Junxn

Privacy

Last updated

Draft

This is a draft prepared for launch review. It describes what Junxn actually does today, in plain language, so that a lawyer can read it against the product before the domain goes live — it has not yet been through that review.

Junxn is one place to plan an event: you find vendors, invite them into your event, talk to them, compare their quotes and book them. This page says what we hold while you do that, who can see it, and what we do not do.

It is written in the same plain words as the rest of the product. If something here is vague, that is a bug — tell us and we will fix the sentence or the software.

The short version

  • We never hold a password, because Junxn does not have any — you sign in with Google or with a link we email you.
  • Your event is private to the family you invite and to the vendors you invite, one conversation at a time.
  • Your phone number is optional, is only ever used to send you updates, and is never a way to sign in.
  • We take no payments in V1, so Junxn never sees a card number.
  • We do not sell your data, and there is nothing here to sell.

How you sign in

There are two ways in and no others: your Google account, or a one-time link sent to your email address. Junxn stores no password, asks for none, and could not leak one. We never see your Google password either — Google tells us your email address and your name, and those two are what we keep.

Signing in sets a session cookie so you stay signed in between pages. If you arrived at the sign-in screen on your way somewhere specific, we also set a short cookie that remembers where you were headed; it lasts fifteen minutes and is deleted the moment you land. Neither cookie follows you off Junxn.

What is in your profile

Your name, the city you plan in, the languages you speak, and — if you choose to give one — a mobile number. That is the whole profile.

The number is there for one reason: so we can send you a WhatsApp update when something on your event actually happens. It is never a login, we never call it, and leaving it blank costs you nothing but the WhatsApp pings. You can change or clear any of this from your profile at any time.

What is in an event, and who can see it

An event workspace holds your functions and their dates, your budget and what you have spent against it, your checklist, the vendor slots you opened, the messages and files in each conversation, the quotes vendors sent you, the bookings you confirmed, and the event-day timeline. Who can read each of those is decided by the database on every single read, not by the page you happen to be on:

  • Your family. The people you invite as members of the event see the event — its functions, budget, checklist, slots and conversations. Nobody else does, signed in or not.
  • A vendor you invited. Sees the one conversation you invited them into, and what it takes to quote for it: the function, its date, the city and the guest count. They do not see your budget, your other vendors, their quotes, or any conversation but their own.
  • A vendor you booked. Sees, in addition, the event-day timeline once you share it — which is the point of sharing it.
  • Everyone. Vendor listings, the community calendar and reviews are public pages, meant to be found. Nothing from inside an event is on them.

Files you attach to a chat live in private storage: only the two sides of that conversation can open them, and a link to one is useless to anyone else. Photos on a vendor listing and photos attached to a review are public, because both are published on purpose.

Reviews are public, and they carry no name

A review can only be written by a family who booked that vendor through Junxn and whose function has already happened. It is published on the vendor's profile with its rating, its words, its photos, its date, and one line of context — the kind of event, the guest count and the city, as in “Telugu wedding · 320 guests · Dallas–Fort Worth”. Your name is not on it and never was, on purpose: what helps the next family is what kind of event it was, not who you are.

A review cannot be edited or withdrawn once it is written, by you, by the vendor, or by us. Junxn can hide one that breaks the rules, and when we do, the reason is recorded and shown to the family who wrote it — we do not rewrite a word of anyone's review.

Email and WhatsApp

We email you when something happens on your event: a vendor was invited or replied, a quote arrived, a booking was confirmed or cancelled, a timeline was shared, a function is a week or a day away, or a vendor you booked can now be reviewed. Those are the only emails Junxn sends. There is no newsletter, and there is no tracking pixel in any of them — we do not know whether you opened one.

If you gave us a number and opted in, three of those — a new quote, a confirmed booking, and an invitation sent to a vendor who is not on Junxn yet — may also arrive on WhatsApp, through Meta's business messaging service. Turn the number off in your profile and they stop.

Cookies and analytics

The only cookies Junxn sets are the two sign-in ones described above. There is no advertising cookie, no tag manager, and no third-party script watching you browse.

When page-view counting is switched on, it is a single cookieless script that counts that a page was viewed — no cookie, nothing stored on your device, no identifier, and nothing that could tie a page view to you, your family or your event. That is why you are not being asked to accept anything on the way in. When it is switched off, the tag is not in the page at all.

Payments

Junxn processes no payments. Deposits and final payments happen directly between you and your vendor, on whatever terms the two of you agree — so Junxn never sees, holds or stores a card number, a bank account or a payment of any kind. Amounts you see on Junxn are quotes and bookings: numbers a vendor typed and you accepted, kept as a record of what was agreed.

Who else touches your data

Junxn is a small product and runs on a small number of services. Each one is here because the product needs it, and none of them is an advertising network:

  • Supabase — the database, sign-in, file storage and live chat. This is where your data actually lives.
  • Netlify — serves the website you are reading.
  • Google Cloud — runs the small service that sends the notification emails.
  • Amazon SES — delivers those emails.
  • Meta — delivers WhatsApp updates, only to a number you gave us and only for the three kinds above.
  • A cookieless analytics provider — counts page views, when that is switched on.

Not all of that is switched on yet: the WhatsApp updates and the page-view counting are both off today, and email delivery goes live with the site. We do not sell, rent or trade your data with anybody, and we do not hand it to advertisers or data brokers. We would hand over what the law required us to, and nothing more.

Keeping it safe

Every table in the database refuses to answer a question the asker has no business asking — the rule is attached to the data itself, so it applies to the website, to our own service and to anything we build later, rather than to a page we remembered to guard. Chat attachments sit in private storage; the keys that could bypass any of this exist only on our server and never in your browser. Nothing is unbreakable, but nothing here rests on a page having asked the right question.

Your choices

  • Change what we hold. Your name, city, languages and number are editable from your profile whenever you like.
  • Stop the WhatsApp updates. Clear your number or turn the opt-in off. Email notifications are how the product tells you a vendor replied, so those stay while your account does.
  • Ask for a copy. Write to us and we will send you what we hold about you.
  • Delete your account. Write to us and we delete it. That takes your profile, your events and everything inside them — functions, budgets, slots, conversations, quotes and bookings — with it. A review you left stays on the vendor's profile with nothing linking it to you, and a vendor listing you owned stays as an unclaimed listing, because other families have already talked to it.

Changes, and how to reach us

If we change what we collect or who can see it, we change this page and move the date at the top. Questions about any of it, or a request from the list above:

Write to hello@junxn.ayu-labs.com (TODO: real address at launch). This is the address Junxn sends from; a mailbox that reads replies is set up before this page goes live.

The other half of the agreement — what Junxn is and is not responsible for — is on the terms page.

Read the terms

Junxn · DFW