Privacy Policy
Last updated: July 15, 2026
1. Who We Are
IdeaMBA (the "Service") is an independent, privately operated online service based in Tel Aviv, Israel (the "Operator", "we", "us"). This policy explains what data we collect, why, and the choices you have. By using the Service you consent to the practices described here.
2. What We Collect
- Account data: your email address and, where provided by your sign-in method, your name and profile image.
- Content you submit: business ideas, descriptions, website URLs you choose to provide, and the reports and documents generated from them.
- Transaction data: your purchase history (items, amounts, dates) and a payment-provider customer reference. Card and payment details are handled entirely by our payment processor — we never receive or store card numbers.
- Usage and technical data: operational logs (such as generation requests, errors, and per-request cost accounting) needed to run, secure, and bill the Service, and cookieless product-usage analytics (pages viewed, features used) that store nothing on your device.
3. Cookies
We use essential cookies only — those required to keep you signed in and to secure the Service. We do not use advertising cookies or cross-site tracking.
4. How We Use Your Data
- To provide the Service: generating your reports and documents from the content you submit.
- To operate accounts, credits, purchases, and subscriptions.
- To secure the Service: abuse prevention, rate limiting, and spend controls.
- To communicate with you about your account, purchases, and support requests.
We do not sell your personal data, and we do not use your business ideas for anything other than generating your own outputs and operating the Service.
5. Service Providers
We rely on a small set of processors to run the Service, each receiving only what its function requires: cloud hosting and database infrastructure, AI model providers (which process the content you submit in order to generate your outputs), an email delivery provider (sign-in codes and transactional emails), a payment processor (checkout, invoices, and subscriptions), and a privacy-focused product-analytics provider (cookieless usage measurement — no advertising trackers, nothing stored on your device). We use AI providers whose API terms state that customer inputs are not used to train their models. These providers may process data outside your country; we rely on their contractual data-protection commitments.
6. Sharing You Control
Reports are private by default. If you create a share link, anyone with that link can view the report until you revoke it. Sample reports marked as public are visible to everyone.
7. Retention and Deletion
We keep your data while your account is active. You can request access to, correction of, or deletion of your personal data at any time via the contact form; deletion requests are honored within 30 days, except for records we must retain for legal, accounting, or fraud-prevention purposes.
8. Security
We use industry-standard measures appropriate to a service of this size: encrypted transport (HTTPS), encrypted storage by our infrastructure providers, scoped access credentials, and abuse controls. No online service can guarantee absolute security; you use the Service with that understanding, and to the maximum extent permitted by law we disclaim liability for events beyond our reasonable control.
9. Children
The Service is not directed at children under 18, and we do not knowingly collect their data. If you believe a minor has provided us data, contact us and we will delete it.
10. Changes and Contact
We may update this policy from time to time; the date above reflects the current version, and material changes will be reasonably communicated. This policy is governed by the laws of the State of Israel, and any dispute relating to it is subject to the exclusive jurisdiction of the competent courts of Tel Aviv–Yafo. Questions or requests: use the contact form.