Privacy Policy

Last Updated: January 25, 2026 | Version: 1.2

Your privacy is our highest priority, especially given the sensitive nature of the legacy you entrust to us. This policy explains how LastWordsFromMe handles your information.

1. Information We Collect

Information You Provide

Information Collected Automatically

Information We Do NOT Collect

2. How We Use Your Information

Service Delivery

Communications

Recipients: Recipient data is used strictly for message delivery and will never be used for marketing purposes.

We Will NEVER

3. Security and Encryption

Zero-Knowledge Philosophy

Transit Security

Your Role in Security

4. Data Retention and Deletion

Data Type
Retention Period
Account & profile data
1 year after subscription ends
Activity logs & history
90 days
Messages (before delivery)
Until delivered or account deleted
Messages (after delivery)
Cannot be retrieved from recipients

Why We Keep Data After You Leave: To allow you to reactivate your account, comply with legal obligations, and resolve disputes.

Requesting Immediate Deletion: You may request immediate deletion of all data at any time. Contact us at akaidencomms@gmail.com. Once deleted, messages cannot be recovered. Note that some data may be retained as required by law.

5. Third-Party Services

We use trusted third-party services to operate:

Supabase: Database & authentication

Resend: Email delivery

Stripe: Payment processing

Google Play: App distribution & payments (Android)

Apple App Store: App distribution & payments (iOS)

These services have their own privacy policies. We only share the minimum information necessary for them to provide their services.

Third-Party Disclaimer: We are not responsible for the privacy practices, data handling, or actions of any third-party services. Any claims or disputes regarding third-party services should be directed to those services.

6. Your Rights (Singapore PDPA & GDPR)

Under the Singapore Personal Data Protection Act (PDPA) and international laws like GDPR, you have the right to:

How to Exercise Your Rights: Email us at akaidencomms@gmail.com with your request. We will respond within 30 days.

Additional Rights for EU/UK Users: If you are in the European Union or United Kingdom, you have additional rights under GDPR, including the right to lodge a complaint with a supervisory authority.

7. Children's Privacy

We do not knowingly collect data from children under 13. If you believe a child under 13 has provided us with personal information, please contact us and we will promptly delete it.

If you are under 18, we recommend parental guidance. Parents can contact us to manage their child's account.

8. Cookies and Tracking

What We Use

What We Don't Use

Your Choices: You can disable cookies in your browser settings. Note that this may affect service functionality.

9. International Data Transfers

Our servers are located in the United States. If you are accessing our service from another country, your data will be transferred to and processed in the United States.

We ensure appropriate safeguards are in place for any international data transfers, and our partners provide comparable levels of data protection.

10. Data Breach Notification

In the unlikely event of a data breach that poses a risk to you, we will notify you and the relevant authorities (e.g., PDPC Singapore) within the timeframes required by law (typically 72 hours).

11. Changes to This Policy

We may update this policy from time to time. When we make significant changes:

Continued use of our service after changes means you accept the updated policy.

12. Contact Our Data Protection Officer

For any privacy requests or questions, please contact our designated Data Protection Officer (DPO):

Attn: Data Protection Officer (Kaiden)
Response Time: We acknowledge all requests within 2 working days and provide full resolutions within 30 days as required by law.

13. Summary

In Plain Language:

Your trust is important to us. If you have any questions about this policy, please contact us.