Skip to content

Legal

Privacy Policy

Last updated: September 27, 2026

DoAIWork (“we”, “us”) operates https://doaiwork.com. This policy explains how we process personal data when you visit our website, create an account, subscribe to our newsletter, or contact us. It is designed to meet requirements under the EU/EEA GDPR, the ePrivacy Directive (cookies), and U.S. state privacy laws such as the California CCPA/CPRA.

1. Controller

Controller: DoAIWork, operating the website doaiwork.com. Contact for privacy requests: hello@doaiwork.com.

If we appoint an EU representative or Data Protection Officer, their details will be published on this page.

2. Data we collect

Account data: email address and authentication identifiers if you register or sign in (via Supabase Auth).

Newsletter data: email address you voluntarily submit.

Technical data: IP address (often truncated/anonymized by hosting providers), browser type, device, pages viewed, approximate location derived from IP (country/region), and diagnostic logs needed to keep the service secure.

Consent preferences: your cookie/analytics choices stored locally.

We do not require an account to read public magazine content.

3. Purposes and legal bases (GDPR)

Provide the website and accounts — contract / legitimate interests (Art. 6(1)(b)/(f)).

Security, fraud prevention, and abuse detection — legitimate interests (Art. 6(1)(f)).

Newsletter and marketing emails — consent (Art. 6(1)(a)); you may withdraw anytime.

Analytics/measurement cookies and similar technologies — consent where required (ePrivacy + GDPR).

Advertising (e.g. Google AdSense) when enabled — consent for non-essential cookies.

Legal compliance and responding to lawful requests — legal obligation (Art. 6(1)(c)).

4. Cookies and similar technologies

Essential cookies keep the site working (session, security, locale preference, cookie consent record).

Analytics cookies (e.g. Vercel Web Analytics) load only after you accept analytics in the cookie banner.

Marketing/advertising cookies load only after marketing consent. Details: Cookie Policy.

5. Sharing and processors

We use service providers who process data on our instructions, including: Vercel (hosting/CDN/analytics), Supabase (database/auth/storage), and email providers if newsletter sending is enabled.

Affiliate partners may receive anonymized click attribution when you use affiliate links; they act as independent controllers for their own sites.

We do not sell personal information for money. Under CCPA, “sale”/“sharing” for cross-context behavioral advertising only occurs if you consent to marketing cookies when such ads are enabled.

6. International transfers

Infrastructure may be located in the EU and/or the United States. Where GDPR applies to transfers outside the EEA/UK, we rely on appropriate safeguards such as Standard Contractual Clauses and vendor compliance programs.

7. Retention

Account data: while the account remains active and for a reasonable period afterward for security/legal claims.

Newsletter: until you unsubscribe or we delete inactive lists.

Logs: typically short periods (days/weeks) unless needed for security investigations.

Consent records: kept as evidence of compliance for up to the applicable limitation period.

8. Your rights (EU/EEA/UK)

You may request access, rectification, erasure, restriction, portability, and object to processing based on legitimate interests. Where processing is based on consent, you may withdraw consent without affecting prior lawful processing.

To exercise rights, email hello@doaiwork.com. You may lodge a complaint with your local supervisory authority (in Spain: Agencia Española de Protección de Datos — AEPD).

9. U.S. privacy rights (including CCPA/CPRA)

If you are a California resident, you may have rights to know/access, delete, correct, and opt out of sale/sharing of personal information, and to non-discrimination for exercising rights.

Submit requests to hello@doaiwork.com. We will verify your request as required by law. Authorized agents may submit requests where permitted.

We do not knowingly sell personal information of consumers under 16.

10. Children

The site is intended for adults and business users. We do not knowingly collect personal data from children under 16 (EU) or under 13 (U.S. COPPA). Contact us to delete any such data.

11. Security

We use HTTPS/TLS in production, access controls, and industry-standard hosting practices. No method of transmission is 100% secure; please use strong passwords for accounts.

12. Changes

We may update this policy. The “Last updated” date will change. Material changes will be highlighted on this page when appropriate.

DoAIWork · doaiwork.com · hello@doaiwork.com