Privacy Policy

Last updated: August 1, 2025

Our Privacy-First Commitment

The 1870 Project is built on a foundation of privacy protection. We collect minimal data and never store personal information beyond what's necessary for service delivery.

What We Don't Collect

  • No user accounts - No registration required
  • No personal information - Names, addresses, phone numbers
  • No genealogy data storage - Your research stays with you
  • No tracking cookies - No behavioral profiling
  • No email storage - Optional receipts are never retained

What We Do Collect

  • Session tokens - Temporary identifiers for service continuity (24-hour expiration)
  • Payment data - Processed securely through Stripe (we never see card details)
  • Usage analytics - Anonymous service performance metrics
  • Error logs - Technical data to improve service reliability

Data Retention

  • Session data: Automatically deleted after 24 hours
  • Payment records: Retained for tax compliance (7 years)
  • Analytics: Aggregated, anonymous data only
  • Research results: Never stored on our servers

Third-Party Services

  • Stripe: Payment processing (PCI DSS compliant)
  • AWS: Cloud infrastructure (SOC 2 compliant)
  • Genealogy databases: Anonymous queries only

Your Rights

Since we collect minimal data, most privacy rights are automatically protected:

  • Right to deletion: Session data auto-expires
  • Right to access: Contact us for payment records
  • Right to portability: Export your research anytime
  • Right to object: Stop using our service anytime

GDPR & CCPA Compliance

Our privacy-first design ensures automatic compliance with major privacy regulations. We process minimal data, store nothing permanently, and give users complete control.

Contact Us

Questions about privacy? Contact us at the1870project@gmail.com