← Back to Dashboard

Privacy Policy

Last Updated: November 20, 2024

1. Introduction

This Privacy Policy describes how Life Dashboard ("we", "us", or "our") collects, uses, and protects your personal information when you use our personal tracking and productivity application (the "Service").

We are committed to protecting your privacy and complying with applicable data protection laws, including the Australian Privacy Principles (APPs), the EU General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other relevant privacy legislation worldwide.

2. Data Controller

For the purposes of GDPR and other data protection laws, the data controller is:

Zach Featherstone

For privacy inquiries, please contact: privacy@zachfeatherstone.com.au

3. Information We Collect

3.1 Personal Information

  • Account credentials (username, email, password)
  • Authentication and session data

3.2 Tracking and Activity Data

You voluntarily provide the following types of data when using the Service:

  • Daily habits and discipline tracking (wake time, sleep time, routines)
  • Physical activity and health metrics (training load, pain levels, exercise logs)
  • Nutrition and meal information
  • Mental health and mood tracking
  • Work and productivity logs (deep work hours, priorities)
  • Family time and relationship notes
  • Personal journal entries and reflections
  • Goals and weekly tasks
  • Recipe preferences and meal planning

3.3 Technical Information

  • IP address and device information
  • Browser type and version
  • Access times and dates
  • Pages viewed and navigation patterns
  • Session logs and authentication events

4. How We Use Your Information

We use your personal information for the following purposes:

  • Service Provision: To provide, maintain, and improve the Service functionality
  • Authentication: To verify your identity and secure your account
  • Data Storage: To store and retrieve your tracking data across sessions
  • Notifications: To send reminders and alerts (if enabled)
  • Analytics: To understand usage patterns and improve the Service
  • Security: To protect against unauthorized access and abuse
  • Legal Compliance: To comply with applicable laws and regulations

4.1 Legal Basis for Processing (GDPR)

Our legal bases for processing your personal data include:

  • Consent: You provide explicit consent when creating an account and entering data
  • Contract Performance: Processing necessary to provide the Service you requested
  • Legitimate Interests: To improve and secure our Service
  • Legal Obligation: To comply with applicable laws

5. Data Sharing and Third Parties

5.1 Third-Party Service Providers

We may share your information with the following third-party service providers:

  • MongoDB Atlas: Database hosting and storage (data stored in encrypted databases)
  • Vercel: Web hosting and deployment services
  • Telegram: Notification delivery (if you enable notifications)

These service providers are contractually obligated to protect your data and only use it to provide services to us.

5.2 No Sale of Personal Data

We do not sell, rent, or trade your personal information to third parties for marketing purposes. Under CCPA, we confirm that we have not sold personal information in the preceding 12 months.

6. Data Security

We implement appropriate technical and organizational measures to protect your personal information:

  • Encrypted data transmission using HTTPS/TLS
  • Secure password hashing using industry-standard algorithms
  • Database access controls and authentication
  • Regular security monitoring and logging
  • Secure backup procedures

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security.

7. Data Retention

We retain your personal information for as long as your account is active or as needed to provide you with the Service. You may request deletion of your account and associated data at any time. Upon deletion request, we will remove your data within 30 days, except where we are required to retain certain information for legal or compliance purposes.

8. Your Rights

8.1 GDPR Rights (EU Users)

If you are in the European Economic Area, you have the following rights:

  • Right of Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Receive your data in a structured format
  • Right to Object: Object to processing of your personal data
  • Right to Withdraw Consent: Withdraw consent at any time
  • Right to Lodge a Complaint: File a complaint with your data protection authority

8.2 CCPA Rights (California Users)

If you are a California resident, you have the following rights:

  • Right to Know: Request information about data collection and use
  • Right to Delete: Request deletion of your personal information
  • Right to Opt-Out: Opt-out of the sale of personal information (we do not sell data)
  • Right to Non-Discrimination: Not be discriminated against for exercising your rights

8.3 Australian Privacy Rights (APP)

If you are in Australia, you have the right to:

  • Access your personal information
  • Correct inaccurate information
  • Complain to the Office of the Australian Information Commissioner (OAIC)

8.4 Exercising Your Rights

To exercise any of these rights, please contact us at privacy@zachfeatherstone.com.au. We will respond to your request within 30 days (or as required by applicable law).

9. International Data Transfers

Your data may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that are different from the laws of your country. We ensure appropriate safeguards are in place to protect your personal information in accordance with this Privacy Policy and applicable law.

10. Cookies and Tracking Technologies

We use essential cookies and similar technologies to:

  • Maintain your login session
  • Remember your preferences
  • Secure the Service
  • Monitor system performance

We do not use third-party advertising or tracking cookies.

11. Children's Privacy

The Service is not intended for children under 13 years of age (or 16 in the EU). We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. For material changes, we may provide additional notice (such as via email or a prominent notice on our Service).

13. Data Breach Notification

In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and relevant authorities within 72 hours as required by GDPR and other applicable laws.

14. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us:

Email: privacy@zachfeatherstone.com.au

Website: https://zachfeatherstone.com.au

For EU users: You have the right to lodge a complaint with your local supervisory authority.

15. Supervisory Authorities

If you have concerns about how we handle your personal data, you may contact:

  • EU: Your local Data Protection Authority
  • UK: Information Commissioner's Office (ICO)
  • Australia: Office of the Australian Information Commissioner (OAIC)
  • California: California Attorney General's Office