Privacy Policy
Last updated: March 2026
Planet Roadmap (“we,” “us,” or “our”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and share information when you use our website and service at planetroadmap.com (“the Service”).
1. Information We Collect
Account information. When you create an account, we collect your name, email address, and organization name. If you sign up using a third-party provider (such as Google or GitHub), we receive your name and email address from that provider.
Payment information. When you subscribe to a paid plan, payment is processed by Stripe. We do not store your credit card number or bank account details on our servers. We receive from Stripe a tokenized reference to your payment method, along with your billing name, email, and the last four digits of your card for display purposes.
Usage data. We automatically collect information about how you use the Service, including pages visited, features used, actions taken (such as creating projects, submitting feedback, or voting), timestamps, browser type, operating system, and IP address. This data is collected through server-side logging and is used to improve the Service and diagnose issues.
Portal visitor data. When end users visit a public feedback portal hosted on the Service, we collect their email address (if they choose to sign in to vote or submit feedback), IP address, browser type, and the pages they view. Portal visitors who browse without signing in are not individually tracked or identified.
Content you provide. This includes feature requests, comments, votes, project descriptions, roadmap items, OKRs, and any other content you submit through the Service.
2. How We Use Information
We use the information we collect to:
- Provide, operate, and maintain the Service.
- Process payments and manage your subscription.
- Send transactional emails, such as account verification, password resets, and notifications about activity in your projects and portals.
- Improve the Service, including analyzing usage patterns to inform product development and fix bugs.
- Provide AI-powered features, such as duplicate detection and feedback consolidation. Your content may be processed by our AI systems to deliver these features. We do not use your content to train general-purpose AI models.
- Enforce our Terms of Service and protect against abuse, fraud, and security threats.
- Respond to your support requests and communicate with you about your account.
3. Data Storage
The Service is hosted on Cloudflare infrastructure, including Cloudflare Pages, Cloudflare D1 (database), and Cloudflare R2 (object storage). Your data is stored in data centers operated by Cloudflare. Cloudflare provides encryption at rest and in transit.
We implement reasonable technical and organizational measures to protect your data against unauthorized access, alteration, disclosure, or destruction. However, no method of transmission over the Internet or electronic storage is 100% secure, and we cannot guarantee absolute security.
4. Third-Party Services
We share information with the following third-party service providers:
- Stripe — Payment processing. When you subscribe to a paid plan, your payment information is sent directly to Stripe and is subject to Stripe's Privacy Policy.
- PushMail — Transactional email delivery. We share your email address and name with PushMail to send account notifications, password resets, and other transactional messages.
- Cloudflare — Hosting, CDN, DNS, database, and object storage. All Service infrastructure runs on Cloudflare.
We do not sell your personal information to third parties. We do not share your data with third parties for their own marketing purposes.
5. Data Retention
We retain your account data and content for as long as your account is active. If you cancel your paid subscription, your data remains accessible on the free tier unless you explicitly delete your account.
When you delete your account, we permanently delete your personal information and content within 30 days. Some data may be retained in encrypted backups for up to 90 days after deletion, after which it is permanently purged.
Anonymized, aggregated data that cannot be used to identify you may be retained indefinitely for analytics and service improvement purposes.
6. Your Rights
You have the following rights regarding your personal data:
- Access. You can request a copy of the personal data we hold about you.
- Correction. You can update your account information at any time through your account settings, or by contacting us.
- Deletion. You can delete your account and all associated data from your account settings or by contacting us. Deletion is permanent and cannot be undone.
- Export. You can request an export of your data in a machine-readable format (JSON). Contact us at privacy@planetroadmap.com to make an export request.
- Objection and restriction. If you are located in the European Economic Area or United Kingdom, you may object to or request restriction of certain processing of your personal data under applicable data protection law.
To exercise any of these rights, contact us at privacy@planetroadmap.com. We will respond to your request within 30 days.
7. Cookies
We use cookies and similar technologies for the following purposes:
- Essential cookies. Required for the Service to function, including session authentication and security tokens. These cannot be disabled.
- Preference cookies. Used to remember your settings, such as theme preference and selected views.
We do not use third-party advertising cookies or tracking pixels. We do not participate in cross-site tracking or ad networks.
8. Children's Privacy
The Service is not directed to children under the age of 16. We do not knowingly collect personal information from children under 16. If we learn that we have collected personal data from a child under 16 without parental consent, we will delete that information promptly. If you believe a child under 16 has provided us with personal data, please contact us at privacy@planetroadmap.com.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email or by posting a notice within the Service at least 30 days before the changes take effect. The “last updated” date at the top of this page reflects the date of the most recent revision. Your continued use of the Service after the updated policy takes effect constitutes your acceptance of the changes.
10. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us at privacy@planetroadmap.com.