Privacy Policy
Last updated: November 13, 2025
1. Introduction
Welcome to What Should I Build Today ("we," "our," or "us"). We are committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website.
Data Controller: What Should I Build Today
Location: Thailand
Contact Email: [email protected]
Privacy Email: [email protected]
2. Information We Collect
2.1 Personal Information You Provide
We may collect the following personal information when you interact with our website:
- Email Address: When you subscribe to our newsletter via Kit (ConvertKit)
- Name: If you provide it when subscribing or contacting us
- Contact Form Data: Information you submit through our contact forms
2.2 Automatically Collected Information
When you visit our website, we automatically collect certain information:
- Analytics Data: Via Google Analytics and Google Tag Manager (IP address, browser type, device information, pages visited, time spent, referring URLs)
- Behavioral Data: Via Hotjar (heatmaps, session recordings, form interactions)
- Cookies: Small text files stored on your device (see our Cookie Policy)
2.3 Information from Third Parties
We do not purchase or receive personal data from third-party data brokers.
3. How We Use Your Information
We use the collected information for the following purposes:
- Newsletter Delivery: To send you blog updates, newsletters, and promotional offers via Kit (ConvertKit)
- Website Improvement: To analyze user behavior and improve our content and user experience
- Analytics: To understand traffic patterns, popular content, and visitor demographics
- Communication: To respond to your inquiries and provide customer support
- Legal Compliance: To comply with applicable laws and regulations
4. Third-Party Services We Use
We share your information with the following third-party service providers:
4.1 Google Analytics & Google Tag Manager
Purpose: Website analytics and tracking
Data Collected: IP address (anonymized), browsing behavior, device information
Privacy Policy: https://policies.google.com/privacy
Opt-Out: Google Analytics Opt-out Browser Add-on
4.2 Hotjar
Purpose: Heatmaps, session recordings, and user feedback
Data Collected: Mouse movements, clicks, scrolls, form interactions
Privacy Policy: https://www.hotjar.com/legal/policies/privacy/
Opt-Out: Hotjar Opt-out
4.3 Kit (ConvertKit)
Purpose: Email newsletter and marketing automation
Data Collected: Email address, name (if provided), email engagement metrics
Privacy Policy: https://convertkit.com/privacy
Unsubscribe: Every email contains an unsubscribe link
5. Affiliate Links & Monetization
Our website contains affiliate links to third-party products and services. If you click on an affiliate link and make a purchase, we may earn a commission at no additional cost to you. We only recommend products we genuinely believe will provide value to our readers.
We also plan to display advertisements on our website in the future. These ads may use cookies and similar technologies to serve personalized content based on your browsing behavior.
6. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy:
- Email Subscribers: Until you unsubscribe from our mailing list
- Analytics Data: Google Analytics retains data for 26 months (default setting)
- Hotjar Data: Session recordings are stored for 365 days
- Contact Form Data: Stored for as long as needed to respond to your inquiry
7. Your Rights
Depending on your location, you may have the following rights:
7.1 GDPR Rights (European Economic Area)
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive your data in a structured format
- Right to Object: Object to processing of your personal data
- Right to Withdraw Consent: Withdraw consent at any time
7.2 CCPA Rights (California Residents)
- Right to Know: Know what personal information we collect and how it's used
- Right to Delete: Request deletion of your personal information
- Right to Opt-Out: Opt-out of the sale of personal information (we do not sell personal data)
- Right to Non-Discrimination: Not be discriminated against for exercising your rights
7.3 PDPA Rights (Thailand)
- Right to Access: Request access to your personal data
- Right to Data Portability: Request data in a machine-readable format
- Right to Object: Object to data processing
- Right to Erasure: Request deletion of your data
- Right to Restriction: Restrict the use of your data
To exercise any of these rights, please contact us at [email protected]. We will respond to your request within 30 days.
8. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your experience on our website. For detailed information about the cookies we use, please see our Cookie Policy.
You can control cookies through your browser settings. However, disabling cookies may affect the functionality of our website.
9. Data Security
We implement appropriate technical and organizational security measures to protect your personal data from unauthorized access, disclosure, alteration, or destruction. These measures include:
- SSL/TLS encryption for data transmission
- Secure hosting infrastructure
- Regular security updates and patches
- Limited access to personal data on a need-to-know basis
However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
10. International Data Transfers
Your information may be transferred to and processed in countries other than Thailand, including the United States (Google Analytics, Hotjar, Kit/ConvertKit). These countries may have different data protection laws than your country of residence.
We ensure that such transfers comply with applicable data protection laws and use appropriate safeguards such as Standard Contractual Clauses (SCCs) where required.
11. Children's Privacy
Our website is not intended for children under the age of 13 (or 16 in the EEA). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately at [email protected].
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. We will notify you of any material changes by posting the updated policy on this page and updating the "Last Updated" date.
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Email: [email protected]
General Inquiries: [email protected]
If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.
14. Governing Law
This Privacy Policy is governed by and construed in accordance with the laws of Thailand, without regard to its conflict of law provisions. For users in the European Economic Area, this policy also complies with the General Data Protection Regulation (GDPR). For California residents, this policy complies with the California Consumer Privacy Act (CCPA).