Privacy Policy
Last Updated: November 12, 2025
GDPR Compliance: This Privacy Policy complies with the EU General Data Protection Regulation (GDPR) and applies to all users, including those in the European Economic Area (EEA).
1. Introduction
TenElevenTwelve LLC ("we," "us," "our") operates MyPublicist ("Service"). This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our Service.
Data Controller: TenElevenTwelve LLC, located in Texas, United States, is the data controller responsible for your personal information.
2. Information We Collect
2.1 Information You Provide
- Account Information: Name, email address, password
- Profile Information: Professional title, company, bio, website, social media profiles
- Communication Content: Topics of expertise, talking points, pitch content you create
- Voice Training Data: Writing samples and communication style preferences
- Payment Information: Processed securely through Stripe (we do not store full credit card numbers)
2.2 Information We Collect Automatically
- Usage Data: Pages viewed, features used, time spent on the Service
- Device Information: Browser type, IP address, operating system, device identifiers
- Cookies and Similar Technologies: Session cookies, analytics cookies
2.3 Information from Third Parties
- OAuth Providers: If you sign in with Google, we receive your name, email, and profile picture
- Public Sources: Podcast information from public directories and RSS feeds
3. Legal Basis for Processing (GDPR)
Under GDPR, we process your personal data based on:
- Contract Performance: To provide the Service you subscribed to
- Consent: For marketing communications and optional features (you can withdraw consent anytime)
- Legitimate Interests: To improve our Service, prevent fraud, and ensure security
- Legal Obligations: To comply with tax, accounting, and other legal requirements
4. How We Use Your Information
We use your information to:
- Provide, maintain, and improve the Service
- Process your subscription and payments
- Generate AI-powered podcast recommendations and pitch content
- Personalize your experience and train AI to match your communication style
- Send transactional emails (account notifications, receipts, Service updates)
- Send marketing communications (only with your consent; you can opt out anytime)
- Provide customer support
- Detect and prevent fraud, abuse, and security incidents
- Analyze usage patterns to improve features
- Comply with legal obligations
5. How We Share Your Information
We do not sell your personal information. We share your information only in these circumstances:
5.1 Service Providers (Data Processors)
- Anthropic (Claude AI): Processes your profile and content to generate personalized pitches
- Railway: Hosts our infrastructure and database
- Stripe: Processes payments
- Resend: Sends transactional and marketing emails
- PostHog/Plausible: Provides privacy-friendly analytics
These service providers are contractually bound to protect your data and use it only for the purposes we specify. We have Data Processing Agreements (DPAs) with all processors handling personal data.
5.2 Legal Requirements
We may disclose your information if required by law, court order, or government request, or to protect our rights, property, or safety.
5.3 Business Transfers
If we are involved in a merger, acquisition, or asset sale, your information may be transferred. We will notify you before your information is transferred and becomes subject to a different Privacy Policy.
6. International Data Transfers
We are based in the United States. If you are located in the European Economic Area (EEA) or other regions with data protection laws, your personal data will be transferred to and processed in the United States.
We ensure appropriate safeguards are in place for international transfers:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Data Processing Agreements with all third-party processors
- Adequate security measures to protect your data
7. Your Rights (GDPR & Privacy Rights)
You have the following rights regarding your personal data:
7.1 Access and Portability
You can request a copy of your personal data in a structured, machine-readable format.
7.2 Correction
You can update or correct your information through your account settings or by contacting us.
7.3 Deletion ("Right to be Forgotten")
You can request deletion of your personal data. We will delete your data within 45 days unless we are required to retain it for legal, tax, or accounting purposes (up to 7 years for billing records).
7.4 Restriction and Objection
You can request that we restrict processing of your data or object to certain processing activities.
7.5 Withdraw Consent
Where we process your data based on consent, you can withdraw consent at any time. This will not affect the lawfulness of processing before withdrawal.
7.6 Lodge a Complaint
If you are in the EEA, you have the right to lodge a complaint with your local data protection authority.
To exercise your rights, contact us at: info@teneleventwelve.com
We will respond to your request within 30 days.
8. Data Retention
We retain your personal data only as long as necessary for the purposes described in this Privacy Policy:
- Active Accounts: Data is retained while your account is active
- Deleted Accounts: Personal data is deleted within 45 days of account closure
- Financial Records: Billing and payment data is retained for 7 years for tax and accounting purposes
- Anonymized Analytics: Usage data may be anonymized and retained indefinitely for statistical purposes
9. Security
We implement industry-standard security measures to protect your data:
- Encryption in transit (TLS/SSL) and at rest
- Secure authentication and password hashing
- Regular security audits and updates
- Access controls and monitoring
- Secure infrastructure with Railway and PostgreSQL
However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
10. Cookies and Tracking
We use cookies and similar tracking technologies:
- Essential Cookies: Required for authentication and Service functionality
- Analytics Cookies: Help us understand usage patterns (PostHog/Plausible)
- Preference Cookies: Remember your settings and preferences
You can manage cookies through your browser settings. Note that disabling essential cookies may affect Service functionality.
11. Children's Privacy
The Service is not intended for users under 18 years old. We do not knowingly collect personal information from children. If you believe we have collected information from a child under 18, please contact us immediately at info@teneleventwelve.com.
12. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information we collect and how we use it
- Right to delete your personal information
- Right to opt-out of the sale of personal information (we do not sell your data)
- Right to non-discrimination for exercising your rights
To exercise these rights, contact us at info@teneleventwelve.com.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through a prominent notice on the Service. Your continued use after changes become effective constitutes acceptance of the updated Privacy Policy.
14. Contact Us
If you have questions about this Privacy Policy or wish to exercise your rights, contact us:
TenElevenTwelve LLC
Email: info@teneleventwelve.com
Website: mypublicist.ai
EU Representative (for GDPR inquiries):
Email: info@teneleventwelve.com