Privacy Policy

Last updated: August 14, 2025

1. Information We Collect

Personal Information

When you create an account with OneActionStep, we collect:

  • Email address for account creation and communication
  • Password (encrypted and never stored in plain text)
  • Goal information (titles, descriptions, deadlines, commitment amounts)
  • Goal completion status and timestamps

Credit Purchase Information

When you voluntarily purchase credits, payment information is handled exclusively by Stripe, our payment processor. We never store your credit card numbers, CVV codes, or other sensitive payment data on our servers. We only store:

  • Stripe customer ID (for linking your account to payment methods)
  • Last 4 digits of payment methods (for display purposes)
  • Payment method types (Visa, Mastercard, etc.)
  • Transaction records for credit purchases

Usage Information

We automatically collect certain information about your use of our service:

  • Device information (browser type, operating system)
  • Usage patterns (pages visited, features used)
  • Performance data (load times, errors)
  • IP address and general location information

2. How We Use Your Information

We use your information to:

  • Provide our service: Create goals, track progress, manage credits
  • Send notifications: Deadline reminders, goal completion confirmations
  • Process credit purchases: Handle voluntary credit purchases through Stripe
  • Improve our service: Analyze usage patterns to enhance features
  • Customer support: Respond to your questions and resolve issues
  • Legal compliance: Meet regulatory requirements and prevent fraud

3. Information Sharing and Disclosure

Service Providers

We share information with trusted third-party service providers who help us operate our service:

  • Stripe: Credit purchase processing and secure storage of payment methods
  • Supabase: Database hosting and user authentication
  • Vercel: Web hosting and content delivery
  • Email service providers: For sending notifications and communications

Legal Requirements

We may disclose your information if required by law, court order, or government request, or to protect our rights, property, or safety.

Business Transfers

If OneActionStep is acquired or merged with another company, your information may be transferred as part of that transaction.

4. Data Security

We implement industry-standard security measures to protect your information:

  • All data transmitted over HTTPS encryption
  • Passwords are hashed and salted before storage
  • Regular security audits and updates
  • Limited access to personal data by authorized personnel only
  • Secure hosting with Supabase and Vercel

While we strive to protect your information, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.

5. Your Rights and Choices

You have the following rights regarding your personal information:

  • Access: Request a copy of the personal information we have about you
  • Correction: Update or correct inaccurate information
  • Deletion: Request deletion of your account and personal information
  • Portability: Request a copy of your data in a portable format
  • Opt-out: Unsubscribe from marketing communications

To exercise these rights, contact us at admin@oneactionstep.com. We will respond within 30 days.

6. Data Retention

We retain your information for as long as your account is active or as needed to provide our services. We may retain certain information longer for legal, regulatory, or legitimate business purposes.

When you delete your account, we will delete or anonymize your personal information within 30 days, except where we are required to retain it by law.

7. Cookies and Tracking

We use cookies and similar technologies to improve your experience on our service. These include:

  • Essential cookies: Required for the service to function properly
  • Analytics cookies: Help us understand how you use our service
  • Preference cookies: Remember your settings and preferences

You can control cookies through your browser settings, but disabling essential cookies may affect service functionality.

8. International Data Transfers

Your information may be processed and stored in countries other than your own. We ensure appropriate safeguards are in place for international transfers as required by applicable privacy laws.

9. Children's Privacy

OneActionStep is not intended for use by children under 18. We do not knowingly collect personal information from children under 18. If we learn that we have collected such information, we will delete it promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. Your continued use of our service after such changes constitutes acceptance of the new policy.

11. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us at:

Email: admin@oneactionstep.com
Subject: Privacy Policy Inquiry