Privacy Policy for ProductSimply.com
Effective date: August 5, 2026
The policy at a glance
- Product Simply collects information needed to provide coaching, courses, AI features, payments, scheduling, and support.
- Transcription is optional for ordinary coaching when offered. Director+ requires separate affirmative transcription consent before enrollment.
- Director+ transcripts are used to deliver that candidate's Program, not for unrelated marketing, testimonials, research, training materials, or generalized content without separate consent.
- A transcript-deletion request immediately removes Product Simply's stored content and remains open until the associated Google Meet-created source files are deleted.
- Product Simply keeps transaction, agreement, consent, security, tax, fraud-prevention, and dispute records when reasonably necessary or legally required.
This policy explains how Product Simply collects, uses, shares, retains, and protects information when you use the website, coaching, courses, AI features, applications, bookings, payments, and related services.
Information we collect
- Account data: name, email, profile details, authentication identifiers, and profile image where supplied by a sign-in provider.
- Coaching and booking data: selected times, session preferences, contact information, booking status, calendar and meeting identifiers, and operational notes.
- Director+ application and agreement data: applicant details, target level, optional interview date and note, agreement version, signer name, signature timestamp, and affirmative Program, transcription, and electronic-records consents.
- Course and AI data: lesson progress, course activity, prompts, messages, supplied context, and generated responses.
- Payment data: purchases, amounts, products, refunds, and provider identifiers. Stripe processes card details; Product Simply does not store full card numbers.
- Communications and requests: support emails, transactional messages, privacy requests, delivery state, request status, and resolution records.
- Technical and analytics data: IP address, device and browser information, approximate location, page views, consent state, performance data, and privacy-safe product events.
- Session transcription data: dialogue, speaker attribution, timestamps, transcript status, provider document identifiers, and derived session materials where transcription is enabled or required.
Google sign-in and Google user data
Google sign-in may provide your name, email address, and profile picture so Product Simply can authenticate accounts, communicate about services, and grant access. Product Simply uses and transfers information received from Google APIs in accordance with the Google API Services User Data Policy, including Limited Use requirements, and does not use that data to serve advertisements.
The administrative Google connection supports Calendar, Meet, transcript retrieval, and deletion of Google Meet-created transcript artifacts. That connection requests Google Drive management authority because Google's API requires it to permanently delete an existing Meet-created Google Doc. Product Simply's deletion code uses that authority only with the exact document identifiers returned by Google Meet for the relevant session; it does not browse, index, or delete unrelated Drive files.
Google-account access may be revoked through Google Account permissions. Revocation may stop scheduling, transcript retrieval, and provider-deletion automation, but it does not automatically delete Product Simply records or close an outstanding privacy request.
How we use information
- Provide, personalize, secure, and support coaching, courses, AI features, applications, bookings, and accounts.
- Review Director+ applications and record, enforce, and retain the agreement and consent required before checkout.
- Process payments, refunds, entitlements, scheduling, calendar invitations, and transactional communications.
- Maintain coaching continuity, customer records, course progress, and support history.
- Receive, track, fulfill, retry, and document privacy requests.
- Measure use, attribution, performance, reliability, and errors and improve the services.
- Prevent fraud and abuse, protect users and systems, enforce agreements, and comply with law.
Session transcription
Ordinary coaching
Transcription is optional for ordinary coaching when Product Simply offers it. The booking or session flow identifies whether transcription is enabled and records the applicable choice.
Director+ Program
Advance affirmative transcription consent is a condition of Director+ enrollment and is recorded separately before checkout. Google Meet also provides an in-meeting notice when transcription is active.
Director+ transcripts are used only as reasonably necessary for diagnostic assessment, preparation planning, coaching feedback, the included written review, continuity between sessions, agreed takeaways or preparation materials, and other expressly agreed Program work. They are not used for unrelated research, marketing, testimonials, training materials, or generalized coaching-content development without separate consent.
Access and deletion
A transcript may be accessed by the candidate, MJ Chapman, and authorized Product Simply personnel or service providers who need it to deliver, secure, or support the service. Access is limited to the relevant operational purpose.
When a signed-in customer deletes a transcript from the session page, Product Simply immediately clears its stored transcript content, AI report, smart-notes link, and derived cross-session takeaways. It records a deletion audit entry and a permanent tombstone so the nightly import cannot restore the content.
The same request then resolves and permanently deletes the Google Meet-created transcript document and any identified Meet smart-notes document through the Google Drive API. The request remains in progress until those provider files are deleted. Failed provider calls are retained as operational errors, retried by the daily privacy automation, shown in the admin queue, and cannot be manually marked completed while unresolved. Product Simply may need the administrator to reconnect Google if Drive permission has expired or been revoked.
A successful Drive deletion removes the user-visible provider files. Google may retain limited backup, security, or legal copies under its own infrastructure policies after deletion; Product Simply cannot directly inspect or control those backend systems.
AI-powered features
Some features use Google Gemini or other disclosed AI services. Prompts and the limited course or session context needed to provide a feature may be transmitted to those providers for processing. AI outputs may be inaccurate or incomplete. Provider handling is also governed by the terms and safeguards applicable to those services.
Analytics, cookies, and similar technologies
Product Simply may use Google Analytics, PostHog, Vercel Analytics, and Speed Insights to understand use, attribution, errors, and performance. These tools may use cookies or similar storage subject to browser settings and consent controls. Director+ funnel events exclude applicant names, email addresses, LinkedIn URLs, application notes, exact session times, signer names, and transcript content.
How we share information
Product Simply shares information with service providers only as needed to operate the services. These may include Supabase for authentication and databases; Stripe for payments; Resend and Loops for email; Vercel for hosting and performance; PostHog and Google Analytics for analytics; and Google for sign-in, Calendar, Meet, Drive deletion, transcription, and Gemini processing.
Information may also be disclosed when required by law, to protect rights and safety, investigate fraud or abuse, enforce agreements, or support a merger, financing, acquisition, reorganization, or sale of assets subject to appropriate safeguards.
Retention and security
Product Simply retains information only for as long as reasonably necessary for the purpose for which it was collected, to provide and secure the services, maintain customer and transaction records, comply with law, enforce agreements, prevent fraud, and resolve disputes. Different records therefore have different retention periods. Aggregated or de-identified information may be retained longer.
Product Simply uses reasonable administrative, technical, and organizational safeguards, including access controls, row-level database protections, provider-file identifiers restricted to server-side operations, and retryable audit records. No electronic system is completely secure.
Your choices and privacy requests
Depending on applicable law, you may request access, export, correction, deletion, objection, or restriction. Signed-in customers can submit access, export, correction, and account-deletion requests from account settings. The system records the request, emails a reference to the customer, alerts Product Simply, and sends daily reminders when an unresolved request approaches its internal deadline or becomes overdue.
Transcript deletion is available directly from the relevant session. Local content deletion is immediate; completion includes deletion of the identified Google source artifacts. Account deletion and broader deletion requests require review because Product Simply may need to retain payment, agreement, consent, fraud-prevention, security, tax, or dispute records.
You may also send a request to help@productsimply.com. Product Simply may need to verify your identity before fulfilling a request.
Contact and policy changes
Send privacy questions or requests to help@productsimply.com. Product Simply may update this policy and will provide notice of material changes by posting an updated effective date, through the service, or by email where appropriate.