Legal

Privacy Policy

Last updated: January 2025

1. Who we are

Red Oak Tree PTY ("we", "us", "our") is an Australian company registered under Australian law. We operate digital products including Huetype (huetype.com). Our contact email for privacy matters is privacy@redoaktree.com.au.

2. What information we collect

When you use our products, we may collect: • Quiz responses you submit (used solely to generate your personality report) • Your email address, provided at the point of purchase • Payment information — processed entirely by Stripe; we never see or store your card details • Basic usage data (pages visited, time on site) via PostHog analytics • Technical information (browser type, device type) for performance monitoring We do not collect your name unless you voluntarily provide it. We do not require account creation.

3. How we use your information

We use the information we collect to: • Generate and deliver your personality report • Send your PDF report to the email address you provided • Process your payment via Stripe • Improve our products through aggregated, anonymised usage data • Respond to support or privacy enquiries We do not sell your personal information to any third party. We do not use your data for advertising.

4. Data storage and security

Your quiz responses, scores, and report content are stored in Supabase (hosted on AWS infrastructure). Payments are processed by Stripe, which is PCI-DSS compliant. We use industry-standard encryption (HTTPS/TLS) for all data in transit. We retain your session data and report indefinitely so that you can access your report via a permanent link. You may request deletion at any time by contacting privacy@redoaktree.com.au.

5. Third-party services

We use the following third-party services to operate our products: • Stripe — payment processing (stripe.com/privacy) • Supabase — database and storage (supabase.com/privacy) • Anthropic — AI report generation (anthropic.com/privacy) • Resend — transactional email delivery (resend.com/privacy) • PostHog — product analytics (posthog.com/privacy) • Vercel — hosting (vercel.com/legal/privacy-policy) Each service operates under its own privacy policy. We share only the minimum data necessary with each provider.

6. Your rights

Under Australian Privacy Law (Privacy Act 1988) and, where applicable, the GDPR, you have the right to: • Access the personal information we hold about you • Request correction of inaccurate data • Request deletion of your data • Withdraw consent where processing is based on consent To exercise any of these rights, contact us at privacy@redoaktree.com.au. We will respond within 30 days.

7. Cookies

We use minimal cookies necessary for the product to function (session identifiers and payment flow state). We do not use advertising cookies or third-party tracking cookies. You can disable cookies in your browser settings, though this may affect product functionality.

8. Children

Our products are intended for users aged 16 and over. We do not knowingly collect personal information from children under 16. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.

9. Changes to this policy

We may update this Privacy Policy from time to time. When we do, we will update the "last updated" date at the top of this page. Continued use of our products following any changes constitutes acceptance of the updated policy.

10. Contact

For any privacy-related questions or requests, contact us at: privacy@redoaktree.com.au Red Oak Tree PTY, Australia