Privacy Policy
Last Updated: December 4, 2025
Gift List Maker ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our gift list coordination service.
Information We Collect
Information You Provide
- Account Information: Email address, password (encrypted), and optional profile details
- List Information: Gift list names, occasions, event dates, descriptions, and budget information
- Gift Items: Item names, descriptions, URLs, prices, notes, and images (linked from external sources)
- Recipient Profiles: Names, relationships, preferences, sizes, interests, and gift history you choose to track
- Insights & Observations: Notes and observations you add about gift recipients
- Claims & Contributions: Your name, email, and contribution amounts when you claim or contribute to gifts
- Comments & Activity: Comments, votes, and interactions on gift items
Automatically Collected Information
- Usage Data: Pages viewed, features used, time spent, and interaction patterns
- Device Information: Browser type, operating system, device identifiers
- Log Data: IP addresses, access times, error logs, and performance metrics
How We Use Your Information
We use the information we collect for the following purposes:
- Provide Services: Enable gift list creation, sharing, collaboration, and coordination
- Facilitate Collaboration: Allow list owners, contributors, and recipients to interact appropriately
- Maintain Privacy Controls: Ensure surprise lists remain hidden from recipients until revealed
- Send Notifications: Email you about list updates, claims, and important events (if enabled)
- Improve Service: Analyze usage patterns to enhance features and user experience
- Prevent Abuse: Detect and prevent fraudulent activity, spam, and security threats
- Comply with Legal Obligations: Respond to legal requests and enforce our terms
What Recipients See vs. Contributors
Gift List Maker implements role-based access controls to maintain appropriate privacy:
Recipients Can See:
- Gift items on their list (not marked as "candidate")
- Item names, descriptions, images, and URLs
- Public comments on items
- After Reveal Date: Who purchased/claimed each item (attribution)
Recipients Cannot See:
- Who claimed items (before reveal)
- Contributor emails or contact information
- Gift prices or budget information
- Surprise lists (until revealed by the owner)
- Insights and observations added about them
- Candidate/suggested items (pending approval)
Contributors & Co-Planners Can See:
- All items on the list (including candidates)
- Who has claimed each item (to avoid duplicates)
- Gift prices and budget tracking
- Other contributors' names and emails (for coordination)
- Comments and activity on items
How We Share Your Information
We share information in the following limited circumstances:
- With List Participants: As described above, based on roles (owner, contributor, recipient)
- Service Providers: Trusted third parties who help us operate (hosting, email, analytics) under strict confidentiality
- Legal Requirements: If required by law or to protect rights, property, or safety
- With Your Consent: Any other sharing will require your explicit permission
We do not sell your personal information to third parties.
Data Retention
- Active Lists: We retain list and item data as long as the list remains active
- Deleted Lists: When you delete a list, it is permanently removed within 30 days
- Account Deletion: When you delete your account, all your personal data is deleted within 30 days
- Backups: Backup copies may persist for up to 90 days for disaster recovery purposes
- Legal Compliance: Some data may be retained longer if required by law or for legitimate business purposes (e.g., fraud prevention)
Your Privacy Rights
You have the following rights regarding your personal information:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your account and personal data
- Export: Download your data in a portable format
- Opt-Out: Unsubscribe from marketing emails (service emails may still be sent)
- Object: Object to certain data processing activities
To exercise these rights, please contact us at privacy@giftlistmaker.com.
Data Security
We implement industry-standard security measures to protect your information:
- All data transmitted over HTTPS encryption
- Passwords hashed using bcrypt or similar algorithms
- Database-level Row-Level Security (RLS) policies
- Regular security audits and updates
- Access controls limiting who can view your data
However, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.
Cookies & Tracking
We use cookies and similar technologies for:
- Authentication: Keep you signed in securely
- Preferences: Remember your settings (e.g., dark mode)
- Analytics: Understand how you use the service (anonymous usage data)
You can control cookies through your browser settings, but disabling them may affect functionality.
Children's Privacy
Gift List Maker is not intended for children under 13. We do not knowingly collect personal information from children. If you believe we have inadvertently collected data from a child, please contact us immediately.
International Users
Gift List Maker is hosted in the United States. If you access our service from outside the U.S., your information may be transferred to, stored, and processed in the U.S. By using our service, you consent to this transfer.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or a prominent notice on the service. Your continued use after changes constitutes acceptance of the updated policy.
Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us:
- Email: privacy@giftlistmaker.com
- GitHub Issues: Report a privacy concern