Legal
Privacy Policy
Last updated: May 2026
1. Who we are
WatchMySubs ("we", "our", "us") is a subscription monitoring service operated by H2M Labs, an independent software studio based in India. Our service is available at watchmysubs.com. You can contact us at hello@watchmysubs.com.
2. What we collect
We collect only what is necessary to provide the service:
- Account information: Your email address and name, provided when you sign up via Clerk (our authentication provider).
- Forwarding address: A unique email alias we generate for you (e.g. u_abc123@inbox.watchmysubs.com) so you can forward receipts to us.
- Billing event metadata: When we process a receipt, we extract and store the vendor name, charge amount, currency, billing cycle, event date, and email subject line. We never store the full email body.
- Payment information: Processed entirely by Dodo Payments. We store only your Dodo Payments customer ID and subscription ID — never your card number or payment details.
- Usage data: Basic event logs (e.g. account created, OAuth connected) for auditing. No IP addresses are retained beyond what our hosting provider logs automatically.
3. What we don't collect
- Raw email bodies — emails are read, parsed, and immediately discarded.
- Email attachments.
- Passwords — authentication is managed by Clerk.
- Advertising IDs, cross-site tracking cookies, or data used for ad targeting.
4. How we use your data
- To detect billing anomalies (price changes, duplicate charges, trial conversions, failed payments, zombie subscriptions) and alert you.
- To send you weekly digest emails and real-time alert emails.
- To operate your account and enforce plan limits.
- To process payments via Dodo Payments.
- To debug errors and monitor service health via Sentry.
We do not sell your data. We do not use your data for advertising. We do not share your data with third parties beyond the service providers listed below.
5. Third-party service providers
We share data with the following providers only to the extent necessary to operate the service:
| Provider | Purpose | Data shared |
|---|---|---|
| Clerk | Authentication | Email, name |
| Neon | Database hosting | All stored data |
| Vercel | Hosting & deployment | Request logs |
| Mailgun | Inbound email processing | Forwarded receipts (parsed, not stored) |
| Resend | Outbound emails | Your email address |
| Anthropic | AI receipt parsing | Plain-text email content (billing emails only; raw body discarded after parsing; not used for model training) |
| Gmail OAuth (Pro tier) | OAuth tokens (encrypted) | |
| Dodo Payments | Payments | Email, plan |
| Upstash | Rate limiting | Rate limit keys (hashed user IDs) |
| Sentry | Error monitoring | Anonymised error events |
| Google Analytics 4 | Usage analytics | Anonymised page-view data (no email or name) |
| Microsoft Clarity | Behavioural analytics | Anonymised interaction data (heatmaps, session recordings) |
6. Data retention
We retain your data for as long as your account is active. If you delete your account, all your data — charges, subscriptions, alerts, preferences, Gmail connection — is permanently and immediately deleted via database cascade. No backups containing your data are retained after 30 days.
7. Your rights
You have the right to:
- Access your data — use the data export feature in Settings.
- Delete your data — use the account deletion feature in Settings. Deletion is immediate and permanent.
- Port your data — export as JSON from Settings at any time.
- Correct your data — contact us at hello@watchmysubs.com.
- Object to processing — contact us at hello@watchmysubs.com.
These rights apply under GDPR (EU/UK users) and the Digital Personal Data Protection Act 2023 (Indian users).
9. Security
See our Security page for a full description of our security practices. In summary: data is encrypted at rest and in transit, OAuth tokens are AES-256-GCM encrypted, and we never store raw email content.
10. Changes to this policy
If we make material changes to this policy, we will notify you by email at least 14 days before the changes take effect. Continued use of the service after that date constitutes acceptance.
11. Contact
For privacy questions or requests: hello@watchmysubs.com.