Personal data
Privacy policy
What data we process, why we use it, who receives it, and how to exercise your rights.
Last updated: July 22, 2026
1. Controller
The controller is To be published before commercial launch, trading as MinuteMinds. Contact: privacy@minuteminds.cloud.
MinuteMinds currently operates as a private technical beta. Stripe remains in test mode and no real charges are made.
2. Data we process
- Account: name, email, internal identifier, language, and time zone.
- Email authentication: verification status, single-use action tokens, and delivery, bounce, or complaint events.
- Sources and outputs: files, links, metadata, transcripts, summaries, scripts, and generated audio.
- Usage and security: job states, consumption, technical logs, IP, and events needed to prevent abuse and investigate incidents.
- Billing: plan, balance, movements, and references. Full card details are processed by Stripe.
- Support: messages and information you choose to include.
3. Purposes and bases
- Service delivery, authentication, source processing, and balance: contract or pre-contractual steps.
- Security, fraud prevention, diagnostics, and technical improvement: balanced legitimate interests.
- Accounting, tax, or legal duties: legal obligation.
- Non-essential analytics: consent. If accepted, Google Analytics 4 measures normalized pages and aggregate events without content, titles, emails, or internal identifiers. We do not use advertising pixels or ad personalization.
4. Recipients and transfers
We only disclose data to providers needed for hosting, transcription, summarization, voice, storage, payment, or support. See Providers for the current list.
For processing outside the EEA, adequacy decisions, Standard Contractual Clauses, or other recognized safeguards will be used where required.
5. Retention
- Account: while active and afterward for periods needed to address legal responsibilities.
- Sources and outputs: while retained; deletion removes the active record and associated objects, subject to temporary backups or mandatory retention.
- Billing: for applicable tax and commercial periods.
- Security and support: for proportionate periods, then deleted or anonymized.
- Transactional email: action tokens expire automatically; delivery events are retained only as needed for security, diagnostics, and abuse prevention.
6. Rights
Request access, rectification, erasure, objection, restriction, portability, or consent withdrawal at privacy@minuteminds.cloud. We may verify your identity.
You may complain to the Spanish Data Protection Agency at aepd.es. Withdrawal does not affect earlier processing.
7. Security, minors, and changes
We use proportionate controls: encrypted transport, protected sessions, service separation, limited permissions, backups, and monitoring. No system is infallible.
The service is not intended for anyone under 18. Material changes will be communicated where required.

