Legal
Privacy Policy
Last updated 30 July 2026. This Policy explains how [Add sole trader's legal name], ABN [Add ABN], trading as SQL Snippet Garden, handles information.
1. Scope
This Policy applies to the SQL Snippet Garden website, application, subscriptions, support, and related services. We aim to handle personal information transparently and, where applicable, in accordance with the Privacy Act 1988 (Cth) and Australian Privacy Principles.
2. Information we collect
- Account information, including email address, authentication identifiers, and acceptance of legal terms.
- Workspace information, including names, memberships, roles, and invitations.
- Customer content, including SQL snippets, tags, descriptions, parameters, AI prompts, generated output, and public-sharing choices.
- Subscription information, including plan, Stripe customer and subscription identifiers, payment status, and billing dates. Stripe handles full payment-card details.
- Technical and usage information, such as IP address and device or browser data available in server logs, authentication events, feature usage, AI token counts, errors, and security records.
- Support communications and any information you choose to provide when contacting us.
3. How we use information
We use information to provide and secure accounts and workspaces; store and synchronise snippets; process subscriptions; deliver AI features; enforce plan limits; provide support; detect abuse; troubleshoot and improve the Service; communicate operational or legal changes; and comply with law.
We do not sell customer content or personal information.
4. AI processing
When you use Generate SQL, Explain, Translate, or Query Review, the relevant prompt or SQL is sent to OpenAI for processing. Do not submit secrets or unnecessary personal or sensitive information. AI usage metadata and token counts are stored to operate allowances and monitor cost.
5. Service providers and overseas processing
We disclose information only where reasonably needed to providers that help operate the Service, including Supabase (hosting, database, and authentication), Stripe (billing), OpenAI (AI processing), and infrastructure, email, security, or support providers we may engage.
These providers may process information in Australia, the United States, and other countries where they or their subprocessors operate. Privacy protections in those countries may differ from Australian law. Where the Privacy Act applies, we take reasonable steps required for cross-border disclosures.
6. Team workspaces and public links
Workspace members can see and edit content in workspaces they join and can see the email addresses and roles of other members in that workspace. Workspace owners can also see invitation details, remove members, and revoke pending invitations. If you enable a public share link, the selected snippet becomes available to anyone with that link until sharing is disabled.
7. Cookies and local storage
We use essential authentication cookies and similar storage needed to keep you signed in, protect sessions, and remember necessary application state. We will update this Policy and request consent where required before introducing non-essential advertising or analytics tracking.
8. Retention and deletion
We keep information while your account is active and as reasonably needed to provide the Service. After account closure, information may remain temporarily in backups or where required for tax, accounting, dispute, fraud-prevention, security, or legal purposes. Public links should be disabled and important content exported before closure.
9. Security and data incidents
We use reasonable technical and organisational safeguards, including authenticated access, workspace-based row-level security, restricted server credentials, and managed service providers. No online service is completely secure. If a data incident occurs, we will investigate and provide notifications where required by applicable law.
10. Access, correction, and account requests
You can download an account data export or permanently delete your account from Account settings. You may also request access to or correction of personal information we hold by contacting us. We may need to verify your identity and may retain information where permitted or required by law.
11. Communications
We may send service, billing, security, and legal notices needed to operate your account. If marketing communications are introduced, we will send them only with consent or where otherwise permitted, identify the sender, and provide a functional unsubscribe method in accordance with the Spam Act 2003 (Cth).
12. Children
The Service is intended for professional and business users and is not directed to children under 16. Contact us if you believe a child has provided personal information.
13. Complaints and contact
Contact [Add support email] with privacy questions, access or correction requests, or complaints. We will investigate and respond within a reasonable time. If the Privacy Act applies and you remain dissatisfied, you may be able to complain to the Office of the Australian Information Commissioner.
Operator: [Add sole trader's legal name], ABN [Add ABN]
Service address: [Add business or service address]
14. Changes
We may update this Policy when our practices or legal obligations change. We will publish the revised date and provide additional notice for material changes where appropriate.