Trust & Security
Your privacy is fundamental to how we build and operate Landera.
At Landera, we believe privacy is a fundamental right. We are committed to being transparent about our data practices, giving you control over your personal information, and protecting your data with industry-leading security measures. We comply with GDPR, CCPA, and other applicable data protection regulations worldwide.
The General Data Protection Regulation (GDPR) is a comprehensive data protection law that applies to individuals in the European Economic Area (EEA). Landera is committed to full GDPR compliance.
We process your personal data under the following legal bases:
If you are located in the EEA, you have the following rights:
Request a copy of all personal data we hold about you.
Request correction of inaccurate or incomplete personal data.
Request deletion of your personal data under certain circumstances.
Request that we limit how we use your data in certain situations.
Receive your data in a structured, machine-readable format.
Object to processing based on legitimate interests or for direct marketing.
Withdraw consent at any time where processing is based on consent.
File a complaint with your local data protection authority.
California residents have additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
Note: We do not sell your personal information to third parties.
| Data Category | Purpose | Retention |
|---|---|---|
| Account Data | Authentication, account management | Until account deletion + 30 days |
| Resume Content | AI optimization service | Until account deletion + 30 days |
| Payment Data | Subscription billing | 7 years (legal requirement) |
| Usage Analytics | Service improvement | 26 months |
| Support Communications | Customer support | 3 years |
Your data may be transferred to and processed in the United States. For transfers from the EEA, UK, or Switzerland, we rely on:
We use the following sub-processors to provide our Service:
| Provider | Purpose | Location |
|---|---|---|
| Supabase | Database & Authentication | United States |
| Stripe | Payment Processing | United States |
| OpenAI | AI Processing | United States |
| Vercel | Website Hosting | United States |
| SendGrid | Email Delivery | United States |
| Google Analytics | Website Analytics | United States |
We implement comprehensive technical and organizational measures to protect your data:
In the event of a data breach that affects your personal data, we will notify the relevant supervisory authority within 72 hours as required by GDPR. If the breach is likely to result in a high risk to your rights and freedoms, we will also notify you directly without undue delay.
To exercise any of your privacy rights, you can:
We will respond to your request within 30 days. We may need to verify your identity before processing your request.
For questions about our data practices or to exercise your rights, contact our Data Protection Officer:
Email: privacy@landera.ai
Response Time: Within 30 days
Related policies: Privacy Policy • Terms of Service