Home / Privacy policy
Your data, in plain words
Privacy policy
Last updated: March 2, 2026. This policy covers the aisletimeline.com website and the contact form published on it.
Who is responsible for your data
The controller of the personal data described here is MLJ, SASU, the company that publishes and operates AisleTimeline. Full company identification, including registration and VAT numbers, appears on the legal notice. The publication director is Jimenez Julien and he is the person who answers privacy requests. You can reach him at jimenezjulien42@gmail.com. We have no sales team buying lists and no marketing department running campaigns against you, which keeps this policy short enough to actually read.
What the contact form collects
The demo request form on the home page is the only place on this website where we ask you for personal information. It collects the following named fields, and nothing else:
- name, your full name, so we know who we are writing back to.
- email, your work email address, which is where the reply goes.
- company, your planning business name.
- role, chosen from a short list such as lead planner, day of coordinator or studio owner.
- request, what you want from the conversation, for example a demo, a walkthrough or a quote.
- size, roughly how many weddings you run in a season and how many coordinators you work with.
- message, your free text description of how you build a run of show today.
- consent, the checkbox recording that you agreed to be contacted about your enquiry.
Three hidden fields travel with the submission for routing purposes: form-name, which identifies the form, subject, which labels the notification, and recipient, which is our own address. A fourth hidden field named bot-field exists only to catch automated spam and is expected to remain empty. Your browser also transmits an IP address and a user agent string with the request, as it does with every page you visit anywhere on the internet.
Why we process it, and on what legal basis
We process the information above for one purpose: to answer your enquiry and, if you want to continue the conversation, to arrange a demonstration and prepare a proposal. Under the GDPR the legal basis is your consent, given by ticking the consent box before you submit, together with our legitimate interest in responding to a business enquiry that you initiated. We do not use these details to build a profile, we do not score you, and we do not run automated decision making of any kind against your submission.
We never sell personal information, we never rent it, and we never share it with advertising networks or data brokers. We do not sell or share personal information for cross context behavioral advertising as those terms are defined by California law, and we have never done so.
How long we keep it
Form submissions are kept for 24 months from the date they arrive, so that we can find the thread again if you come back a season later. After that they are deleted from our records and from the form processor. If you ask us to delete your submission sooner, we do it within 30 days and confirm by email. If your enquiry turns into a paid subscription, the account records that follow are governed by the terms of service and by our data processing agreement rather than by this website policy.
Who processes the data on our behalf
This website is hosted by Netlify, Inc., 512 2nd Street, Suite 200, San Francisco, CA 94107, United States. Form submissions are received, stored and forwarded by Netlify Forms, which acts as our processor under a data processing agreement. Netlify holds the submission in its dashboard and sends us an email notification. Our own email provider then stores the notification in the inbox of the publication director. No other third party receives your submission.
Cookies and tracking
This site sets no advertising cookies, no analytics cookies and no third party trackers. There is no Google Analytics tag, no advertising pixel, no heat map recorder and no session replay tool anywhere on aisletimeline.com. The only network requests leaving your browser besides the page itself are to Google Fonts for the two typefaces used in the design, and Netlify's spam filtering when you submit the form. Because we set no cookies that require consent, you will not find a consent banner here, and that is deliberate.
Your rights in the United States
If you live in California, Colorado, Connecticut, Utah or Virginia, state privacy law gives you the right to know what personal information we hold about you, to obtain a copy of it, to have it corrected if it is wrong, and to have it deleted. California residents may also opt out of the sale or sharing of personal information, though we do neither, and are entitled to be free from discrimination for exercising any of these rights. Residents of Colorado, Connecticut and Virginia may appeal a refusal of a request, and we will answer an appeal within 45 days.
To exercise any of these rights, write to jimenezjulien42@gmail.com with the email address you used on the form. We answer within 45 days and normally much faster. We may ask one clarifying question to confirm that the request is genuinely yours, but we will not demand an account or a copy of your identity documents in order to act.
Your rights in the European Union and the United Kingdom
If the GDPR or the UK GDPR applies to you, you have the right of access, rectification, erasure, restriction of processing, data portability and objection, and you may withdraw your consent at any time without affecting the lawfulness of what came before. Use the same address, jimenezjulien42@gmail.com, and we will reply within one month. If you are not satisfied with our answer you may lodge a complaint with your national supervisory authority. For France that is the Commission Nationale de l'Informatique et des Libertes.
International transfers
MLJ, SASU is established in France and our hosting and form processing run on Netlify infrastructure in the United States. Personal data submitted through this site therefore crosses the Atlantic. Those transfers are covered by the European Commission's standard contractual clauses incorporated into our agreement with Netlify, together with the technical measures Netlify applies to data at rest and in transit. Product data belonging to AisleTimeline subscribers is stored in United States regions.
Security
The site is served over HTTPS only, with a strict transport policy and the security headers listed in our deployment configuration. Access to form submissions is limited to the publication director and to one operations colleague, both using two factor authentication. We review that access list every quarter and remove anyone who no longer needs it. If a data breach affecting your information ever occurs, we will notify the relevant supervisory authority within 72 hours and write to you directly where the law requires it.
Children's privacy
AisleTimeline is a business tool sold to wedding planning companies, and the website is not directed to children. We do not knowingly collect personal information from anyone under the age of 16. If you believe a child has submitted information through our form, write to us and we will delete the record promptly and confirm that we have done so.
Changes to this policy
When this policy changes we update the date at the top of the page and describe what moved. Material changes affecting how we handle existing submissions will also be sent by email to the address on the affected submission. We keep the previous version on file and will send it to you on request so you can see exactly what was different.