Pleez Privacy Policy
This Privacy Policy explains how Pleez collects, uses, discloses, and protects information about you when you use our websites and services (the “Service”).
Information We Collect
- Account data: email address, username, password (hashed), and basic profile information.
- Service data: wishlist items, categories, fulfillment notes, short links, and settings you configure.
- Content you provide: text, images you upload, and URLs you submit for us to fetch product info.
- Contacts: if you choose to import contacts (via Omnicontacts), we process contact names and email addresses to help you discover friends and send invitations. You should have permission to share these contacts.
- Social login data: if you sign in with a provider (via OmniAuth), we receive identifiers and profile data that the provider shares with your consent.
- Device and log data: IP address, browser/user‑agent, pages viewed, and other standard log information for security and diagnostics.
- Fetched third‑party content: at your request, we may retrieve product metadata and images from third‑party sites and store copies to operate the Service.
How We Use Information
- Provide, maintain, and improve the Service.
- Authenticate you and keep your account secure.
- Help you discover friends and send invitations (if you choose to import contacts or invite others).
- Fetch, cache, and display product information you request us to retrieve.
- Send transactional communications (e.g., account or service notifications). We do not send marketing emails without your consent.
- Prevent spam, fraud, and abuse, including using anti‑abuse tools like Google reCAPTCHA.
- Comply with legal obligations.
Legal Bases (EEA/UK)
- Contract: to provide the Service you request.
- Legitimate interests: to secure, improve, and operate the Service, and for friend discovery where proportionate.
- Consent: for optional features like social login data scopes, contact imports, or certain communications; you may withdraw consent at any time.
- Legal obligation: to meet applicable laws.
Cookies and Similar Technologies
We use essential cookies for authentication, security, and basic functionality. If we add analytics or additional non‑essential cookies, we will update this policy and, where required, request your consent. You can control cookies through your browser settings; disabling essential cookies may affect site functionality.
Third‑Party Processors and Services
- Amazon Web Services (S3) – cloud storage for user and fetched images. Privacy
- Mailgun – email delivery for transactional messages. Privacy
- Google reCAPTCHA – protect forms from abuse. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.
- OmniAuth providers – social login and identity (provider policies apply).
- Omnicontacts – contact import to help find friends and send invitations.
- Amazon Associates – affiliate program. As an Amazon Associate, Pleez may earn from qualifying purchases.
Sharing
- Service providers: we share information with vendors that process data on our behalf under contracts and appropriate safeguards.
- Legal: we may disclose information if required by law or to protect rights, safety, and security.
- With your direction: when you share a wishlist or use short links, information may be accessible to others per your settings.
Retention
We retain information for as long as necessary to provide the Service, comply with legal obligations, resolve disputes, and enforce agreements. Criteria include account status, the nature of the data (e.g., wishlist content vs. logs), and legal requirements.
Security
We use reasonable technical and organizational measures to protect information (e.g., TLS in transit, access controls, and least‑privilege access to production systems). No system is perfectly secure; we encourage strong passwords and enabling available security features.
International Transfers
We may store and process information in Canada, the United States, and other countries where our service providers operate (e.g., based on the AWS region configured). Where required, we rely on appropriate safeguards for cross‑border transfers.
Your Rights
- EEA/UK: access, rectification, deletion, portability, restriction, and objection. You may withdraw consent at any time.
- California (CCPA/CPRA): right to know/access, delete, correct, and limit use of sensitive data. We do not sell or share personal information as defined by CPRA. You will not be discriminated against for exercising your rights.
- You can access and update certain information in your account settings or by contacting us.
Children
The Service is not directed to children under 13, and we do not knowingly collect personal information from them. If you believe a child has provided us personal information, please contact us to request deletion. Where GDPR/UK GDPR applies, additional age‑related consent rules apply.
Affiliate Disclosure
As an Amazon Associate, Pleez may earn from qualifying purchases. Some product links may be affiliate links.
Changes to This Policy
We may update this Privacy Policy from time to time. We will post changes on this page and update the “Last updated” date. If changes materially affect your rights, we will take reasonable steps to notify you.
Contact Us
Questions or requests regarding this Privacy Policy or your information can be sent to: sesau@sesau.ca
Last updated: 2025-11-01