Wellpage Privacy Policy
Effective date: August 20, 2026.
This policy describes what Wellpage does with your information today. See also our Terms of Service.
Who we are
Wellpage (wellpage.com) is a marketing platform for small businesses: campaigns, landing pages, email, social posts, reviews, and a simple CRM, with AI-assisted content creation we call the Marketing Brain. This policy explains what information we collect, why, where it goes, and the choices you have — in plain English.
Information we collect
Account information. Your name, email address, password (stored as a secure hash by our authentication provider), workspace name, and team membership/roles.
Business and brand information you provide. Your business profile (name, address, hours, services, links, brand voice), Brand Library uploads (documents, photos, logos), and the persistent “Brand Memory” notes Wellpage keeps to ground what it writes for you.
Your customers’ contact data. Contacts you add, import, or capture through your landing-page forms (names, emails, phones, tags, custom fields, opt-in status). You own this data; we process it only to run your marketing.
Content you create. Campaigns, emails, landing pages, social posts, and their edit and send history.
Usage and billing. Plan, metered usage (e.g. AI generations), payment status via our payment processor (we never store full card numbers), and technical logs (errors, security events, an audit trail of meaningful actions).
AI assistants and the Wellpage connector
Wellpage can connect to AI assistants (such as Claude or ChatGPT) through our connector. If you choose to connect one:
— The assistant acts only with the access you authorize, scoped to your workspace, using a revocable connection token. Every action it takes is recorded in your workspace’s audit trail.
— The assistant can prepare and edit drafts and read your marketing data. Irreversible actions — sending email, publishing, spending, connecting accounts, deleting, payments, and permissions — always require your explicit in-app approval. The assistant only receives a link; you take the action.
— Content the assistant reads or drafts passes through that assistant’s platform, governed by that platform’s own privacy terms. We don’t sell or share your data with those platforms beyond what the connection you authorized requires.
You can disconnect an assistant at any time, which revokes its token.
How we use information
To provide the service: build and send your campaigns, host your pages, store your contacts, and show your results. To ground AI generation in yourbrand (your profile, library, and memory — with a visible “Sources used” record). To meter usage, bill plans, prevent abuse, and keep the service secure. We do not sell your data or your customers’ data, and we don’t use your customers’ contact data for anything except your own marketing.
Who processes data for us
We use a small set of service providers, each only for its job:
— Supabase (database, authentication, file storage) and Vercel (hosting).
— Stripe (payments and subscriptions).
— Mailgun (marketing email you send) and Postmark (transactional email such as invites and password resets).
— Anthropic (AI text generation) and fal.ai (AI image generation). Only the content needed for the specific generation is sent (your brief, relevant brand context); we don’t send your contact lists to AI providers.
— A search-demand data provider. We send the words and places a piece of marketing is about — for example a service and a city — so we can ground copy in what people actually search for. No personal data and none of your contacts are sent.
— A social publishing provider for scheduling and posting to your connected social accounts, and a stock-photo provider (Pixabay) when you search stock images.
— Sentry (error monitoring).
When you connect an advertising or social platform yourself, data also goes to that platform under your account with it — for example conversion measurement sent to Google or Meta for ads you chose to run. That is the connection you authorized, and you can disconnect it at any time.
Cookies and tracking
On Wellpage’s own site and on the landing pages you publish, we use a first-party analytics cookie to count visits and attribute results, and we store an advertising click id when a visitor arrives from an ad you are running. Nothing else is set for tracking, and there are no third-party advertising cookies on your published pages beyond the tags you choose to add.
Consent is a positive act, and where consent is required we ask first. Visitors in the EEA, the UK and Switzerland — and any visitor whose location we can’t determine — see a banner before anything is stored, with refusing exactly as easy as accepting. Until they choose, every signal is off: no analytics cookie, no click-id storage, no ad signals. Elsewhere those signals are on by default and can be turned off. A visitor’s choice is remembered for 180 days.
Retention and deletion
Your data stays as long as your workspace exists. If you delete content, it’s removed from your workspace; short-lived backups age out on a schedule.
If your plan lapses, your data is kept — not deleted. When a subscription is cancelled or a payment goes unpaid, paid features switch off and published pages stop being served, but your workspace, content and contacts stay exactly as they were. You can still log in, read and export them, and restarting a plan restores everything. We will give you notice before removing a long-dormant workspace.
Deleting your workspace is immediate and permanent. An Owner can delete it from Settings. We cancel the subscription, cancel scheduled posts, release connected accounts, unpublish your pages, release any custom domain, and then delete the workspace and everything in it. It is a real deletion, not an archive, and we cannot recover it — export first. Your login itself is kept, because you may own other workspaces, along with the billing records we are required to keep. You can also ask us to delete specific data — see contact below.
Security
Data is encrypted in transit, access is scoped per workspace at the database layer (row-level security), staff actions that touch customer data are audit-logged, and connector access uses scoped, revocable tokens. No internet service can promise perfect security, but we build so that a mistake in one place doesn’t expose everything.
Your choices and rights
You can access and update your information in the app, export your contacts, opt out of optional notifications (they’re off by default), disconnect any connected assistant or social account, and request a copy or deletion of your data. Depending on where you live (e.g. EEA/UK GDPR, California CCPA), you may have additional statutory rights — we honor requests regardless of geography.
Recipients of email sent through Wellpage can unsubscribe via the link in every marketing email; suppression is enforced automatically.
Children
Wellpage is a business tool and isn’t directed at children under 16; we don’t knowingly collect their data.
Changes and contact
If this policy changes materially, we’ll note it here and, for significant changes, tell you in the app or by email. Questions or requests: aaron@wellpage.com.