This notice explains what data we collect, how we use it, and your rights. Plain language version: we collect the minimum we need to run the Service, we don't sell it, and you can delete it whenever you want.
1. What we collect
Account data, email address, hashed password (via Lucia), an internal user id, and whether you're an administrator.
Uploaded data, phone CSV files you upload, the cleaned result CSVs, and per-row records in the database while a batch is processing.
Billing data, Stripe customer id, purchase records, credit ledger entries. Card numbers are handled by Stripe directly; we don't see them.
API + webhook data, API key hashes, webhook subscription URLs + hashed secrets, delivery attempt history.
Operational data, validation request logs (with phone numbers masked), batch counters, admin event audit trail.
2. What we don't collect
- Raw credit-card numbers (Stripe handles those).
- IP addresses or analytics events beyond basic server logs (no third-party trackers).
- Non-phone CSV columns are not sent to the phone-validation provider; only selected phone columns are validated.
3. How we use it
- To run the Service (clean CSVs, deliver webhooks, send emails).
- To bill you (Stripe checkout + refund flow).
- To detect abuse (rate limits, suspension).
- To respond to legal process where required.
4. Sharing
We share data only with:
- A phone-validation sub-processor, receives normalized phone numbers to validate. The current sub-processor list is available on request and is updated when it changes.
- Stripe, receives billing data for payment processing. Their privacy notice applies to payment data.
- Our hosting + storage providers, receive data at rest and in transit. We use industry-standard encryption.
We don't sell your data, and we don't share it for advertising.
5. Logs
Phone numbers in our internal validation-request logs are masked (first 4 + last 2 digits only). We rotate server logs after 30 days.
6. Retention
- Account data: until you close the account.
- Uploaded CSVs + result CSVs: as long as the batch exists.
- Cached lookups: 24 hours from last access.
- Validation request logs: 90 days.
- Admin event audit trail: 1 year.
7. Your rights
You can:
- Access your data, most of it is visible in the dashboard; for the rest, email us.
- Delete your account and all associated data we'll delete within 30 days of request.
- Export your data, your batches' result CSVs are downloadable from the dashboard at any time.
- Object to processing or restrict it, email us.
Email hello@phonelistcleaner.com from the email on file to exercise any of these rights.
8. Security
We use HTTPS everywhere, hash all secrets (passwords with Lucia, API keys + webhook secrets with SHA-256), and follow the principle of least privilege internally. No security is perfect, if you suspect a vulnerability, email us at the address above.
9. International transfers
We may process data in countries other than yours. By using the Service you consent to those transfers, including the United States and the United Kingdom where our infrastructure is hosted.
10. Changes
We may update this notice with reasonable notice. Material changes get an email.