Privacy Policy Generator
Create a privacy policy for your website or app. Pick the data you collect and the services you use, add GDPR or CCPA sections, then copy or download it as Markdown or HTML.
Input
Output
Privacy Policy
Effective date: September 23, 2026
This Privacy Policy explains how [Company name] ("we", "us", or "our") collects, uses, and shares information about you when you use [Website or app name], our website (the "Service").
By using the Service, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use the Service.
Information We Collect
Information you give us
When you use the Service, you may give us:
- Name, such as your first and last name.
- Email address, for example when you sign up, contact us, or subscribe to updates.
Information we collect automatically
When you use the Service, we may collect some information automatically:
- Device and usage data, such as your IP address, browser or device type, operating system, device identifiers, the pages or screens you view, and the date and time of your visits.
- Cookies and similar technologies, as described in the cookies section below.
How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the Service
- Answer your questions and send you messages about the Service
- Understand how the Service is used and improve it
- Detect and prevent fraud, abuse, and security issues
- Comply with our legal obligations
Cookies and Tracking Technologies
Cookies are small text files stored on your device. We and our partners use cookies and similar technologies for these purposes:
- Essential cookies keep the Service working, for example by keeping you signed in.
- Preference cookies remember your settings, such as your language.
- Analytics cookies help us understand how visitors use the Service.
You can block or delete cookies in your browser settings. Some parts of the Service may not work properly without them.
Some browsers send a "Do Not Track" signal. There is no common standard for how to respond to these signals, so the Service does not currently respond to them.
How We Share Your Information
We do not share your personal information with others, except in the following cases:
- Service providers. We work with companies that help us run the Service. They may only use your information to perform services for us.
- Analytics providers, to measure how the Service is used
- Hosting and cloud providers, to store data and run the Service
- Legal reasons. We may disclose information if the law requires it, or to protect the rights, property, or safety of us, our users, or others.
- Business transfers. If we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that deal.
- With your consent. We may share information for other purposes when you ask us to or agree to it.
We do not sell your personal information.
Data Retention
We keep personal information only as long as we need it for the purposes described in this policy, unless the law requires us to keep it longer. When we no longer need it, we delete or anonymize it.
Data Security
We use reasonable technical and organizational measures to protect your information. However, no method of sending or storing data over the internet is completely secure, so we cannot guarantee absolute security.
International Data Transfers
Your information may be stored and processed in countries other than the one you live in. Data protection laws there may differ from those in your country. We take steps to keep your information protected when it is transferred.
When we transfer personal data out of the European Economic Area or the United Kingdom, we rely on safeguards such as the Standard Contractual Clauses approved by the European Commission.
Your Privacy Rights
Depending on where you live, you may have the right to access, correct, or delete your personal information, and to object to or limit how we use it. To make a request, contact us at [Contact email].
Users in the EU and UK (GDPR)
If you are in the European Economic Area or the United Kingdom, [Company name] is the controller of your personal data. We process your personal data on these legal bases:
- Contract, when we need the data to provide the Service you asked for
- Consent, for example for marketing emails or non-essential cookies. You can withdraw your consent at any time.
- Legitimate interests, such as keeping the Service secure and improving it
- Legal obligation, when the law requires us to process the data
You have the right to:
- Access the personal data we hold about you
- Correct data that is inaccurate or incomplete
- Ask us to delete your data
- Restrict or object to how we process your data
- Receive your data in a portable, machine-readable format
- Withdraw your consent at any time, without affecting processing that happened before
We will respond to your request within one month. You also have the right to lodge a complaint with your local data protection authority.
Children's Privacy
The Service is not intended for children under 13, and we do not knowingly collect personal information from them. If you believe that a child under 13 has given us personal information, please contact us and we will delete it.
Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will change the effective date at the top of this policy. If the changes are significant, we will let you know, for example by email or with a notice in the Service.
Contact Us
If you have any questions about this Privacy Policy or your personal information, contact us:
- By email: [Contact email]
Readme
What is a privacy policy?
A privacy policy is a document that explains what personal data a website or app collects, why it collects it, and how it is used, shared, and protected. Most data protection laws, including GDPR and CCPA, require sites and apps that handle personal data to publish one.
Tool description
This tool builds a privacy policy from the details you provide: your company name, site or app details, the platform it applies to, the data you collect, the third-party services you use, and optional GDPR/CCPA sections. It generates the result as live preview, Markdown, and HTML, all of which you can download.
The generated text is a starting template, not legal advice. Review it against what your product actually does before publishing it.
Examples
- A short policy for a personal website that only uses analytics
- A GDPR- and CCPA-ready policy for a SaaS app that stores accounts and takes payments
- A mobile app policy that lists device permissions and third-party sign-in providers
Features
- Covers websites, mobile apps, or both
- Toggle common data types collected, such as names, emails, payment details, or location
- Add sections for analytics, advertising, payment, email marketing, social login, and hosting providers
- Optional GDPR and CCPA sections, plus configurable minimum age and data retention
- Output as formatted preview, Markdown, or HTML, each downloadable
Limitations
The output is a generic template built from your selections. It does not account for every law, industry, or jurisdiction, and it is not a substitute for legal review.
It does not detect what your product actually does; the accuracy of the policy depends entirely on the options you select.