Privacy Policy
Last updated: [date]
Placeholder. This page exists so the consent link resolves and the structure is in place. The binding legal text must be drafted and approved by Timeless's legal/DPO team before launch - it should not be published as-is.
1. Who we are
[Controller name, legal entity, address, and contact details of the data controller and, where applicable, the Data Protection Officer.]
2. What data we collect
When you register for early access, we collect:
[e.g. full name, email address, the marketing-consent record and timestamp, and technical/attribution data such as referral source and campaign parameters (UTM).]
3. Why we use it and the legal basis
[Purpose: to contact you about early access and the product launch. Legal basis under GDPR: consent (Art. 6(1)(a)). Describe each purpose and its corresponding basis.]
4. How long we keep it
[Retention period for the early-access list and the criteria used to determine it.]
5. Who we share it with
[Processors and tools used, e.g. CRM / email platform (such as Braze), hosting, analytics; any international transfers and safeguards.]
6. Your rights
[Rights to access, rectification, erasure, restriction, portability, objection, and to withdraw consent at any time; how to exercise them; right to lodge a complaint with a supervisory authority.]
7. Contact
[Privacy contact email / postal address.]