including the right to know, delete, and correct personal information, and to opt out of certain sharing. We do not sell personal information.
10.2 EEA / UK (GDPR)
If you are in the EEA or UK, our legal bases for processing include consent, contract performance, legitimate interests, and legal obligation. You may lodge a complaint with your local supervisory authority.
11. International transfers
We are headquartered in [JURISDICTION] and our Services may be operated from there. By using the Services you understand that your information may be transferred to and processed in countries other than your own.
12. Children's privacy
The Services are not directed to children under [AGE — typically 13 or 16], and we do not knowingly collect personal information from them. If you believe a child has provided us with personal information, contact us at legal@nexttat.com.
13. Changes to this policy
We may update this policy from time to time. We will post the updated policy with a new “last updated” date and, for material changes, provide prominent notice.
14. Contact us
Questions about this policy or about how we handle personal information? Contact legal@nexttat.com or write to us at:
NextTat, [ENTITY TYPE]
Attn: Privacy
[STREET ADDRESS]
[CITY, STATE ZIP]
[COUNTRY]
