← Back to Home

Privacy Policy

Last Updated: January 9, 2025

1. Introduction

AmoraRSVP (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you use our wedding invitation and RSVP management platform at amorarsvp.com (the “Service”).

By using our Service, you consent to the data practices described in this Privacy Policy. If you do not agree with our policies and practices, please do not use the Service.

This Privacy Policy applies to information we collect through the Service and in email, text, and other electronic communications sent through or in connection with the Service.

2. Information We Collect

2.1 Information You Provide to Us

We collect information that you voluntarily provide when using our Service, including:

  • Account Information: When you create an account using Google Sign-In, we collect your name, email address, and Google profile information.
  • Guest Information: Names, email addresses, phone numbers, and other contact details of your wedding guests that you add to your invitation list.
  • RSVP Data: Guest responses, attendance confirmations, meal preferences, dietary restrictions, and plus-one information.
  • Invitation Content: Wedding details, invitation text, images, dates, locations, and other customization content you create.
  • Payment Information: Payment data is processed through Paddle, our payment processor. We do not store complete credit card information.
  • Communications: When you contact us for support or feedback, we collect the content of your messages.

2.2 Information Collected Automatically

When you access our Service, we automatically collect certain information, including:

  • Usage Data: Information about how you use the Service, including pages viewed, features used, and actions taken.
  • Device Information: Device type, operating system, browser type, IP address, and unique device identifiers.
  • Log Data: Server logs, including access times, page requests, and error logs.
  • Analytics Data: We use Google Analytics to collect data about website usage and user behavior.

2.3 Cookies and Similar Technologies

We use cookies and similar tracking technologies to track activity on our Service and store certain information. See Section 6 for more details about cookies.

3. How We Use Your Information

We use the information we collect for the following purposes:

  • Service Delivery: To provide, maintain, and improve the Service, including creating and managing invitations, sending invitations via email, SMS, and WhatsApp, and collecting RSVP responses.
  • Account Management: To create and manage your account, authenticate users, and provide customer support.
  • Communication: To send you service-related notifications, updates, security alerts, and support messages.
  • Analytics: To analyze usage patterns, monitor Service performance, and improve user experience.
  • Payment Processing: To process payments and manage billing through our payment processor, Paddle.
  • Legal Compliance: To comply with legal obligations, resolve disputes, and enforce our agreements.
  • Security: To detect, prevent, and address technical issues, fraud, and security threats.

3.1 Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA), our legal basis for collecting and using your personal information includes:

  • Contract Performance: Processing necessary to provide the Service you requested.
  • Consent: You have given clear consent for us to process your personal data for specific purposes.
  • Legitimate Interests: Processing necessary for our legitimate business interests, such as improving our Service.
  • Legal Obligation: Processing necessary to comply with legal requirements.

4. Information Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties. We may share your information in the following circumstances:

4.1 Service Providers

We share information with third-party service providers who perform services on our behalf:

  • Google Cloud Platform: For hosting and data storage
  • SendGrid: For email delivery services
  • Twilio: For SMS and WhatsApp messaging services
  • Paddle: For payment processing
  • Google Analytics: For website analytics

4.2 Legal Requirements

We may disclose your information if required by law or in response to:

  • Legal processes, such as a court order or subpoena
  • Requests from government authorities
  • Protection of our legal rights or property
  • Investigation of potential violations of our Terms of Service
  • Protection of the safety and security of users or the public

4.3 Business Transfers

In the event of a merger, acquisition, reorganization, or sale of assets, your information may be transferred to the acquiring entity. We will notify you of any such change in ownership or control of your personal information.

5. Third-Party Services

5.1 Google OAuth

We use Google OAuth for authentication. When you sign in with Google, you are subject to Google's Privacy Policy and Terms of Service. We receive limited information from Google as authorized by you.

5.2 Payment Processing

All payment transactions are processed by Paddle. We do not store your complete payment card details. Paddle's collection and use of your payment information is governed by their privacy policy.

5.3 Communication Services

We use SendGrid for email delivery and Twilio for SMS/WhatsApp messaging. Guest contact information is shared with these services only for the purpose of delivering invitations as instructed by you.

5.4 Analytics Services

We use Google Analytics to understand how users interact with our Service. Google Analytics collects information such as how often users visit the site, what pages they visit, and what other sites they used prior to coming to our site. For more information about how Google uses data, visit www.google.com/policies/privacy/partners/.

6. Cookies and Tracking Technologies

6.1 What Are Cookies

Cookies are small text files stored on your device when you visit our Service. We use cookies and similar tracking technologies to track activity and store certain information.

6.2 Types of Cookies We Use

  • Essential Cookies: Necessary for the Service to function properly, including authentication and security.
  • Preference Cookies: Remember your preferences and settings.
  • Analytics Cookies: Help us understand how users interact with the Service (e.g., Google Analytics).
  • Session Cookies: Temporary cookies that expire when you close your browser.

