Privacy Policy

Effective January 31, 2025

1. What We Collect

When you use HTML Pub we may collect:

  • Account information — your email address and name when you sign in with Google OAuth
  • Usage data — pages you create, page views, and basic analytics
  • Cookies — session cookies for authentication and a cookie to identify anonymous (shadow) accounts

2. Shadow Users

If you publish a page without signing in, we create a cookie-based anonymous account (“shadow user”) so you can manage your pages. No personal information is collected for shadow users. If you later sign in, your shadow account is linked to your authenticated account.

3. How We Use Your Data

We use collected data to:

  • Authenticate you and maintain your session
  • Operate the service and serve your published pages
  • Enforce usage limits based on your plan
  • Send transactional emails (account confirmations, etc.)

We do not sell your personal data. We do not use your data for advertising.

4. Third-Party Services

HTML Pub integrates with the following third parties:

  • Google OAuth — for sign-in authentication
  • Stripe — for payment processing on paid plans

Each third-party service has its own privacy policy governing how they handle your data.

5. Data Storage

Your HTML content is stored on our servers and served publicly at the URL assigned to each page. Content you publish is accessible to anyone with the link. We do not encrypt published page content since it is intended to be public.

6. Your Rights

You can:

  • Delete individual pages from your dashboard at any time
  • Request deletion of your account and all associated data
  • Export your page content at any time

To request account deletion or data export, contact us at [email protected].

7. International Data Transfers

Our servers are located in the United States. If you access HTML Pub from outside the US, your data will be transferred to and processed in the US. By using the service, you consent to this transfer. Where required by law, we rely on standard contractual clauses or other approved mechanisms to safeguard international transfers.

8. Data Retention

We retain your account data and published content for as long as your account is active. If you delete your account, we will remove your personal data and published pages within 30 days. Some data may be retained longer where required by law or for legitimate business purposes (e.g. payment records for tax compliance).

9. GDPR Rights (EEA Users)

If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):

  • Legal basis for processing — we process your data based on contractual necessity (to provide the service you signed up for), legitimate interest (to operate and improve the service), and consent (for optional cookies and marketing, where applicable)
  • Right of access — you can request a copy of the personal data we hold about you
  • Right to rectification — you can ask us to correct inaccurate personal data
  • Right to erasure — you can request deletion of your personal data
  • Right to restrict processing — you can ask us to limit how we use your data
  • Right to data portability — you can request your data in a structured, machine-readable format
  • Right to object — you can object to processing based on legitimate interest
  • Right to lodge a complaint — you have the right to file a complaint with your local data protection supervisory authority

To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.

10. Changes to This Policy

We may update this privacy policy at any time. Continued use of HTML Pub after changes constitutes acceptance of the revised policy. We encourage you to review this page periodically.

Contact

Questions about your privacy? Reach us at [email protected].