1. Information We Collect
This policy applies to Coast FIRE Advisor, including its Coast FIRE Calculator feature (collectively, "the Service"), operated by Hancock Financial Tools.
Information You Provide
- Email address — collected when you subscribe, used for account recovery and transactional emails
Information Collected Automatically
- IP address — logged when you use the API to help you monitor account activity and detect unauthorized access
- Session cookies — used for authentication by us and our service providers (Clerk, Stripe); no tracking or advertising cookies are used
Information Stored Locally on Your Device
- Calculator inputs — your age, retirement age, spending, assets, contribution, and rate assumptions are saved in your browser's localStorage for convenience
This data never leaves your device unless you explicitly generate a report.
2. How We Use Your Information
- Process your subscription and payments
- Send transactional emails (welcome messages, subscription updates)
- Display your recent usage and IP addresses so you can detect unauthorized access
- Generate PDF and XLSX reports based on the inputs you submit
We do not sell your personal information. We do not use your data for advertising or marketing purposes.
3. Third-Party Services
We use the following services to operate the Service:
- Clerk — authentication. Clerk handles sign-in and account management. See Clerk's Privacy Policy.
- Stripe — payment processing. Stripe collects payment information directly; we do not store your card details. See Stripe's Privacy Policy.
- Resend — transactional email delivery. See Resend's Privacy Policy.
- Fly.io — application hosting. See Fly.io's Privacy Policy.
4. Cookies and Local Storage
We and our service providers (Clerk for authentication, Stripe for payments) use cookies that are strictly necessary for the service to function. These include session cookies and security tokens. We do not use tracking or advertising cookies.
We use browser localStorage to save your calculator inputs locally on your device for convenience. You can clear this data at any time using your browser's developer tools or by clearing site data.
5. Data Retention
- Email address — retained while your subscription is active; deleted upon request after cancellation
- IP addresses — retained in memory for 24 hours for usage monitoring; not persisted to disk
- Calculator inputs — stored only in your browser; we do not retain these on our servers
- Generated reports — not stored; delivered directly to your browser and not retained
6. Your Rights
The Service is intended for users in the United States. All calculations assume US dollars (USD). Depending on your state, you may have the following rights:
- Access — request a copy of the personal data we hold about you
- Correction — request correction of inaccurate data
- Deletion — request deletion of your personal data
- Portability — request your data in a portable format
Global Privacy Control (GPC)
We honor the Global Privacy Control signal. If your browser sends a GPC signal, we treat it as a valid opt-out request under applicable laws including the California Consumer Privacy Act (CCPA) and the Colorado Privacy Act (CPA).
Since we do not sell or share personal information for targeted advertising, a GPC signal will not change your experience—but we recognize and respect the signal as an expression of your privacy preferences.
California Residents (CCPA/CPRA)
California residents have the right to know what personal information is collected, request deletion, and opt out of the sale or sharing of personal information. We do not sell or share personal information. We honor GPC signals as valid opt-out requests.
Colorado Residents (CPA)
Colorado residents have rights to access, correct, delete, and obtain a portable copy of personal data, as well as the right to opt out of targeted advertising, sale of personal data, and profiling. We do not engage in these activities. We honor GPC signals as valid opt-out requests.
7. Data Security
We implement appropriate technical measures to protect your data, including TLS encryption for all connections and secure token handling. For more details, see our Security Policy.
8. Children's Privacy
The Service is not intended for users under 18 years of age. We do not knowingly collect personal information from children.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify subscribers of material changes via email. The effective date at the top of this page indicates when the policy was last revised.
10. Data Controller
The data controller for information collected through Coast FIRE Advisor is:
PO Box 1788
Framingham, MA 01701
11. Contact Us
If you have questions about this Privacy Policy or wish to exercise your rights, contact us: