ON THIS PAGE
01. Who We Are
02. Data We Collect
03. How We Use Your Data
04. Legal Basis (GDPR)
05. Data Sharing
06. Data Retention
07. Your Rights
08. Cookies
09. International Transfers
10. Security
11. Children
12. Changes
13. Contact & DPO
VERSION1.0
EFFECTIVEApr 1, 2025
REGULATIONGDPR Β· ePrivacy
CONTROLLERMeetCost.live
πŸ”’ LEGAL DOCUMENT

Privacy Policy

This Privacy Policy explains what personal data MeetCost.live collects, how we use it, and what rights you have. We are committed to full compliance with the General Data Protection Regulation (GDPR) and applicable EU privacy law.

SECTION 01
Who We Are

MeetCost.live ("we", "us", "our") is the data controller responsible for the personal data collected through this website and the Service. We operate under the laws of the Slovak Republic as a member state of the European Union.

Data Controller: MeetCost.live
Contact: privacy@meetcost.live
Registered jurisdiction: Slovak Republic, European Union

For questions about how we handle your personal data, please contact us at privacy@meetcost.live.

SECTION 02
Data We Collect

We collect personal data in the following categories:

2.1 Account & Profile Data

When you register, we collect your name, work email address, job title, and profile photo (optional). If you register via Google or Slack OAuth, we receive the data your provider shares, including your name and email.

2.2 Meeting & Usage Data

When you use the Service, we collect data generated by your use, including meeting names, durations, participant counts, hourly rate inputs, cost calculations, categories, and timestamps. This data is Customer Data as defined in our Terms of Service.

2.3 Billing Data

When you purchase a paid plan, billing details including company name, billing address, and VAT/Tax ID are collected. Payment card data is processed directly by LemonSqueezy and is never stored on our servers.

2.4 Technical & Log Data

We automatically collect certain technical data when you access the Service, including IP address, browser type and version, operating system, referring URLs, pages visited, and timestamps. This data is used for security monitoring, performance, and debugging.

2.5 Communication Data

If you contact us by email or through support channels, we retain a record of that correspondence to provide assistance and improve our Service.

2.6 Data You Do Not Need to Provide

The hourly rate inputs you provide are used solely for cost calculations. You are not required to enter real salary data β€” you may use approximate or anonymized figures.

SECTION 03
How We Use Your Data
PURPOSEDATA USEDLEGAL BASIS
Providing and operating the ServiceAccount data, meeting data, usage dataContract performance
Processing payments and invoicingBilling data, account dataContract performance, legal obligation
Sending transactional emailsAccount data, meeting dataContract performance
Security, fraud preventionLog data, account dataLegitimate interests
Product analytics and improvementUsage data, log data (anonymized)Legitimate interests
Customer supportAccount data, communication dataContract performance, legitimate interests
Marketing and product updates (opt-in)Account data (email)Consent
Legal compliance and enforcementAll categories as requiredLegal obligation

We do not use your data for automated decision-making or profiling that produces legal or similarly significant effects.

SECTION 04
Legal Basis for Processing (GDPR)

Under the GDPR, we process your personal data on the following legal bases:

  • β€”Contract performance (Art. 6(1)(b)): Processing necessary to provide the Service you have subscribed to, including account management, meeting tracking, and billing.
  • β€”Legitimate interests (Art. 6(1)(f)): Processing for security, fraud prevention, product improvement, and direct marketing to existing customers β€” where our interests are not overridden by your rights.
  • β€”Legal obligation (Art. 6(1)(c)): Processing required to comply with applicable law, including tax, accounting, and regulatory obligations.
  • β€”Consent (Art. 6(1)(a)): Where we rely on consent (e.g. marketing emails), you may withdraw it at any time without affecting the lawfulness of prior processing.
SECTION 05
Data Sharing & Third Parties

We do not sell, rent, or trade your personal data. We share data only in the following circumstances:

5.1 Service Providers

We engage trusted third-party processors to operate the Service:

PROVIDERPURPOSELOCATION
SupabaseDatabase, authentication, storageEU (AWS eu-central-1)
VercelApplication hosting and CDNEU / USA (SCCs apply)
LemonSqueezyPayment processing, tax complianceUSA (SCCs apply)
ResendTransactional email deliveryUSA (SCCs apply)
SlackIntegration (only if connected by user)USA (SCCs apply)
GoogleCalendar integration, OAuth (if used)USA (SCCs apply)
5.2 Legal Requirements

We may disclose your data to competent authorities if required by law, court order, or to protect the rights, property, or safety of MeetCost.live, our users, or the public.

