Privacy Policy

Privacy Policy

Last updated: July 2026

This is how Augment Playbook ("we," "our," "us") collects, uses, and protects your data when you use augmentplaybook.com. We aim to collect as little as we need and share even less.

What we collect

Information you give us during sign-up and discovery: your name, email address, and the answers you provide about your business (industry, size, tools, customers, goals, etc.).

Information collected automatically: IP address and basic request metadata for security (rate limiting, abuse prevention), and aggregated usage data for understanding what's working in the product.

Payment data: we don't store credit card information. Payments are handled entirely by a PCI-compliant third-party payment processor.

How we use it

To generate your playbook (your business profile is sent to a third-party AI model provider as part of the prompt), to send transactional emails about your playbook (recovery links, unlock confirmations, advisor extension confirmations, one-time login codes), and to respond when you contact us. That's it.

We do not send marketing emails. We do not sell your data. We do not use your discovery answers to train AI models.

Where it's stored

Your data is held in access-controlled, encrypted storage on managed cloud infrastructure operated by our hosting provider. Free playbooks are deleted automatically 30 days after creation. Paid playbooks are kept for as long as your account is active.

Third parties we use

We rely on a small number of established service providers to operate the Service. Each processes your data only on our instructions and under its own privacy policy and data-protection terms:

  • AI model provider — generates the playbook content from your discovery answers. Our agreement does not permit your data to be used for model training.
  • Payment processor — handles payments. We never see your card details.
  • Transactional email provider — delivers login codes, unlock confirmations, and recovery links.
  • Hosting and infrastructure provider — runs and secures the Service, provides bot protection, and stores data.

We don't add providers casually, and we don't use any of them for advertising or profiling. If you need the specific companies named — for a vendor review or a data-protection assessment, for example — ask us via the contact form and we'll tell you who they are.

Cookies and tracking

We use a session token stored in your browser's localStorage so you don't have to enter a one-time code every time. That's not a cookie in the legal sense and we don't share it with anyone. We don't use third-party analytics or advertising trackers.

Data retention

Free (unpaid) playbooks: 30 days from creation, then auto-deleted.
Paid playbooks: kept indefinitely while your account is active.
One-time login codes: 10 minutes after they're issued.
Session tokens: up to 30 days, refreshed on use.
Contact form submissions: kept in our email inbox for as long as we need to respond and reference them.

Your rights

You can request a copy of your data, ask us to delete it, or correct anything inaccurate by contacting us via the form. We'll respond within 30 days. If you're in the EU, UK, or California, additional rights may apply under GDPR/CCPA — contact us and we'll honor them.

Children

The Service is intended for business owners and is not directed at children under 16. We don't knowingly collect data from anyone under 16. If you believe we have, please contact us and we'll delete it.

Security

We protect your account with email-based one-time codes (no passwords to leak), session tokens with limited lifetimes, server-side rate limiting on auth and code requests, HTTPS everywhere, and standard security headers. No system is perfectly secure; if you suspect a breach affecting your data, please tell us immediately via the contact form.

Changes to this policy

Material changes will be communicated by email or a prominent notice on the site. The "Last updated" date at the top of this page reflects the most recent revision.

Contact

Questions or requests about your data: use the contact form.