Privacy Policy
How we collect, use, and protect your information.
Effective Date: April 11, 2026 | Last Updated: April 11, 2026
Easy Wills & Trusts ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our estate planning services.
1. Information We Collect
Personal Information: Name, email address, date of birth, phone number, and mailing address collected when you create an account or complete our questionnaire.
Sensitive Information: Social Security Numbers (SSNs) may be collected for trust documents. SSNs are encrypted at rest using Fernet symmetric encryption and are never stored in plain text.
Financial Information: Payment is processed by Stripe. We never store your credit card numbers — only the payment confirmation and amount.
2. How We Use Your Information
- Provide estate planning document preparation services
- Generate your legal documents based on your responses
- Process payments for document access
- Communicate with you about your account and documents
- Comply with legal obligations
3. Third-Party Services
We use a limited set of trusted third-party services:
- Stripe — Payment processing. Stripe is PCI DSS compliant. See Stripe's Privacy Policy.
- Azure (Microsoft) — Cloud hosting and data storage. Your data is stored in United States data centers. See Microsoft's Privacy Statement.
- hCaptcha — Bot protection on account registration. Minimal data is processed. See hCaptcha's Privacy Policy.
We do not sell your personal information to third parties.
4. Cookies and Tracking
We use only essential cookies necessary to operate the service:
- Session cookie — Keeps you logged in during your session
- CSRF token — Protects against cross-site request forgery attacks
We do not use advertising cookies, third-party analytics, or behavioral tracking.
5. Data Security
- SSNs and sensitive PII encrypted using Fernet (AES-128-CBC with HMAC)
- HTTPS enforced with HSTS (HTTP Strict Transport Security)
- All database connections encrypted in transit
- Login rate limiting to prevent brute-force attacks
6. Your Rights
- Access: View and update your personal information on your profile page
- Correction: Correct inaccurate information at any time
- Deletion: Delete your account and all associated data from your profile page
- Documents: Download your generated documents at any time while your account is active
7. Data Retention
When you delete your account:
- All personal information (name, DOB, address, SSN) is deleted immediately
- All trust documents, questionnaire responses, and account data are deleted immediately
- Payment transaction records are anonymized (amounts and dates retained for legal/tax purposes, but no longer linked to you)
Stripe retains payment records per their legal obligations, independent of our system.
8. Children's Privacy
Our service is intended for adults 18 years of age and older. We do not knowingly collect personal information from children under 18. If you believe a child under 18 has provided us with personal information, please contact us immediately and we will delete it.
9. Changes to This Policy
We will notify you via email of any material changes to this Privacy Policy before they take effect. We will also update the "Last Updated" date at the top of this page. Continued use of the service after notification constitutes acceptance of the updated policy.
10. Contact Us
If you have questions about this Privacy Policy or how we handle your data, please contact us: