Privacy Policy
Last updated: 23 September 2026
The short version
We only collect what we need to run Curtn: your account info, the files you upload, the notes your clients leave, and basic usage/log data. We don’t sell your data. We don’t train AI on your files. You can delete your account and content at any time
1. What we collect
Account data — name, email, hashed password, profile photo (if you sign in with Google).
Client data — the client names, emails and companies you add to your CRM.
Content — the files, invoices, revision notes and messages you and your clients create.
Payment data — handled by our payment processor (Stripe). We store transaction IDs and amounts, never card numbers.
Log data — IP address, browser/device, and pages visited so we can secure and improve the service.
2. How we use it
To operate the service (host files, deliver previews, process payments).
To send you transactional email (verification, password reset, revision digests, payment receipts).
To keep the service secure, prevent abuse, and comply with law.
To measure how Curtn is used, in aggregate, so we can improve it.
We do not use your files or notes to train AI models. We do not sell your personal data.
3. Who we share it with
We only share data with sub-processors that help us run the service:
Cloudflare — file storage (R2) and CDN.
Stripe — payment processing.
Resend — transactional email delivery.
Google — only if you choose “Sign in with Google”.
MongoDB Atlas — primary application database.
We may also share data if required by law, a court order, or to protect the safety of our users.

