You agree to the privacy policy below, and the Privacy Policy for Substack, the technology provider.
Last updated: May 29, 2025
This Privacy Policy (“Policy”) explains how UI Engineering Excellence (“we,” “us,” or “our”) collects, uses, discloses, and protects the personal information of visitors and subscribers (“you” or “your”) to our Substack-hosted blog at https://blog.robhameetman.com (the “Blog”). By subscribing to or using the Blog, you consent to the practices described in this Policy.
1. Platform & Service Providers
Substack, Inc. (“Substack”) hosts our Blog, manages subscriptions, comments, email delivery, and analytics. Substack is a separate data controller/processor for the personal information you provide via its platform.
Stripe, Inc. (“Stripe”) processes all paid-subscription payments. We never see or store your raw payment card details; Stripe handles billing, refunds, and related inquiries.
For full details on how Substack and Stripe handle your data, please consult:
Substack Privacy Policy: https://substack.com/privacy
Stripe Privacy Policy: https://stripe.com/privacy
2. Information We Collect
2.1 Information You Provide via Substack
Contact & Subscription
Email address (required for free and paid subscriptions)
Name or pseudonym (if provided)
Comments & Notes
Any text or media you submit when interacting with posts
Support Requests
Content of messages you send via Substack’s “Contact author” form
2.2 Automatically Collected Data
Collected by Substack’s built-in analytics and cookies:
Usage Metrics: Opens, clicks, read-rates, page views, referral source, device/browser type, IP address, and approximate location.
Cookies & Tracking: Substack sets cookies for session management, preferences, and engagement tracking. You can manage these via your browser or Substack’s cookie banner.
3. How We Use Your Information
We and Substack use your data to:
Deliver the Blog’s content and email newsletter.
Authenticate and manage your subscription status.
Respond to comments, questions, and support requests.
Process paid subscriptions, refunds, and billing via Stripe.
Analyze engagement (opens, clicks, reads) to improve content relevance.
Detect and prevent fraud, abuse, or unauthorized access.
4. Legal Bases for Processing (GDPR)
If you’re in the European Economic Area (EEA), we rely on:
Consent: You opt in to receive our newsletter and communications.
Contractual Necessity: To fulfill the subscription agreement (free or paid).
Legitimate Interests: For analytics, fraud prevention, and improving our service—provided it doesn’t override your rights.
5. Cookies & Similar Technologies
Substack uses cookies and web beacons to:
Remember your login and subscription preferences.
Measure email opens, clicks, and on-site engagement.
Prevent spam and abuse in comments.
You can adjust cookie settings in your browser or via Substack’s consent controls. Disabling cookies may impair some features.
6. Sharing & Disclosure
We do not sell or rent personal information. Data may be shared with:
Substack & Stripe: As described above, to operate subscriptions, payments, and delivery.
Service Providers: Vendors contracted by Substack or us to host content, send emails, or analyze data.
Legal Authorities: When required by law or to protect rights, safety, or property.
Business Transfers: In the event of a merger, acquisition, or sale of assets, under confidentiality agreements.
7. Third-Party Links
Our posts may link to external sites. We are not responsible for their content or privacy practices. Please review their respective policies.
8. Data Security
Substack and Stripe implement industry-standard safeguards (encryption, access controls) to protect your data. While we strive for security, no system is infallible; absolute protection cannot be guaranteed.
9. Data Retention
Subscription Data: Retained by Substack for as long as your account exists or until you unsubscribe.
Comment Data: Stored indefinitely by Substack unless you request removal.
Analytics Data: Retained in aggregate form for up to two years to inform content strategy.
10. Your Rights & Choices
Depending on your jurisdiction, you may be able to:
Access, correct, or delete your personal data via your Substack account settings.
Withdraw consent to marketing communications.
Object to processing for analytics or legitimate-interest purposes.
For issues Substack cannot address via your dashboard, email us at privacy@robhameetman.com and we’ll assist where possible.
11. Children’s Privacy
We do not knowingly collect personal information from anyone under 13. If you believe we have done so, please contact us for prompt deletion.
12. International Transfers
If you’re outside the U.S., your Personal Data may be transferred to and processed on servers in the U.S. Substack and Stripe both participate in frameworks (e.g., EU–U.S. Privacy Shield) or implement Standard Contractual Clauses to safeguard transfers.
13. Changes to This Policy
We may update this Policy by posting a revised version on the Blog and updating the “Last updated” date. Continued use implies acceptance of any changes.
14. Contact Us
For questions or requests regarding this Policy, please contact:
privacy@robhameetman.com
Thank you for reading and for trusting UI Engineering Excellence and Substack with your information.