My Prep Plan

Privacy Policy

Last updated: April 7, 2026

Introduction

My Prep Plan (“we”, “us”, “our”) operates myprepplan.app. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our Service. We are committed to compliance with Canada's Personal Information Protection and Electronic Documents Act (PIPEDA) and Canada's Anti-Spam Legislation (CASL).

Information We Collect

Quiz Responses: When you complete the preparedness quiz, we collect your answers including your ZIP code or postal code prefix (FSA). Quiz responses are stored anonymously — we do not require an account or collect your name to generate a score.

Email Address (optional): If you choose to subscribe to our email series, we collect your email address.

Consent Records: When you subscribe, we store: the verbatim consent text you agreed to, a SHA-256 hash of your IP address (not your actual IP address), and the timestamp of your consent. This is required by CASL to demonstrate proof of express consent.

Analytics: We use Plausible Analytics, a privacy-focused analytics service that does not use cookies, does not collect personal data, and does not track individual users across sites. Plausible collects aggregate page view and event data only. No cookie consent banner is required.

How We Use Your Information

Legal Basis for Processing

Under PIPEDA, we process your personal information based on: (a) your express consent for email communications (CASL-compliant opt-in); (b) legitimate interest for quiz scoring (necessary to provide the Service you requested). You may withdraw consent at any time by unsubscribing.

Data Retention

Data Sharing

We do not sell, trade, or share your personal information with third parties, except with the following service providers who process data on our behalf:

All service providers are bound by their respective privacy policies and data processing agreements.

Your Rights

Under PIPEDA, you have the right to:

To exercise any of these rights, contact us at privacy@myprepplan.app. We will respond within 30 days.

Unsubscribe Process

Every email we send includes an unsubscribe link. Clicking the link immediately removes you from all future emails. You can also unsubscribe by contacting us at privacy@myprepplan.app. Per CASL requirements, we process all unsubscribe requests within 10 business days (our system processes them immediately upon click).

Security

We implement reasonable security measures to protect your personal information, including: encrypted connections (HTTPS), database row-level security policies, server-side only database access (no client-side database exposure), and hashed IP addresses (SHA-256, one-way — original IP cannot be recovered).

Children's Privacy

The Service is not intended for children under 13. We do not knowingly collect personal information from children under 13.

International Data Transfers

Your data may be processed in the United States and Canada by our service providers (Supabase, Vercel, Resend). These transfers are governed by the service providers' data processing agreements.

Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated “Last updated” date. We encourage you to review this page periodically.

Contact

For privacy-related questions or to exercise your rights, contact us at privacy@myprepplan.app.