Privacy Policy
Last updated: May 2026
E2 Studio ("we", "us") operates a self-help document preparation platform for E-2 visa applicants. This Privacy Policy describes what information we collect, how we use it, where it is stored, and your rights with respect to that information.
1. Information We Collect
Account & sign-in data: When you create an account we store your email address and (for Google sign-in) your name and profile image as returned by Google OAuth. We do not store passwords. The Service is passwordless (Google OAuth + magic link).
Eligibility wizard inputs: Your answers to the 12-question pre-paywall wizard, including citizenship, age range, investment amount range, sector, and other non-PII profile attributes. We do not collect government IDs, passport numbers, or banking details at the eligibility stage.
Business plan wizard inputs: The 7-step business plan inputs you provide after upgrading, including company overview, market analysis, financial projections, team plans, and risk mitigations. These inputs feed the AI generator and remain in your account so you can re-generate the plan if needed.
Generated AI output: Your eligibility report and your business plan content are stored against your account so they can be re-rendered, re-downloaded, or re-emailed without regenerating from scratch.
Payment record: When you purchase the Starter package, Our Merchant of Record partner sends us a webhook confirming the order. We store the order id, the amount, the currency, and the paid / refunded status. We never receive or store your card details. Those live entirely with our payment partner under their privacy and PCI commitments.
AI interaction logs: For each AI call (eligibility report, business plan outline, generation, validation) we may log the model used, token counts, and duration for billing reconciliation and quality monitoring. We do not log the prompt content beyond what is required to reproduce a failed call.
Technical metadata: IP address (for rate limiting and abuse prevention), browser type, referrer, and approximate request timestamps.
2. How We Use Information
- To authenticate you and serve your account.
- To generate, deliver, and re-deliver your eligibility report and business plan.
- To process payments and reconcile orders with our payment partner.
- To prevent abuse, spam, and excessive API usage (rate limiting by IP and per-email).
- To notify you about product launches, free V1 updates (V1.1 Document Vault, V1.2 Source of Funds), and policy updates.
- To improve the analysis quality over time (aggregate, non-identifying patterns only).
3. Sharing
We do not sell your data. We share information only with the sub-processors that power core Service functions:
- Anthropic:generates the eligibility report and business plan via the Claude API. See Anthropic's privacy commitments for how prompts are handled.
- Resend: sends transactional email (eligibility report delivery, magic-link sign-in, payment confirmation).
- Payment partner: Merchant of Record for the $499 Starter purchase. Handles billing, VAT/sales tax, and refunds.
- Google: when you sign in via Google, Google authenticates you and returns profile data to us.
We do not provide your data to attorneys, marketers, or any third party beyond the sub-processors above.
4. Data Retention & Deletion
We retain your account and generated documents for as long as you keep the account open. You can delete your account at any time from your account settings. The delete action removes your User row, sign-in sessions, application inputs, business plan content, AI interaction logs, and payment record from our database. The action is final and cannot be undone.
If you prefer email-based deletion, send a request from your account email to [email protected] and we will delete your record within 7 days.
5. Your Rights (GDPR & CCPA)
EU residents (GDPR) and California residents (CCPA) have the right to access, correct, port, and delete their personal data. The in-product delete flow exercises the deletion right; for access or portability requests, contact [email protected].
6. Security
Data in transit is encrypted via TLS. Data at rest in our database is encrypted. We do not store sensitive identifiers (passport numbers, SSNs, bank account numbers) anywhere in the Service. PII is redacted from operational logs and AI interaction records.
7. Children
E2 Studio is not directed at children under 18. The eligibility wizard rejects entries marked as under 18, and the Starter purchase requires a government-issued payment method.
8. Cookies & Local Storage
We use cookies grouped into three categories. The consent banner shown on first visit lets you accept all, reject non-essential, or customize per category. Your choices are stored in an e2_consent cookie (365-day retention) and you can change them anytime via the Cookie preferences link in the footer.
Strict-necessary: always on. Required for the Service to function. Cannot be disabled.
- Authentication session: Auth.js session cookie (HttpOnly, Secure, SameSite=Lax), required for sign-in. Cleared on sign-out.
- Magic-link verification: short-lived token cookies for email login.
- CSRF and rate-limit identifiers: request-bound, no client-readable identifiers stored.
Functional: optional, off by default. Stores preference state so the Service can remember your interactions across sessions.
e2_survey_popup_dismissed(30 days) ande2_survey_submitted(365 days): prevent the research survey popup from re-appearing after dismissal or completion. These cookies contain no PII. If you do not enable Functional consent, the survey popup is not shown and no dedup cookie is set after submission.
Analytics: optional, off by default. Currently we use Cloudflare Web Analytics, which is cookie-less by default and collects aggregate, anonymized site usage. This category is reserved for future product analytics tooling (e.g., PostHog) that would set additional cookies.
You can also clear cookies anytime via your browser settings. Clearing the e2_consent cookie causes the banner to reappear on next visit.
9. Research Survey
We may invite you, via a one-time popup on the landing page, to participate in a 16-question anonymous research survey. Participation is optional. Responses help us prioritize V1.1 product features.
Survey responses include: your answers (closed and open-text), submission timestamp, locale (TR or EN), and a truncated browser user-agent string (first 200 characters) for bot filtering. We do not collect personally identifying information (name, email, IP address) with survey submissions.
Open-text answers (questions about your pain points or feature gaps) may, by your own typing, contain personal references. Founder reviews these for product development. We retain survey responses for 6 months and then auto-delete them.
10. Changes
We may update this Privacy Policy. Material changes will be announced by email to account holders and posted with an updated "Last updated" date here.
11. Contact
Privacy questions: [email protected]