Legal

Privacy Policy

Last updated: April 7, 2026

1. Who We Are

Before We Do ("we," "us," or "our") operates the website at beforewedo.us and provides a couples compatibility assessment service. This policy explains how we collect, use, and protect your personal information.

For privacy questions, contact us at privacy@beforewedo.us.

2. Information We Collect

Account Information

  • Email address (from signup form or Google OAuth)
  • First name
  • Authentication credentials (password hash or Google account link)

Assessment Responses

  • Your answers to our 149-question compatibility assessment across 7 dimensions (communication, conflict, finances, intimacy, family, values, and growth)
  • These responses are used exclusively to generate your compatibility report

Payment Information

  • Payment processing is handled entirely by Stripe
  • We never see, store, or have access to your credit card number, CVV, or full card details
  • We store only the Stripe session ID and payment status for order fulfillment

Partner Invitation Data

  • When you invite your partner, we collect their email address to send the invitation
  • A unique invite code is generated to link your accounts

3. How We Use Your Information

We use your information only for the following purposes:

  • Authentication — to create and secure your account
  • Assessment delivery — to generate your personalized compatibility report
  • Partner linking — to connect you with your partner via invite codes and email
  • Payment processing — to fulfill your report purchase through Stripe
  • Transactional emails — to send partner invitations via our email provider (Resend)

We do not use your data for advertising, profiling, or marketing. We do not sell or share your personal information with third parties for their own purposes.

4. Information We Do Not Collect

We believe in data minimization. We do not collect or use:

  • Analytics or tracking cookies (no Google Analytics, no tracking pixels)
  • IP addresses or device fingerprints
  • Location data
  • Marketing cookies or third-party advertising data
  • Browsing behavior outside of our app

5. Third-Party Services

We use a limited number of trusted services to operate:

Supabase

Hosts our database and handles authentication. Your account data and assessment responses are stored securely with row-level security policies.

Stripe

Processes all payments. Stripe is PCI-DSS Level 1 certified. We never handle your card details directly.

Resend

Sends transactional emails (partner invitations only). We do not send marketing emails.

Vercel

Hosts our website. Vercel may collect standard server logs (IP addresses, request timestamps) as part of normal web hosting operations.

6. Data Security

  • All data is encrypted in transit (HTTPS/TLS)
  • Database access is protected by row-level security — you can only access your own data
  • Passwords are hashed and never stored in plain text
  • Authentication tokens are managed securely via Supabase
  • Payment data is handled by Stripe's PCI-compliant infrastructure

7. Data Retention

  • Account data — retained while your account is active
  • Assessment responses — retained while your account is active, used only for report generation
  • Compatibility report — retained while your account is active for your continued access
  • Payment records — retained for 7 years as required for tax and legal compliance

If you delete your account, we will remove your personal data within 30 days, except where retention is required by law.

8. Your Rights

You have the right to:

  • Access your personal data — request a copy of all data we hold about you
  • Correct inaccurate information in your profile
  • Delete your account and associated data
  • Export your data in a machine-readable format
  • Object to any processing you believe is unlawful

To exercise any of these rights, email privacy@beforewedo.us. We will respond within 30 days.

9. Cookies

We use only essential cookies required for authentication and session management (provided by Supabase). We do not use analytics cookies, tracking cookies, or marketing cookies. No cookie banner is needed because we only use strictly necessary cookies.

10. Children's Privacy

Before We Do is intended for adults aged 18 and older. We do not knowingly collect personal information from anyone under 18. If you believe a minor has provided us with personal data, please contact us and we will delete it promptly.

11. Changes to This Policy

We may update this privacy policy from time to time. If we make material changes, we will notify you by updating the date at the top of this page. We encourage you to review this policy periodically.

12. Contact

If you have questions about this privacy policy or how we handle your data, please contact us at privacy@beforewedo.us.