wedplanner.io

Legal

Data processing agreement

For planners and agencies who need one on file.

Last updated 2026-09-02

This is a working draft, written from what the product does. It has not been reviewed by a lawyer and is not yet binding.

Roles

For the plan data in a wedding — guests, their contact details, their dietary needs — you are the controller and we are the processor. For your own account data we are the controller.

What we do with it

Only what you instruct through the product: store it, show it to the people you invite, send the emails you ask us to send, and answer the assistant questions you ask.

Sub-processors

Hosting and functions, database and file storage, authentication, transactional email, payments, product analytics, error reporting, and the AI provider that answers assistant questions. Each is bound to the same obligations. We tell you before we add one.

Security

Encryption in transit and at rest, row-level authorisation on every table, access limited to what a role needs, backups with point-in-time recovery, and an audit trail of who changed what.

If something goes wrong

We tell you without undue delay and give you what you need to meet your own notification duty.

Deletion

On request or when you close the account, we delete the data within thirty days, backups included on their normal cycle.