5.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your data may be transferred to a successor entity, subject to the same privacy protections described in this Policy.

SECTION 06
Data Retention

We retain personal data only for as long as necessary for the purposes described in this Policy or as required by law:

DATA TYPERETENTION PERIOD
Account & profile dataDuration of account + 30 days after deletion
Meeting data (Free plan)Not stored after session ends
Meeting data (Pro plan)30 days rolling
Meeting data (Team plan)6 months rolling
Meeting data (Business / Enterprise)Unlimited during active subscription
Billing & invoice records10 years (legal / tax obligation)
Security & log data90 days
Support correspondence2 years from last interaction

When you delete your account, we initiate deletion of your personal data within 30 days, except where retention is required by law (e.g. financial records).

SECTION 07
Your Rights Under GDPR

As a data subject under the GDPR, you have the following rights:

  • β€”Right of access (Art. 15): Request a copy of the personal data we hold about you.
  • β€”Right to rectification (Art. 16): Request correction of inaccurate or incomplete data.
  • β€”Right to erasure (Art. 17): Request deletion of your data where there is no longer a lawful basis for processing.
  • β€”Right to restriction (Art. 18): Request that we limit the processing of your data in certain circumstances.
  • β€”Right to data portability (Art. 20): Receive your data in a structured, machine-readable format for transfer to another service.
  • β€”Right to object (Art. 21): Object to processing based on legitimate interests, including direct marketing.
  • β€”Right to withdraw consent: Where processing is based on consent, withdraw it at any time via your account Notification settings or by contacting us.

To exercise any of these rights, contact us at privacy@meetcost.live. We will respond within 30 days.

Many of your rights can be exercised directly from your account: update profile data in Settings, export your data or delete your account in Settings β†’ Danger Zone.

SECTION 08
Cookies & Tracking

We use cookies and similar technologies to operate the Service and understand how it is used:

CATEGORYPURPOSEREQUIRED
EssentialSession management, authentication, security (CSRF protection)Yes
FunctionalRemembering preferences such as language and timezoneNo
AnalyticsAggregated, anonymized usage statistics to improve the productNo

We do not use advertising or cross-site tracking cookies. Analytics data is aggregated and does not identify individual users.

SECTION 09
International Data Transfers

Some of our service providers are based outside the European Economic Area (EEA), primarily in the United States. Where personal data is transferred outside the EEA, we ensure that appropriate safeguards are in place in accordance with GDPR Chapter V:

  • β€”Standard Contractual Clauses (SCCs) as approved by the European Commission (Decision 2021/914)
  • β€”Adequacy decisions where applicable
  • β€”Supplementary technical and organizational measures where required

A list of our current sub-processors and the applicable transfer mechanisms is available upon request at privacy@meetcost.live.

SECTION 10
Security

We implement appropriate technical and organizational security measures to protect your personal data. These include:

  • β€”Encryption of data in transit using TLS 1.2 or higher
  • β€”Encryption of data at rest using AES-256
  • β€”Access controls and least-privilege principles for internal systems
  • β€”Regular security reviews and dependency audits
  • β€”Incident response procedures with notification obligations

In the event of a personal data breach, we will notify the relevant supervisory authority within 72 hours and affected users without undue delay, as required by GDPR Art. 33–34.

To report a security vulnerability, contact security@meetcost.live.

SECTION 11
Children's Privacy

The Service is intended for use by business professionals and is not directed at children under the age of 16. We do not knowingly collect personal data from anyone under 16. If we become aware that we have inadvertently collected such data, we will delete it promptly.

If you believe a child under 16 has provided us with personal data, please contact us at privacy@meetcost.live.

SECTION 12
Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will notify you by email and/or by a prominent notice within the Service at least 14 days before the changes take effect.

The date of the most recent revision is always shown at the top of this page. We encourage you to review this Policy periodically. Your continued use of the Service after the effective date constitutes acceptance of the revised Policy.

All previous versions of this Policy are available upon request.

SECTION 13
Contact & Data Protection Officer

For any privacy-related questions, requests to exercise your rights, or concerns regarding our data practices, please contact us:

MeetCost.live β€” Privacy Team
Email: privacy@meetcost.live
Security reports: security@meetcost.live
General: hello@meetcost.live

We aim to respond to all privacy requests within 30 calendar days. For complex requests, we may extend this period by an additional 60 days with prior notice.

If you are not satisfied with our response, you have the right to lodge a complaint with the Slovak Data Protection Authority:

Úrad na ochranu osobných údajov Slovenskej republiky
HraničnÑ 12, 820 07 Bratislava
Web: dataprotection.gov.sk