6.3 Managing Cookies

You can control and manage cookies through your browser settings. However, disabling cookies may affect the functionality of the Service. Most web browsers allow you to delete cookies, block cookies, or receive a warning before a cookie is stored.

7. Data Security

We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption of data in transit using SSL/TLS protocols
  • Encryption of sensitive data at rest
  • Regular security assessments and updates
  • Access controls and authentication mechanisms
  • Secure cloud infrastructure (Google Cloud Platform)
  • Regular backups and disaster recovery procedures

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security.

8. Data Retention

We retain your personal information for as long as necessary to provide the Service and fulfill the purposes described in this Privacy Policy. Specifically:

  • Account Data: Retained until you delete your account or request deletion.
  • Guest and RSVP Data: Retained as long as your account is active and for a reasonable period after your event date.
  • Transaction Records: Retained for accounting and tax purposes as required by law (typically 7 years).
  • Analytics Data: Retained according to Google Analytics retention policies (typically 26 months).

When personal information is no longer needed, we will securely delete or anonymize it in accordance with our data retention policies and applicable laws.

9. Your Rights and Choices

9.1 Access and Correction

You have the right to access and update your personal information through your account settings. You can also request a copy of your personal information by contacting us.

9.2 Data Portability

You have the right to receive your personal information in a structured, commonly used, and machine-readable format. You can export your guest list and RSVP data through the Service.

9.3 Deletion

You have the right to request deletion of your personal information. You can delete your account at any time, which will result in the deletion of your personal data, subject to legal retention requirements.

9.4 Opt-Out of Communications

You can opt out of receiving marketing communications from us by following the unsubscribe link in our emails or contacting us directly. Note that you cannot opt out of service-related communications.

9.5 Cookie Management

You can manage cookie preferences through your browser settings. You can also opt out of Google Analytics by installing the Google Analytics Opt-out Browser Add-on.

10. GDPR Compliance (European Users)

If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):

10.1 Your GDPR Rights

  • Right to Access: You can request access to your personal data.
  • Right to Rectification: You can request correction of inaccurate personal data.
  • Right to Erasure: You can request deletion of your personal data (right to be forgotten).
  • Right to Restriction: You can request restriction of processing of your personal data.
  • Right to Data Portability: You can receive your personal data in a portable format.
  • Right to Object: You can object to processing of your personal data.
  • Right to Withdraw Consent: You can withdraw consent at any time where processing is based on consent.
  • Right to Lodge a Complaint: You can file a complaint with a supervisory authority.

10.2 Exercising Your Rights

To exercise any of your GDPR rights, please contact us at hello@amorarsvp.com. We will respond to your request within 30 days.

10.3 Data Protection Officer

For questions about data protection or to exercise your rights, you may contact our data protection contact at hello@amorarsvp.com.

11. International Data Transfers

Your information may be transferred to and maintained on servers located outside of your country of residence. These countries may have data protection laws that differ from the laws of your country.

Our hosting infrastructure is provided by Google Cloud Platform, which operates globally. We use appropriate safeguards to ensure that your personal information remains protected in accordance with this Privacy Policy, including:

  • Standard contractual clauses approved by the European Commission
  • Compliance with applicable data protection frameworks
  • Technical and organizational security measures

By using our Service, you consent to the transfer of your information to countries outside of your country of residence, including Israel and the United States.

12. Children's Privacy

Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If you are under 18, do not use the Service or provide any information to us.

If we learn that we have collected personal information from a child under 18 without verification of parental consent, we will delete that information immediately. If you believe we have collected information from a child under 18, please contact us at hello@amorarsvp.com.

Parents or guardians who believe their child has provided personal information to us should contact us immediately to request deletion of such information.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes, we will:

  • Update the “Last Updated” date at the top of this Privacy Policy
  • Notify you by email if the changes are material
  • Display a prominent notice on the Service

Your continued use of the Service after any changes to this Privacy Policy constitutes your acceptance of the revised Privacy Policy.

We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information.

14. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: hello@amorarsvp.com

Website: https://amorarsvp.com

Response Time: We will respond to your inquiry within 30 days

For GDPR-related requests from European users, please include “GDPR Request” in your email subject line.

If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.

Summary of Key Points

  • We collect personal information necessary to provide our wedding invitation and RSVP management service
  • We use your information to deliver the Service, process payments, and improve user experience
  • We share information with service providers (Google, SendGrid, Twilio, Paddle) to operate the Service
  • We implement security measures to protect your data
  • You have rights to access, correct, delete, and export your personal information
  • European users have additional rights under GDPR
  • Our Service is not for individuals under 18 years of age
  • We may transfer data internationally with appropriate safeguards

By using AmoraRSVP, you acknowledge that you have read and understood this Privacy Policy.