Politique de confidentialité
Dernière mise à jour : 28 sept. 2026
Cette page est affichée en anglais, et c’est le texte anglais qui fait foi. Si quelque chose n’est pas clair, écrivez-nous et nous vous l’expliquerons dans votre langue.
This policy explains what Carry Echo collects, why we collect it, who helps us handle it, and how to have it deleted.
In short: your letters stay private, we use your information only to run Carry Echo, and we never sell it.
What we collect
- Your account: your email address, and your name as you typed it. If you sign in with Google, Google shares your name and email address with us.
- Your letters: what you write; the photos, videos, voice recordings and stickers you add; and the paper, font, delivery day, part of the day and time zone you choose.
- The people you write to: the names and email addresses you enter, so we can deliver to them.
- Payments: see “How payments work” below. We never receive or store your card number.
- Technical details: our servers record basic request information, such as IP address, browser and time, for security and troubleshooting. A cookie remembers your language, and your browser keeps you signed in. If you start writing before you sign in, the draft stays in your browser and nowhere else.
- Visits: to count how many people visit, your browser keeps a random number that isn’t linked to your name or account, so each visitor is counted once a day. With it we note the website or link that brought you here and the country your connection comes from. We only ever look at the totals.
How we use it
- To keep your letters safe and deliver them on the day you chose.
- To send the emails you need, such as sign-in codes and your letters themselves.
- To take payment for a plan and keep your subscription up to date.
- To keep Carry Echo secure and stop abuse.
- To answer you when you write to us.
We do not sell your information. We do not show you ads. We do not use your letters to train AI models.
Who can read your letters
You can, and so can the people you address them to, once they are delivered. Letters are never published, and search engines never index them.
The small team that runs Carry Echo can see delivery details so we can keep letters arriving on time. These are the sender’s and recipient’s names and email addresses, the letter’s title, its status, and its dates. We do not read the body of your letters or open what is inside them, unless you ask us to help with one, we are investigating a report of abuse, or the law requires it.
Letters are encrypted while stored and while they travel over the internet. They are not end-to-end encrypted: our systems have to be able to open a letter in order to deliver it.
How payments work
We sell paid plans through Dodo Payments, which acts as our merchant of record. Dodo is the seller named on your receipt. It takes the payment, works out sales tax or VAT, and processes any refund. A purchase goes like this:
- When you choose a plan, we pass Dodo Payments your email address and the plan you picked. Then we send you to Dodo’s secure checkout.
- You enter your card or other payment details on Dodo’s page. They go straight to Dodo and its payment processors. They never pass through our servers.
- Dodo checks the payment for fraud, charges you, and emails you a receipt.
- Dodo tells us the result. That means your customer and subscription IDs, your plan, its status and renewal date, your billing country, and whether the payment went through. It may also send your card brand and last four digits, so you can recognise the card in your account.
- Each renewal, cancellation and failed payment reaches us the same way, so your account always shows the right plan.
Dodo Payments handles what you give it under its own privacy policy, which you can find at dodopayments.com. We keep billing records for as long as tax and accounting law requires, usually up to seven years. These records never include card numbers, and we keep them even if you ask us to delete your account.
Who helps us
A few companies handle information for us, and only to provide their service to us:
- Amazon Web Services hosts the site and stores your account, letters and files. It also runs sign-in. Our servers are in the United States.
- Google is involved only if you choose to sign in with Google.
- Postmaster sends our emails, including sign-in codes and delivered letters.
- Dodo Payments handles payments and billing, as described above.
We share information in only two other cases: when the law requires it, or when we need to protect someone from serious harm.
How long we keep it
- Letters waiting to be delivered: until they are delivered, however far ahead that is. This stays true after you cancel a paid plan.
- Delivered letters: kept so you and your recipient can read them again, until you delete them or your account.
- Your account: until you ask us to delete it.
- Server logs: 30 days.
- Visits: the random number your browser sends is kept for 2 days, and the daily totals for 30 days.
- Backups: our database keeps rolling backups for 35 days. Anything you delete is gone from them 35 days later.
- Billing records: as long as tax law requires.
If you cancel your subscription
Cancelling a plan deletes nothing. Your scheduled letters, with their photos, video and voice recordings, are kept and delivered on their day.
If you would rather they weren’t, email support@carryecho.com from the address on your account and ask us to delete everything. We will remove your account, every letter and every file in them within 30 days and confirm by email. Letters that have not been delivered will then never be delivered.
Your rights
Depending on where you live, laws such as the GDPR in the UK and EU and state privacy laws in the US give you rights over your information. We give these rights to everyone, wherever you live:
- see the information we hold about you and get a copy of it
- correct anything that is wrong
- have all of it deleted
- object to how we use it
- complain to your local data protection authority
For any of these, write to support@carryecho.com. We answer within 30 days.
Keeping it safe
Everything travels over HTTPS and is encrypted while stored. Sign-in codes work once and then expire. Only the people who run Carry Echo can reach its systems, and only as far as their work needs. No system is perfect. If something ever goes wrong with your information, we will tell you quickly and plainly.
Children
Carry Echo is not for children under 13, and we do not knowingly collect their information. You are welcome to write to a child, though. All we need is an email address that will reach them on the day.
If you believe a child under 13 has signed up, write to support@carryecho.com and we will delete the account.
Changes to this policy
If we change this policy in a way that matters, we will email you before the change takes effect. The date at the top shows the last update.
Contact
Anything about your privacy: support@carryecho.com.