Privacy Policy
Last updated: October 6, 2025
Welcome to Mila Rose Gates. This Privacy Policy explains how we collect, use, store, and share personal information when you access or use our website, mobile experiences, and connected services (collectively, the "Services"). It applies to all users, including those who authenticate with a Google account.
1. Who We Are
The Services are operated by Gates Company ("we," "our," or "us"). If you have questions about this policy or your data, please contact us at privacy@milarosegates.com.
2. Information We Collect
We collect the following types of information:
- Google user data: When you sign in with Google, we receive your Google account's basic profile information, including your name, email address, and profile picture URL, via Google OAuth. We do not request or access any other scopes or Google data beyond basic profile and email.
- Account information from Supabase: We store the email address and authentication identifiers needed to maintain your account, manage authorization, and surface your content.
- Content you provide: If you contribute posts, comments, or files, those materials are stored in our Supabase database and object storage.
- Usage data: We collect analytics events (page views, referrers, device information) through Google Analytics and Vercel Analytics to understand how the Services are used and to improve performance.
- Chat interactions: Conversations with the embedded OpenAI chatbot are sent to OpenAI to generate responses. We do not combine chatbot transcripts with Google user data.
3. How We Use Information
- Authenticate users and maintain secure sessions.
- Personalize your experience, including remembering your profile information and content preferences.
- Provide, maintain, and improve the Services, including blog posts, chat features, and audio streaming.
- Communicate service updates, respond to support requests, and send notices related to account activity.
- Analyze usage trends and safeguard against fraud, abuse, or security threats.
4. How We Share Information
We do not sell personal information or Google user data. We only share data with the following parties, and only as necessary to provide or improve the Services:
- Service providers: Supabase (hosting, database, authentication), OpenAI (chat responses, audio generation), and analytics providers (Google Analytics, Vercel Analytics).
- Legal compliance: We may disclose information if required by law, subpoena, government request, or to protect the rights, property, or safety of our users or the public.
We do not transfer Google user data to third parties except as required to provide the Services or comply with applicable law.
5. Data Retention and Deletion
We retain account information, including Google user data, for as long as your account is active or as needed to provide the Services. You may request account deletion by contacting privacy@milarosegates.com. Upon verification, we will delete your Supabase account records and remove associated Google user data within 30 days, unless we are required to retain certain information for legal or contractual reasons.
6. Data Security
We implement administrative, technical, and physical safeguards to protect personal information. This includes encrypted connections (HTTPS), role-based access controls in Supabase, and monitoring for unauthorized access. While no system is completely secure, we review our practices regularly to keep your data safe.
7. Your Rights & Choices
- Access and correction: You can view and update profile details through your account settings. Contact us for additional corrections.
- Deletion: Request removal of your account or specific content via privacy@milarosegates.com.
- Analytics choices: Browser settings and ad industry tools allow you to control cookies used by Google Analytics. You can learn more at https://tools.google.com/dlpage/gaoptout.
8. Children's Privacy
The Services are intended for a family audience but are not designed for children under 13 to create accounts. If we learn that we have collected personal information from a child without parental consent, we will delete that information promptly.
9. International Data Transfers
We host our infrastructure in the United States. By using the Services, you consent to transferring your data to the United States and other locations where our providers operate.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date at the top and provide additional notice if the changes materially affect Google user data practices. Continued use of the Services after changes become effective constitutes acceptance of the revised policy.
11. Contact Us
For questions or concerns about this Privacy Policy, contact privacy@milarosegates.com or write to Gates Company, 320 4th Ave S Suite 50, Kirkland, WA 98033, USA.