Privacy
Free calculations are stored only in your browser. A paid event plan is encrypted on the server so it can be delivered and restored.
Data we process
For a purchase we process event-plan inputs, the calculated shopping list, checklist state, language, Stripe Checkout and Payment Intent IDs, amount, currency, payment status, and the email address supplied by Stripe.
Brorano does not store card numbers, security codes, or complete payment-instrument details; payment processing is handled by Stripe.
Security and retention
The plan and email address are encrypted before database storage. Only a hash of the restoration token is stored, and it remains valid for 30 days. Expired plan content is deleted; necessary payment records may be retained longer where legally required.
Usage analytics and diagnostics
When Azure Application Insights is configured, we process technical usage and diagnostic data to understand page views, calculator steps, errors, and the purchase flow. This includes the page path without query parameters or URL fragments, language, event type, a guest-count bucket, and the plan in use. Browser analytics do not send names, email addresses, exact guest counts, Checkout IDs, restoration tokens, or card data. Application Insights SDK cookies are disabled.
A completed purchase is recorded only after successful server-side confirmation by the signed Stripe webhook. Only language, event type, guest bucket, plan, currency, value, and payment provider are included.
Contact and rights
For access, correction, deletion, or other privacy requests, contact us at support@brorano.com.