Privacy Policy
Last updated: April 12, 2026
This policy explains what information Just Said Yes (the "Service") collects about you, how it's used, and who it's shared with. The Service is designed to collect as little personal data as possible.
1. Information We Collect
Account information. When you create an account, we collect your email address. That's it — there is no password, no name required, and no profile fields to fill in.
Wedding and guest information. When you create a wedding invitation, you provide content such as your names, event date, venue, photos, and a list of guests (names, and optionally an RSVP tier). This information is stored so that your invite can be displayed to your guests.
Payment information. Payments are processed by Stripe. Just Said Yes never sees or stores your credit card details. See Stripe's Privacy Policy for how Stripe handles payment data.
Usage data. We collect anonymized, aggregated usage statistics (page views, referrers, device type) using a self-hosted analytics platform. No cookies are set for analytics, and no individual user is tracked.
Error data. If something breaks, limited error information — including the URL, a stack trace, and the logged-in user's ID and email — may be sent to an error tracking service so that the issue can be diagnosed and fixed.
2. How We Use Your Information
Your information is used to:
- Provide and operate the Service
- Send you transactional emails (login links, billing confirmations, product notifications you've asked for)
- Process payments
- Display your wedding invitation to the guests you share the link with
- Investigate errors and improve the Service
We do not use your data for advertising, profiling, or for training machine learning models.
3. Who We Share Data With
We do not sell your personal data. We share limited data with a small number of service providers, strictly to run the Service:
- Stripe — payment processing
- Resend — transactional email delivery
- Sentry — error tracking (may receive your user ID and email when an error occurs)
- Hetzner — cloud hosting; the servers that run the Service are located in the European Union
These providers process data on our behalf and are bound by their own privacy and security obligations.
4. Sharing Your Invitation
When you publish a wedding invitation, the invitation page becomes accessible to anyone with the link. You are responsible for how and to whom you share that link. Guests who visit the page can see the content you added (names, date, venue, photos) and, if you've shared a personalized link, may be shown as checked-in for RSVP tracking.
Guest names are not made public — they are only visible to you and to guests who visit their own personalized link.
5. Cookies
The Service uses a single, strictly necessary cookie to keep you logged in after you click a magic link. No tracking, advertising, or analytics cookies are set.
6. Data Retention
Your account data is kept for as long as your account is active. If you delete your account from settings, it is immediately deactivated and scheduled for permanent deletion after a 30-day grace period. After that, your account data is removed from the primary database. Backups may retain copies for a limited additional period before being rotated out.
7. Your Rights
Depending on where you live, you may have the right to:
- Access the personal data we hold about you
- Correct inaccurate data
- Request deletion of your data (you can do this yourself by deleting your account from settings)
- Object to or restrict certain processing
- Port your data to another service
To exercise any of these rights, email [email protected].
8. Security
We use industry-standard security measures including encrypted credentials, signed session cookies, HTTPS, rate limiting, and secure HTTP headers. No system is 100% secure, but we take reasonable steps to protect your data.
9. Children
The Service is not intended for children under 16. If you believe a child has given us personal information, please contact us and we will remove it.
10. Changes to This Policy
This policy may be updated from time to time. Significant changes will be communicated via email or a notice on the Service. The last_updated date at the top of this page reflects the most recent change.
11. Contact
Questions or requests about your data? Email [email protected].