Privacy Policy
Last updated: March 21, 2026
1. Introduction
Legacy Odyssey, operated by DOR Industries ("we," "us," or "our"), is committed to protecting your privacy and the privacy of your family. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our digital baby book and family photo album platform ("the Service").
We understand that the content you share with us is deeply personal — photos of your children, family stories, and cherished memories. We take this responsibility seriously.
2. Information We Collect
2.1 Account Information
When you create an account, we collect:
- Email address
- Password (stored securely using industry-standard hashing)
- Display name (optional)
2.2 Book Content
When you use the Service, you may provide:
- Photos and images
- Text content (stories, letters, recipes, milestones)
- Child information (name, birth date, birth details)
- Family member information (names, relationships)
2.3 Payment Information
Payment processing is handled by Stripe, Inc. We do not store your credit card number, bank account details, or other sensitive payment information on our servers. Stripe's privacy policy governs their handling of your payment data.
2.4 Domain Information
If you purchase a custom domain, we collect the domain name you choose. Domain registration is handled by our registrar partner, subject to their privacy policies.
2.5 Technical Information
We automatically collect:
- IP address
- Browser type and version
- Device type
- Pages visited and actions taken within the Service
- Date and time of access
3. How We Use Your Information
We use your information to:
- Provide the Service: Store and display your book content, manage your account, and host your website
- Process payments: Manage your subscription and domain purchases
- Communicate with you: Send account-related emails (welcome, password reset, billing notifications)
- Improve the Service: Understand how the Service is used and identify areas for improvement
- Provide support: Respond to your questions and help resolve issues
4. How We Protect Your Information
We implement appropriate technical and organizational measures to protect your data:
- Encryption: All data is transmitted over HTTPS/TLS encryption
- Secure storage: Data is stored in Supabase, which provides enterprise-grade security, encryption at rest, and regular backups
- Access controls: Only authorized personnel can access your data, and only when necessary for providing support
- Password protection: Published books are password-protected, ensuring only people you choose can view your content
- Authentication: Account access is secured with JWT tokens and encrypted passwords
5. Information Sharing
We do not sell, rent, or trade your personal information. We share information only in the following limited circumstances:
- Service providers: We use third-party services (Stripe for payments, Supabase for data storage, Resend for email, Spaceship for domains, Railway for hosting) that process data on our behalf. These providers are bound by their own privacy policies and data processing agreements.
- Legal requirements: We may disclose information if required by law, court order, or governmental regulation.
- Protection of rights: We may disclose information to protect our rights, property, or safety, or the rights, property, or safety of others.
6. Your Book Visitors
When someone visits your published book (using the password you shared), we collect minimal technical information (IP address, browser type) for security and performance purposes. We do not track visitors across websites or use their information for advertising.
7. Data Retention
We retain your data for as long as your account is active. If you cancel your subscription:
- Your data is retained for 30 days after cancellation to allow you to reactivate or export your content
- After 30 days, your data may be permanently deleted
- You may request immediate deletion by contacting us
8. Your Rights
You have the right to:
- Access: Request a copy of all personal data we hold about you
- Correction: Update or correct your personal information through the app or by contacting us
- Deletion: Request that we delete your account and all associated data
- Export: Request an export of your data in a standard format
- Objection: Object to the processing of your data for certain purposes
To exercise any of these rights, contact us at help@legacyodyssey.com.
9. Children's Privacy
The Service is designed for parents and families to create memory books. While books may contain information about children, only the parent or legal guardian account holder can create and manage content. We do not knowingly collect personal information directly from children under 13. The account holder (parent/guardian) is responsible for the content they upload about their children.
10. Cookies
We use cookies for:
- Authentication: To keep you logged into your admin account
- Book access: To remember that a visitor has entered the correct book password (so they don't have to re-enter it on each page load)
We do not use advertising cookies, tracking cookies, or third-party analytics cookies.
11. Third-Party Services
Our Service integrates with the following third-party services:
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email. Your continued use of the Service after changes take effect constitutes acceptance of the updated policy.
13. Contact Us
If you have questions or concerns about this Privacy Policy or how we handle your data, please contact us:
DOR Industries
Email: help@legacyodyssey.com