Privacy Policy
Last updated: January 2025
1. Introduction
TheNextDraft.ai ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
Please read this Privacy Policy carefully. By using the Service, you consent to the data practices described in this policy.
2. Information We Collect
2.1 Information You Provide
- Account Information: Name, email address, and password when you create an account
- Payment Information: Billing address and payment details (processed securely by Stripe)
- User Content: Manuscripts and documents you upload for analysis
- Communications: Information you provide when contacting support
2.2 Information Collected Automatically
- Usage Data: Pages visited, features used, and actions taken within the Service
- Device Information: Browser type, operating system, and device identifiers
- Log Data: IP address, access times, and referring URLs
- Cookies: Session cookies for authentication and preferences
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Process your transactions and manage your subscription
- Analyze your manuscripts and provide feedback (the core service)
- Send you service-related communications
- Respond to your inquiries and provide customer support
- Monitor and analyze usage patterns to improve user experience
- Detect, prevent, and address technical issues and security threats
- Comply with legal obligations
4. How We Protect Your Manuscripts
We understand that your creative work is sensitive. We implement specific protections for your manuscripts:
- No AI Training: Your manuscripts are never used to train AI models
- Isolated Processing: Your content is processed in isolated environments
- Encryption: All manuscripts are encrypted at rest (AES-256) and in transit (TLS 1.3)
- No Third-Party AI: We use our own infrastructure; your data is not sent to OpenAI, Google, or other third-party AI services
- Deletion Rights: You can permanently delete your manuscripts at any time
5. Data Sharing and Disclosure
We do not sell, trade, or rent your personal information. We may share your information only in the following circumstances:
- Service Providers: With trusted third parties who assist in operating our Service (e.g., Stripe for payments, AWS for infrastructure), bound by confidentiality obligations
- Legal Requirements: When required by law, court order, or governmental authority
- Protection of Rights: To protect our rights, privacy, safety, or property, or that of our users or the public
- Business Transfers: In connection with a merger, acquisition, or sale of assets, with notice to you
6. Third-Party Services
We use the following third-party services:
- Stripe: For payment processing. Stripe's privacy policy applies to payment data.
- Amazon Web Services (AWS): For cloud infrastructure and storage
- Resend: For transactional emails
These providers have their own privacy policies governing their use of your information.
7. Data Retention
We retain your information for as long as your account is active or as needed to provide the Service. Specifically:
- Account Data: Retained until you delete your account
- Manuscripts: Retained until you delete them or your account
- Usage Logs: Retained for up to 12 months for security and analytics
- Payment Records: Retained as required by law for tax and accounting purposes
When you delete your account, we will delete or anonymize your personal information within 30 days, except where retention is required by law.
8. Your Rights and Choices
Depending on your location, you may have the following rights:
- Access: Request a copy of your personal information
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your personal information
- Portability: Request a portable copy of your data
- Objection: Object to certain processing of your information
- Withdraw Consent: Withdraw consent where processing is based on consent
To exercise these rights, contact us at privacy@thenextdraft.ai.
9. Cookies and Tracking
We use essential cookies for:
- Authentication and session management
- Security and fraud prevention
- Remembering your preferences
You can configure your browser to refuse cookies, but this may limit your ability to use certain features of the Service.
10. Security
We implement industry-standard security measures to protect your information, including:
- Encryption of data at rest and in transit
- Regular security assessments and audits
- Access controls and authentication requirements
- Secure development practices
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
11. Children's Privacy
The Service is not intended for children under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
12. International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.
13. California Privacy Rights
California residents have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected and how it is used
- Right to delete personal information
- Right to opt-out of the sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising privacy rights
14. European Privacy Rights
If you are in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR). Our legal bases for processing include:
- Performance of our contract with you
- Our legitimate business interests
- Compliance with legal obligations
- Your consent, where applicable
15. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last updated" date. Your continued use of the Service after changes constitutes acceptance of the updated policy.
16. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us at: