Privacy Policy

Last updated: March 2026

The short version: We collect only what we need to run the service, we never sell your data, and your congregation's information stays yours.

This Privacy Policy explains how SermonCraft Pro ("we", "our", or "us") collects, uses, and protects your information when you use sermoncraftpro.com and app.sermoncraftpro.com ("the Service").

1. Information We Collect

Account information: When you register, we collect your email address, name, and church name. This is stored securely in our database (Supabase).

Payment information: Billing is handled entirely by Stripe. We never see or store your full credit card number — only a customer ID that Stripe assigns to you.

Content you create: Sermons, topics, series plans, and other content you generate or save in the app are stored in your account. This content belongs to you.

Congregation data: If you enter congregation information (size, demographics, groups) or connect Planning Center, this data is stored and used exclusively to personalize your AI-generated content. It is never sold, shared with advertisers, or used for any purpose other than improving your SermonCraft Pro experience.

Usage data: We track how many generations you use per month to enforce plan limits. We may also collect general analytics (page views, feature usage) to improve the product.

Planning Center data: If you connect Planning Center via OAuth, we store an access token to make API calls on your behalf. We access only the data necessary — service plans and congregation information. We do not store your Planning Center password.

2. How We Use Your Information

3. What We Never Do

4. AI and Your Data

When you generate content, your prompts are sent to Anthropic's Claude API. Anthropic's privacy policy governs how they handle API data. We do not send personally identifiable information about your congregation members to the AI — only aggregate context (e.g. "congregation of 200, multigenerational, suburban").

5. Data Sharing

We share data only with trusted service providers necessary to operate the Service:

All providers are contractually required to protect your data and use it only for the services they provide to us.

6. Data Security

We take security seriously. Your data is encrypted in transit (HTTPS) and at rest. API keys and credentials are stored as environment variables, never in code. We use Supabase Row Level Security so that users can only access their own data.

7. Data Retention

We retain your account data while your account is active. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it by law (e.g. billing records).

8. Your Rights

You have the right to:

To exercise any of these rights, email us at jporo@sermoncraftpro.com.

9. Cookies

We use minimal cookies — only what's necessary for authentication and session management. We do not use advertising cookies or third-party tracking cookies.

10. Children's Privacy

SermonCraft Pro is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, contact us at jporo@sermoncraftpro.com.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by email or in-app notice. Continued use of the Service after changes constitutes acceptance of the updated policy.

12. Contact Us

Questions about this Privacy Policy or how we handle your data? We’d love to hear from you. Reach us at jporo@sermoncraftpro.com and we typically respond within 1–4 hours.