Legal
Privacy Policy
Last updated: March 2026
1. What Data We Collect
From hosts (account holders): Your email address and encrypted password when you create an account. We also store the raffle details you enter: baby name, shower date, description, and theme.
From guests (raffle entrants): Your name, email address, and the number of diapers you are bringing. This information is submitted voluntarily when you enter a raffle.
Automatically: Standard server logs (IP address, browser type) for security and debugging. We do not use tracking pixels or behavioral ad tracking.
2. Why We Collect It
We collect only what is necessary to operate the service:
- To create and manage your raffle
- To send guests a confirmation email when they enter a raffle
- To notify the winner when they are selected
- To process payments (hosts only)
- To authenticate hosts and protect accounts
We do not use your data for advertising or sell it to third parties.
3. How We Store It
All data is stored in a PostgreSQL database hosted by Supabase on secure, encrypted infrastructure. Passwords are never stored in plain text — they are hashed using industry-standard encryption provided by Supabase Auth.
Data is retained for as long as your account is active. Completed raffle data is retained to maintain your history. You may request deletion at any time (see Section 6).
4. Third Parties We Work With
We share minimal data with the following trusted services:
- Supabase — database and authentication hosting. Guest and host data is stored here.
- Resend — email delivery. Guest name and email are shared solely to send entry confirmation and winner notification emails.
- Stripe — payment processing. Billing information is handled entirely by Stripe and is never stored on our servers.
- Vercel — web hosting. Standard server request logs may be processed.
We do not sell, rent, or trade personal data to any other third party.
5. Cookies
We use essential cookies only — specifically, a session cookie to keep you logged in as a host. We do not use advertising cookies, analytics cookies, or third-party tracking cookies.
6. Your Rights & Data Deletion
You may request access to or deletion of your personal data at any time by emailing us at hello@mydiaperraffle.com. We will process requests within 30 days.
Guest entrants who wish to remove their entry from a raffle should contact the raffle host directly or reach out to us at the same address.
7. Children's Privacy
My Diaper Raffle is not directed at children under 13. We do not knowingly collect personal information from anyone under 13 years of age.
8. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify registered users by email and update the “Last updated” date at the top of this page. Continued use of the service after changes constitutes acceptance.
9. Contact
Questions about this policy? Email us at hello@mydiaperraffle.com