Privacy Policy

Last Updated: January 17, 2025

Introduction

Stilline LLC ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use the Stilline daily coaching application.

Information We Collect

Information You Provide

When you use Stilline, we collect information that you provide directly to us:

  • Account Information: Email address, account creation date
  • Enneagram Profile: Your Enneagram type, wing, and instinct variant from our personality assessment
  • Daily Check-ins: Your responses to daily prompts, including text input and context tags
  • Professional Context: Optional information about your role, industry, and work challenges
  • Feedback: Comments, bug reports, and feature requests you submit

Automatically Collected Information

We automatically collect certain information when you use our service:

  • Usage Data: Login times, feature usage patterns, session duration
  • Device Information: Browser type, operating system, IP address
  • AI-Generated Content: Coach cards and insights generated in response to your check-ins

How We Use Your Information

We use the information we collect to:

  1. Provide Personalized Coaching: Tailor daily prompts and coaching insights to your Enneagram type and professional context
  2. Generate AI Insights: Create personalized coach cards using AI models (OpenAI GPT-4o-mini)
  3. Improve Our Service: Analyze usage patterns to enhance features and user experience
  4. Customer Support: Respond to your questions, issues, and feedback
  5. Security: Detect and prevent fraud, abuse, and security incidents

Data Retention

We practice data minimization and limit how long we store your personal information:

  • Check-in Text & Coach Cards: Stored for 90 days from creation, then automatically deleted
  • Metadata: We keep aggregated statistics (counts, dates, Enneagram types) indefinitely for service improvement
  • Account Information: Retained while your account is active
  • Feedback: Stored indefinitely unless you request deletion

After the 90-day retention period, the full text of your check-ins and coach cards is permanently deleted from our systems. We keep only anonymized metadata for analytics purposes.

Who Has Access to Your Data

Your data access is strictly limited:

You (Account Owner)

  • Full access to all your data
  • Can export all data at any time
  • Can delete your account and all associated data

Administrators

  • Limited access for customer support and troubleshooting
  • Can view your data only when assisting you or investigating technical issues
  • All admin access is logged with timestamps for accountability

Third-Party Services

We use the following third-party services that may process your data:

  1. Supabase (Database & Authentication)
    • Stores all your data securely
    • Data encrypted in transit and at rest
    • Privacy Policy
  2. OpenAI (AI Coach Generation)
    • Processes your check-in text to generate coaching insights
    • OpenAI does not use your data to train models
    • Privacy Policy
  3. Stripe (Payment Processing)
    • Processes subscription payments securely
    • We do not store your credit card information
    • Privacy Policy

Your Privacy Rights

Right to Access

You can view all your data within the application.

Right to Deletion

Delete your account and all associated data at any time via Settings → Data & Privacy → Delete Account. This action is permanent and cannot be undone.

Right to Rectification

You can update your profile information, professional context, and Enneagram type at any time through your account settings.

Right to Object

You can object to data processing by deleting your account or contacting us directly.

Data Security

We implement industry-standard security measures to protect your data:

  • Encryption in Transit: All data transmitted to/from Stilline is encrypted using TLS/HTTPS
  • Encryption at Rest: All data stored in our database is encrypted
  • Authentication: Secure authentication via Supabase Auth
  • Admin Access Controls: Admin access is restricted to authorized personnel only
  • Audit Logging: All admin actions are logged with timestamps

Children's Privacy

Stilline is not intended for users under the age of 16. We do not knowingly collect personal information from children under 16. If you believe we have collected information from a child under 16, please contact us immediately.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by updating the "Last Updated" date and sending an email notification for significant changes.

Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:

Stilline LLC
Email: support@stilline.com

We will respond to all requests within 30 days.

Summary

  • What we collect: Email, Enneagram profile, check-in responses, AI-generated insights
  • Why: To provide personalized daily coaching tailored to your personality
  • How long: 90 days for sensitive text content, indefinitely for anonymized statistics
  • Who sees it: You, and admins only for support (logged and audited)
  • Your rights: Access, export, delete, and control your data anytime
  • Third parties: Supabase (storage), OpenAI (AI generation), Stripe (payments) - no data selling, no advertising

We believe in transparency, user control, and privacy by design. Your data is yours, and we're committed to protecting it.