Amorio

Legal

Privacy Policy

Last updated: 26 June 2026

Who we are

Amorio ("we", "us", "our") is operated by Amorio. We provide a wedding planning workspace for couples and professional planners.

If you have questions about this policy or how we handle personal data, contact us at privacy@amorio.app.

Data we collect

We collect information you provide directly and information generated when you use the service:

Account data: your name, email address, and authentication details when you sign up or sign in using email one-time codes.

Workspace and event data: wedding details, itineraries, notes, vendor information, seating plans, menus, announcements, and other content you add to your workspace.

Guest data: names, email addresses, RSVP responses, dietary and meal preferences, seating assignments, and related guest information you upload or collect through RSVP pages.

Team and collaboration data: invitations sent to collaborators and their acceptance status.

Support data: subject, message content, and optional file attachments when you contact support.

Billing data: plan selection, subscription status, and payment-related metadata. Card details are collected and processed by Stripe; we do not store full card numbers on our servers.

Technical data: basic session and usage information needed to operate and secure the service (for example, browser type and IP address in server logs).

How we use your data

We use personal data to:

Provide, maintain, and improve the Amorio service.

Authenticate you and manage your account.

Process billing, trials, and subscriptions.

Send transactional emails such as sign-in codes, workspace invitations, and (where enabled) announcements you choose to send to guests.

Respond to support requests.

Protect the security and integrity of our platform and comply with legal obligations.

We do not sell your personal data. We do not send marketing emails unless you have explicitly opted in, and we do not currently operate a marketing email programme.

Service providers and processors

We use trusted third parties to help us run Amorio. They process data on our instructions and only as needed to provide their services:

Neon — hosts our PostgreSQL database where workspace and account data is stored.

Stripe — processes payments, manages subscriptions, and stores billing-related customer records.

Resend — delivers transactional emails such as sign-in codes and invitations.

Vercel — hosts the Amorio web application in production.

Each provider maintains its own privacy and security practices. We choose providers that offer appropriate safeguards for personal data.

Guest data and your responsibilities

If you add guest information to a workspace, you are typically the data controller for that guest data. Amorio acts as a processor, handling guest data on your instructions so you can manage RSVPs, seating, and communications.

You are responsible for ensuring you have a lawful basis to collect and upload guest personal data (for example, because guests have consented or it is necessary for wedding arrangements), and for providing guests with appropriate privacy information where required.

How long we keep data

We retain account and workspace data while your account is active and for a reasonable period afterwards so you can reactivate or export information, unless you ask us to delete it sooner.

Billing and transaction records may be kept for longer where required for accounting, tax, or legal compliance.

Support requests and related attachments are retained as long as needed to resolve your enquiry and maintain a record of our communications.

We may anonymise or delete data that is no longer needed for the purposes described in this policy.

Your rights

Under UK data protection law, you may have the right to access, rectify, erase, restrict, or object to certain processing of your personal data, and to data portability where applicable.

You may also withdraw consent at any time where processing is based on consent, without affecting the lawfulness of processing before withdrawal.

To exercise your rights, contact us at privacy@amorio.app. We may need to verify your identity before responding.

You have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) if you believe we have not handled your data properly.

Security

We implement appropriate technical and organisational measures designed to protect personal data against unauthorised access, loss, or misuse. No online service can guarantee absolute security, but we work to keep Amorio safe and review our practices as the product grows.

International transfers

Some of our service providers are based outside the UK, including in the United States. Where personal data is transferred internationally, we rely on appropriate safeguards such as the UK International Data Transfer Agreement, UK Addendum to EU Standard Contractual Clauses, or other mechanisms recognised under UK law.

Children

Amorio is not directed at children under 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will take steps to delete it.

Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will post the updated policy on this page and revise the "Last updated" date. Continued use of Amorio after changes take effect means you accept the updated policy.

Contact

For privacy-related questions or requests, email us at privacy@amorio.app.

Template policy — have a solicitor review before relying on it in production.