Legal

Privacy Policy

Last updated: March 2026

Note: This is a plain-language summary of our privacy practices. Please read carefully before using My Diaper Raffle.

1. What Data We Collect

From hosts (account holders): Your email address and encrypted password when you create an account. We also store the raffle details you enter: baby name, shower date, description, and theme.

From guests (raffle entrants): Your name, email address, and the number of diapers you are bringing. This information is submitted voluntarily when you enter a raffle.

Automatically: Standard server logs (IP address, browser type) for security and debugging. We do not use tracking pixels or behavioral ad tracking.

2. Why We Collect It

We collect only what is necessary to operate the service:

  • To create and manage your raffle
  • To send guests a confirmation email when they enter a raffle
  • To notify the winner when they are selected
  • To process payments (hosts only)
  • To authenticate hosts and protect accounts

We do not use your data for advertising or sell it to third parties.

3. How We Store It

All data is stored in a PostgreSQL database hosted by Supabase on secure, encrypted infrastructure. Passwords are never stored in plain text — they are hashed using industry-standard encryption provided by Supabase Auth.

Data is retained for as long as your account is active. Completed raffle data is retained to maintain your history. You may request deletion at any time (see Section 6).

4. Third Parties We Work With

We share minimal data with the following trusted services:

  • Supabase — database and authentication hosting. Guest and host data is stored here.
  • Resend — email delivery. Guest name and email are shared solely to send entry confirmation and winner notification emails.
  • Stripe — payment processing. Billing information is handled entirely by Stripe and is never stored on our servers.
  • Vercel — web hosting. Standard server request logs may be processed.

We do not sell, rent, or trade personal data to any other third party.

5. Cookies

We use essential cookies only — specifically, a session cookie to keep you logged in as a host. We do not use advertising cookies, analytics cookies, or third-party tracking cookies.

6. Your Rights & Data Deletion

You may request access to or deletion of your personal data at any time by emailing us at hello@mydiaperraffle.com. We will process requests within 30 days.

Guest entrants who wish to remove their entry from a raffle should contact the raffle host directly or reach out to us at the same address.

7. Children's Privacy

My Diaper Raffle is not directed at children under 13. We do not knowingly collect personal information from anyone under 13 years of age.

8. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify registered users by email and update the “Last updated” date at the top of this page. Continued use of the service after changes constitutes acceptance.

9. Contact

Questions about this policy? Email us at hello@mydiaperraffle.com