Privacy Policy
Effective September 11, 2026 · Version 2026.09 · Reviewed September 9, 2026
Zealand Design Media (“Paperonic”, “we”, “us”) operates the Paperonic service. This policy explains how we handle personal data when you visit, create an account, manage an event, receive an invitation, or contact us.
1. Who controls personal data
We are responsible for account, billing, support, security, and service-usage data that we collect for our own purposes. When a customer uploads guest lists, creates invitations, or sends messages, that customer decides why and how the guest data is used. For that customer data, the customer is the controller and we act as its processor or service provider.
2. Data we collect
- Account and profile data, including name, email address, password hash, profile image, workspace memberships, roles, and account timestamps.
- Customer content, including events, designs, uploaded files, guest names and contact details, RSVP answers, seating, registrations, invitations, and check-in records.
- Communications data, including campaigns, delivery status, opt-outs, support messages, and notification preferences.
- Transaction data, including plan, order, amount, currency, invoice, subscription, and payment-provider references. Stripe processes card details; we do not store full card numbers.
- Usage and security data, including page or feature events, timestamps, device and browser information, referrer, session identifiers, and a salted hash of an IP address for server-side analytics. We do not store the raw IP address in our analytics-event table.
3. How and why we use data
We use personal data to provide and secure the service, authenticate users, process payments, deliver invitations and messages, provide support, prevent abuse, keep audit and financial records, improve product reliability, and comply with law.
Where a legal basis is required, we rely on performance of our agreement, compliance with legal obligations, consent where requested, and our legitimate interests in operating, securing, and improving the service. A customer is responsible for establishing a lawful basis for guest data and messaging it directs us to process.
4. When we share data
We disclose data only as needed to run the service, follow customer instructions, complete a transaction, protect people or the service, or comply with law. Depending on the features configured, providers may include hosting and S3-compatible storage vendors, Stripe for payments, Resend for email, Twilio for SMS or WhatsApp, and configured analytics and error monitoring providers. Each provider receives only the data needed for its function.
We may also disclose data in a corporate transaction, under a valid legal request, or with your direction or consent. We do not sell personal data.
5. Overseas processing
We and our providers may process data outside your country. Where applicable, we use contractual safeguards or another lawful transfer mechanism and assess whether the recipient provides comparable protection. Customers should account for these transfers when using Paperonic for guest data.
6. Retention and account erasure
We keep data while an account or workspace is active and for as long as needed for the purposes above. Retention depends on the record and legal, tax, dispute, security, and operational requirements.
You can request deletion from Settings → Data & privacy. Once approved, the erasure workflow revokes sessions, removes memberships and direct account identifiers, deletes personal profile media, and removes sole-owner workspaces and their stored files. A collaborative workspace is transferred only to an existing active owner or administrator; otherwise the request cannot complete until ownership is resolved.
Limited pseudonymous billing, transaction, fraud-prevention, authorship, and audit records may be retained where necessary for legal obligations or system integrity. Messaging suppression records are retained so opt-outs continue to be honored. A request is not marked complete while deletion of a known stored object is still pending.
7. Your choices and rights
Depending on where you live, you may ask to access, correct, export, delete, restrict, or object to processing of your personal data, or withdraw consent. We may need to verify your identity and may decline or limit a request where the law permits or requires retention.
If Paperonic processed guest data only on a customer's instructions, contact that customer first; we will assist the customer with an appropriate request. You may also complain to your local privacy regulator. In New Zealand, information about complaints is available from the Office of the Privacy Commissioner.
8. Security and incidents
We use access controls, hashed passwords and session tokens, encrypted transport, origin checks, rate limits, audit logging, and provider security controls. No system is completely secure. If a personal-data breach requires notification, we will notify affected customers, individuals, or regulators as required by law.
9. Children
Paperonic is not directed to children who cannot lawfully consent to an online service in their jurisdiction. Customers must take particular care before adding information about children to an event.
10. Changes and contact
We may update this policy and will publish the new effective date and version on this page. Material changes may also be communicated in the service. Send privacy requests to privacy@paperonic.com.
These policies are published by Zealand Design Media, contact@paperonic.com.
Privacy requests: privacy@paperonic.com. General support: support@paperonic.com.