Privacy Policy
Last updated: April 20, 2025
This Privacy Policy explains how ProofNest (“we”, “us”, “our”) collects, uses, stores, and protects personal data when you use our platform at proofnest.vercel.app (the “Service”).
1. Who We Are
ProofNest is a testimonial collection and social proof SaaS platform that allows businesses and creators to collect, manage, and embed customer testimonials on their websites.
2. User Types Covered
Account Holders
Businesses, creators, coaches, and individuals who sign up for a ProofNest account to collect and display testimonials.
Testimonial Submitters
End-users (customers, clients) who submit testimonials through a ProofNest-powered collection form on behalf of an Account Holder.
3. Data We Collect (Account Holders)
- Full name and email address
- Hashed, encrypted passwords
- Profile info (photo, business name)
- Billing info via Dodo Payments
- Subscription & usage metadata
- Projects & widget configurations
Note: ProofNest does not store your card number directly. All processing is handled by Dodo Payments, our Merchant of Record.
4. Testimonial Submitters
We collect what the Account Holder configures the form to ask for:
- • Name and Role
- • Testimonial Text
- • Star Rating
- • Profile Photo
- • IP & Browser metadata
- • Consent Confirmation
- • Private Email Address
5. How We Use Data
We use data collected for maintenance, security, payment processing via Dodo Payments, and analysis to improve features. We do not sell your personal data to any third party.
6. Third-Party Services
Supabase
Database, auth, and file storage.
Dodo Payments
Merchant of Record and payment processing.
Vercel
Application hosting and deployment.
Resend
Transactional email delivery.
7. Cookies and Tracking
ProofNest uses cookies for session authentication, security (CSRF), and basic privacy-friendly analytics. We do not use Google Analytics or advertising cookies.
8. Storage & Security
Your data is stored on Supabase-managed infrastructure. We use TLS/HTTPS encryption, bcrypt password hashing, and restricted database access.
9. Data Retention
Account data is kept while active. Logs are kept for 12 months. Tax-related billing records are kept for 7 years per legal requirements.
10. Your Rights
Right to access, deletion, correction, and portability. Email privacy@proofnest.vercel.app to exercise your GDPR/DPDPA rights.
12. Governing Law
Governed by the laws of India (IT Act 2000 & DPDPA 2023). We follow GDPR principles for EU/UK residents.
14. Contact
ProofNest, proofnest.vercel.app.
Direct data protection queries to: privacy@proofnest.vercel.app