← Back to Changelore

Privacy Policy

Last updated: June 17, 2026

This Privacy Policy explains how Oleksandr Zavhorodnii, a sole proprietor (jednoosobowa działalność gospodarcza) registered in Poland, NIP 6772479419 ("we", "us"), the data controller, collects, uses, and protects information when you use Changelore (the "Service"). For any privacy request, contact us at privacy@changelore.app.

1. Information we collect

  • Account data — name and email, managed through our authentication provider (Clerk), used to create and secure your account.
  • Content data — the projects, changelog entries, uploaded images, and settings you create.
  • Subscriber data — email addresses your end users provide to follow your changelogs.
  • Usage and analytics — aggregate, privacy-preserving page-view metrics for public pages (we use a day-coarse, salted hash and do not store visitor PII).
  • Billing data — subscription status, handled by our payments provider; we do not store full card details.

2. How we use information

To provide and operate the Service, authenticate users, send transactional and subscriber notification emails, process payments, prevent abuse, and improve the product.

3. Service providers

We share data only with processors needed to run the Service:

  • Clerk — authentication and billing.
  • Resend — transactional and notification email delivery.
  • Neon — managed database hosting.
  • Railway — application hosting.
  • Cloudflare — content delivery and object storage for uploads.

We do not sell your personal data.

4. Cookies and local storage

We set no cookies of our own, and we use no advertising, tracking, or third-party analytics cookies. Our page-view analytics are cookieless: they are derived from a salted, non-reversible daily hash rather than any identifier stored on your device.

What is stored on your device is limited to what the Service cannot work without:

  • Authentication cookies (Clerk) — set only on pages that can sign you in: our app, sign-in and sign-up. They are not set on our marketing pages, and not on a customer's hosted changelog page.
  • Local storage — your light/dark theme preference, and, for a password-protected changelog, the access token that keeps you signed in to that page.

These are strictly necessary, so we do not ask for consent to set them. A changelog author may embed third-party video (for example YouTube or Vimeo) in an entry; where that happens, the embed is loaded from that provider and is subject to the provider's own cookie practices.

5. Data retention

We retain data for as long as your account is active or as needed to provide the Service. You can delete projects and your account; deletion removes associated content, subject to backups that age out on a rolling basis and to legal retention requirements.

6. Your rights

Depending on your location (e.g. under GDPR/RODO or CCPA), you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. To exercise these rights, contact us at privacy@changelore.app. If you are in the EU/EEA, you also have the right to lodge a complaint with your supervisory authority — in Poland, the President of the Personal Data Protection Office (Prezes Urzędu Ochrony Danych Osobowych, PUODO).

7. Security

We use industry-standard measures to protect data in transit and at rest. No method of transmission or storage is completely secure, but we work to protect your information.

8. Changes

We may update this policy; material changes will be communicated via the Service or email.

9. Contact

Privacy questions? Email privacy@changelore.app.