Legal

Privacy Policy

Effective date: April 28, 2026

MyPorch (“we,” “our,” or “us”) operates myporch.app. This policy describes what information we collect, how we use it, and your choices. By using MyPorch you agree to the practices described here.

1. Information We Collect

Account information

When you create an account we collect your name, email address, and authentication credentials. If you sign in with Google, we receive the profile information Google shares (name and email). We do not receive your Google password.

Bakery and product information

We store the information you enter to operate your bakery — your bakery name, product descriptions, pricing, ingredient lists, allergen information, and batch details.

Order data

When your customers place orders through your MyPorch storefront we collect their name, email address, order details, and pickup information. This data is associated with your bakery account.

Payment information

Payments are processed by Stripe. We do not store credit card numbers or bank account details on our servers. We receive confirmation of payment status and transaction identifiers from Stripe. Your connected Stripe account is governed by Stripe’s Privacy Policy.

Usage data

We collect information about how you use MyPorch — pages visited, features used, clicks, and session duration — using PostHog analytics. This data is used to improve the product. PostHog is configured to collect data only for identified users where applicable.

Technical data

We collect standard server log data including IP addresses, browser type, and referring URLs. This data is used for security, debugging, and service operation.

2. How We Use Your Information

  • To operate and provide the MyPorch platform
  • To process orders through your storefront
  • To send order confirmation and pickup reminder emails to your customers
  • To generate cottage food labels for your orders
  • To send you account-related communications (billing, product updates, support)
  • To analyze usage and improve the product
  • To detect and prevent fraud, abuse, and security incidents
  • To comply with legal obligations

We do not sell your personal information or your customers’ personal information to third parties.

3. Information Sharing

We share your information only in the following circumstances:

Service providers

We use third-party services to operate MyPorch, including Supabase (database and authentication), Stripe (payments), and PostHog (analytics). These providers access your data only as necessary to perform services on our behalf and are bound by confidentiality obligations.

Your customers

Order and pickup information is shared with the customers who place orders through your storefront as necessary to fulfill those orders.

Legal requirements

We may disclose information if required by law, court order, or governmental authority, or to protect the rights, property, or safety of MyPorch, our users, or the public.

Business transfers

If MyPorch is acquired, merged, or undergoes a change of control, your information may be transferred as part of that transaction. We will notify you before your information is transferred and becomes subject to a different privacy policy.

4. Data Retention

We retain your account information and bakery data for as long as your account is active. Order records are retained for a minimum of three years to support compliance and tax record-keeping. If you delete your account, we will delete or anonymize your personal information within 90 days, except where retention is required by law.

5. Your Choices and Rights

Account data

You can update your account information at any time from your account settings.

Account deletion

You can request deletion of your account by contacting us at hello@myporch.app. We will process deletion requests within 30 days.

Marketing communications

You can opt out of non-essential email communications by clicking the unsubscribe link in any marketing email or by contacting us. Transactional emails (order confirmations, billing receipts) cannot be disabled while your account is active.

Analytics

PostHog analytics can be blocked using standard browser privacy tools or ad blockers. Blocking analytics does not affect your ability to use MyPorch.

6. Data Security

We use industry-standard security measures including encryption in transit (TLS), encryption at rest, and access controls. Our authentication and database infrastructure is provided by Supabase. No system is completely secure — if you believe your account has been compromised, contact us immediately at hello@myporch.app.

7. Cookies

We use cookies and similar technologies to keep you signed in, remember your preferences, and collect analytics data. Essential cookies required for authentication cannot be disabled. Analytics cookies can be blocked via browser settings without affecting core functionality.

8. Children's Privacy

MyPorch is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, contact us and we will delete it promptly.

9. Changes to This Policy

We may update this policy from time to time. We will notify you of material changes by email or by posting a notice on the platform. Your continued use of MyPorch after the effective date of any changes constitutes acceptance of the updated policy.

10. Contact

Questions about this policy or requests regarding your data:

MyPorch
hello@myporch.app