Last updated:
Introduction and Who We Are
Fire Stack provides tools that help users generate secure Firestore Security Rules from plain-language descriptions. This Privacy Policy explains how we collect, use, store, and protect data when you use our website and services. We are committed to transparent data practices and to respecting your rights under applicable privacy laws, including the General Data Protection Regulation where relevant. By using Fire Stack, you acknowledge this policy and consent to the practices described here, subject to the rights and choices outlined below.
Our goal is to collect only the information needed to operate, improve, and secure our services. We aim to minimize unnecessary processing while maintaining product quality and abuse prevention. If you have questions about this policy, you can contact us at the email listed in the Contact Us section.
What Data We Collect
We may collect several categories of data. First, we process user-provided inputs such as access descriptions entered into the tool interface. Second, we may collect usage data such as interaction timestamps, feature usage patterns, approximate location based on IP, browser type, operating system, and referring source. Third, we use cookies and similar technologies to understand service performance and user behavior. Fourth, server logs may include IP addresses and request metadata for security monitoring, fraud prevention, and system reliability analysis.
We do not require unnecessary personal details to use core features. Where personal data is collected, we aim to limit retention and use it only for legitimate service-related purposes.
How We Use Your Data
We use data to operate the tool, generate requested outputs, monitor performance, troubleshoot technical issues, and improve product quality. Usage analytics help us understand which features are useful and where users experience friction. Security-related data helps us detect abuse, investigate suspicious behavior, and protect infrastructure integrity. We may also use aggregated, de-identified insights for internal planning and product roadmap decisions.
Where legally required, we process data based on consent, contractual necessity, legitimate interests, or legal obligations. We do not use your data for unrelated purposes without an appropriate legal basis.
Cookies and Tracking Technologies
We use cookies and similar technologies to enable essential site behavior, remember preferences, analyze traffic trends, and support advertising where applicable. Essential cookies are necessary for core functionality and security. Analytics cookies help us understand user behavior and improve performance. Advertising cookies may be used by partners to deliver relevant content and measure campaign effectiveness. You can control non-essential cookies through browser settings and consent mechanisms where available.
Disabling some cookies may affect service quality, but core access should remain available where technically feasible.
Third-Party Services
We may use trusted third-party services for analytics and monetization, including Google Analytics and Google AdSense. These providers may collect identifiers, device information, and usage interactions according to their own privacy terms. We configure integrations to support legitimate service operations and strive to limit unnecessary data sharing. Third-party tools may place their own cookies and process data outside your jurisdiction, subject to their safeguards and legal obligations.
We encourage users to review Google Analytics and Google AdSense privacy documentation for more details on their processing practices and controls.
Your Rights Under GDPR
If GDPR applies to your data, you may have rights including access to personal data, rectification of inaccurate information, erasure in specific circumstances, restriction of processing, portability of eligible data, and objection to processing based on legitimate interests. You may also withdraw consent where processing relies on consent. To exercise these rights, contact us using the details in this policy. We may request verification information to protect account security and prevent unauthorized disclosure.
We respond to rights requests within legally required timeframes and explain outcomes clearly, including any lawful exceptions that apply.
Data Retention
We retain data only as long as necessary for operational, legal, and security purposes. Retention periods depend on data type, sensitivity, and legal obligations. Logs and analytics records may be stored for limited periods to support diagnostics and abuse prevention. If data is no longer needed, we delete or anonymize it where practical. Backups may retain limited information temporarily until routine overwrite cycles complete.
Children's Privacy
Fire Stack is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If we learn that such information was provided without verified parental consent where required, we will take steps to delete it promptly. Parents or guardians who believe a child may have submitted information can contact us for assistance.
Changes to This Policy
We may update this Privacy Policy to reflect legal, operational, or product changes. When updates are significant, we will revise the last updated date and, where appropriate, provide additional notice. Continued use of the service after changes become effective indicates acceptance of the revised policy, subject to your legal rights.
Contact Us
For privacy questions, rights requests, or policy concerns, contact us at haithemhamtinee@gmail.com. We are committed to respectful and timely communication.