Privacy Policy

Last updated: [date]
Placeholder. This page exists so the consent link resolves and the structure is in place. The binding legal text must be drafted and approved by Timeless's legal/DPO team before launch - it should not be published as-is.

1. Who we are

[Controller name, legal entity, address, and contact details of the data controller and, where applicable, the Data Protection Officer.]

2. What data we collect

When you register for early access, we collect:

[e.g. full name, email address, the marketing-consent record and timestamp, and technical/attribution data such as referral source and campaign parameters (UTM).]

3. Why we use it and the legal basis

[Purpose: to contact you about early access and the product launch. Legal basis under GDPR: consent (Art. 6(1)(a)). Describe each purpose and its corresponding basis.]

4. How long we keep it

[Retention period for the early-access list and the criteria used to determine it.]

5. Who we share it with

[Processors and tools used, e.g. CRM / email platform (such as Braze), hosting, analytics; any international transfers and safeguards.]

6. Your rights

[Rights to access, rectification, erasure, restriction, portability, objection, and to withdraw consent at any time; how to exercise them; right to lodge a complaint with a supervisory authority.]

7. Contact

[Privacy contact email / postal address.]