Privacy Policy

How Berth handles your data.

Last updated: 1 May 2026. Plain-English summary first; legal detail after.

Plain-English summary

1. Who we are

Berth ("we", "us") is a personal project pre-launch. The data controller is the founder, contactable at hello@berth.money. Once Berth is operated as a registered business entity, this policy will be updated with the legal entity name and address.

2. What we collect

From the waitlist signup form:

We do not collect your name, address, phone, financial details, or behavioural tracking data. We do not use cookies.

If you become a paying customer post-launch, we will additionally collect the data you submit via the quiz (work shape, currencies, country of residence, etc.) to generate your personalized Notion workspace. That separate processing is disclosed at point of purchase.

3. Why we collect it (lawful basis)

We process your email under your explicit consent (GDPR Article 6(1)(a)), given by ticking the consent checkbox at signup.

The only purpose is to email you when Berth launches. We will not share your email with third parties, sell it, or use it for unrelated marketing.

4. How long we keep it

Until you ask us to delete it, or until 24 months after launch, whichever comes first. After 24 months without launch (i.e. the project is abandoned), we will proactively delete all waitlist records.

5. Sub-processors

We use these third parties to operate Berth. Each is independently GDPR-compliant under their own published commitments:

6. Your rights under GDPR

You have the right to:

To exercise any of these, click the unsubscribe link in any email from us, or email hello@berth.money. We respond within 30 days as required by GDPR.

7. Cookies & local storage

We do not use cookies. We use localStorage (browser-side only, never sent to our server) to remember your email if the signup network call fails, so we don't lose your intent. You can clear it at any time via your browser.

8. International transfers

Resend, Notion, Anthropic, and some Stripe processing involves transferring data to the United States. These transfers rely on EU Standard Contractual Clauses (SCCs) and each processor's published GDPR commitments.

9. Security

Your email is stored in Cloudflare D1 (encrypted at rest), accessed only via signed Worker requests. We do not log or retain IP addresses long-term. API tokens used by the Worker are stored as Cloudflare Worker Secrets (encrypted, not visible in logs).

10. Changes

If this policy changes materially, we will email all waitlist members and update the date at the top of this page.

11. Contact

For any privacy-related question or to exercise your rights: hello@berth.money.