Legal
Privacy Policy
Last updated: May 12, 2026
1. Controller
The controller for Serendity user-account data is REQUIRED_COMPANY_LEGAL_NAME, REQUIRED_COMPANY_ADDRESS, REQUIRED_MERSIS_OR_TAX_INFO_IF_APPLICABLE.
2. Information we collect
We collect account details such as full name, email address, password hash, session and CSRF tokens, login metadata, saved favorites, 7-day search history summaries and saved results, limited service-usage and abuse-prevention records, feedback messages, and billing reference data needed to manage entitlements and customer support.
3. Search and recommendation data
Search requests are processed to return recommendations. If you are logged in, we retain your recent search inputs and saved result summaries for up to 7 days so you can revisit them without spending more quota. Viewing saved history does not trigger a new provider call or consume search quota.
4. Payments
Paid transactions are handled by Paddle as merchant of record. Paddle receives the billing and payment data needed to process purchases, taxes, invoices, refunds, subscriptions, and chargebacks. Serendity does not store raw card numbers, expiry dates, or CVC data.
5. Feedback
Authenticated users can submit feedback from the in-app widget. Feedback messages and the page route they were sent from are stored for support and product improvement, retained for up to 90 days, and visible only to admin users who review support issues.
6. Why we process personal data
We process personal data to create and secure accounts, provide the service, enforce usage limits, operate subscriptions, answer support requests, prevent abuse, maintain records required for legal or operational purposes, and improve reliability.
7. Legal bases
Depending on context, processing is based on performance of a contract, legitimate interests in operating and securing the service, compliance with legal obligations, and where required, your consent.
8. Sharing
We may share limited data with infrastructure, hosting, analytics-free operational vendors, mapping providers, Paddle, and professional advisers where needed to operate the service, process payments, comply with law, or protect our rights.
9. Retention
We keep data only for as long as needed for account operation, fraud prevention, support, billing recordkeeping, and legal compliance. Search history is retained for up to 7 days. Feedback is retained for up to 90 days. When an account is deleted, search history and user-linked feedback are deleted, while minimal records that must remain for tax, accounting, dispute, or security purposes may be retained in minimized form.
10. International processing
Service providers may process data in countries other than the user's country of residence. Where required, we rely on contractual, organizational, or legal safeguards appropriate to the transfer.
11. Your rights
Subject to applicable law, you may request access, correction, deletion, restriction, objection, or portability of your personal data. You may also delete your account from the product when that option is available, subject to any active billing or legal retention constraints.
12. Contact
Privacy requests: REQUIRED_PRIVACY_EMAIL. General support: REQUIRED_SUPPORT_EMAIL.
Related pages: Terms and Conditions and Refund Policy.