Privacy Policy

Last updated: February 19, 2026

1. Introduction

PlotMyGarden ("we", "our", or "the app") is a free garden planning tool. We are committed to protecting your privacy and being transparent about how we handle your data. This Privacy Policy explains what data we collect, how it is stored, and your rights regarding that data.

2. Our Privacy Commitment

Privacy by Design

PlotMyGarden collects only the minimum data needed to provide the service. We use privacy-focused analytics (PostHog) to understand how the app is used and improve features. We do not run advertising, and we never sell or share your data with third parties for marketing purposes. Your garden data is yours.

3. Data We Collect

When you create an account and use PlotMyGarden, the following data is collected and stored on our server:

  • Account informationYour name, email address, and a securely hashed password. Your email is verified during sign-up via a confirmation link.
  • Garden layoutsYour garden designs including plant placements, grid dimensions, custom plot shapes, and canvas items.
  • User preferencesDisplay settings such as measurement units, default garden dimensions, and notification preferences.
  • Profile informationOptional profile data you choose to enter such as your bio, gardening experience level, and favorite plant categories.
  • Location dataIf you choose to set your location (for hardiness zone detection and weather), your latitude, longitude, and detected zone are stored with your profile.
  • Session dataA session token, your IP address, and user agent string are stored to keep you logged in securely. Sessions expire after 7 days of inactivity.

4. How We Store Your Data

Your data is stored in a PostgreSQL database on a self-hosted server managed by us. We do not use third-party cloud databases. Your password is never stored in plain text — it is hashed using a secure one-way algorithm before storage.

  • • No cookies for tracking or advertising
  • • No third-party trackers or advertising SDKs
  • • No data sold, shared, or monetized in any way

Some preferences (such as weather cache and display settings) may also be stored locally in your browser's localStorage for performance. This data never leaves your device.

5. Account & Email Verification

When you create a PlotMyGarden account, we send a one-time verification email to confirm your email address. This email is sent through our email service provider, Brevo (see Section 6). You must click the confirmation link in this email to activate your account. We do not send marketing emails, newsletters, or promotional content.

6. Third-Party Services

PlotMyGarden uses the following external services:

Brevo (formerly Sendinblue) — Email Service

We use Brevo to send transactional emails such as your email verification confirmation. The data shared with Brevo is limited to your email address and name, solely for the purpose of delivering these emails. Brevo acts as a data processor on our behalf and does not use your data for marketing purposes. Brevo's privacy policy is available at brevo.com/legal/privacypolicy.

Open-Meteo — Weather API

When you enable weather features and set your location, PlotMyGarden makes requests to the Open-Meteo API to fetch 7-day weather forecasts. The only data transmitted is your latitude and longitude coordinates. Open-Meteo is a free, open-source weather API that does not require API keys or user accounts. Their privacy policy is available on their website.

PostHog — Product Analytics

We use PostHog to understand how PlotMyGarden is used and to improve the product. PostHog collects usage data such as page views and feature interactions. PostHog is an open-source analytics platform that complies with GDPR and other privacy regulations. You can learn more about their privacy practices at posthog.com/privacy.

No other third-party services, advertising networks, or tracking tools are used by PlotMyGarden.

7. Location Data

PlotMyGarden can optionally use your device's geolocation to determine your USDA Plant Hardiness Zone and provide local weather forecasts. This is entirely optional — you can skip this feature or manually enter your location coordinates instead.

When you grant location permission, your coordinates are stored with your user profile and used to estimate your hardiness zone and request weather data from Open-Meteo. Your location is never shared with any third party besides Open-Meteo for weather forecasts.

8. Children's Privacy

PlotMyGarden is not directed at children under 13. Creating an account requires providing a name and email address. If you are a parent or guardian and believe your child has created an account without your consent, please contact us and we will promptly delete the account. Parents and educators are welcome to use PlotMyGarden as an educational gardening tool with appropriate supervision.

9. Your Rights

You have the right to access, correct, or delete your personal data at any time. You can update your profile information directly in the app. To delete your account and all associated data, please contact us through our contact page.

If you wish to opt out of analytics tracking, you can use browser extensions that block tracking scripts, or enable "Do Not Track" in your browser settings. PostHog respects the Do Not Track header.

10. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in the app's features or applicable regulations. Any changes will be reflected by updating the "Last updated" date at the top of this page. Policy updates will be included in app updates that are automatically delivered when you visit the site.

11. Contact Us

If you have any questions or concerns about this Privacy Policy or PlotMyGarden's data practices, please reach out through our contact page.