Privacy Policy

How OT Playbook handles personal information.

This policy explains what OT Playbook collects, how it is used, when it is shared, and the choices available to visitors, account holders, customers, and support requesters.

Last updated: June 5, 2026

1. Scope

This Privacy Policy applies to OT Playbook, including public educational pages, resources, account pages, support workflows, checkout, purchase history, and digital download features. OT Playbook is an educational content and digital-download website. It is not an emergency service, medical chart, or patient portal.

Please do not submit protected health information, therapy records, diagnosis details, school records, or urgent care requests through the site. If you include sensitive information in a support message, OT Playbook will use it only to respond to the request and operate the service.

2. Information collected

OT Playbook collects information in the following categories:

  • Account identifiers: identity provider user ID, email address, email verification status, first name, last name, and sign-in session details supplied through Auth0.
  • Purchase and entitlement records: product IDs, product names, prices, currency, order IDs, Stripe Checkout and payment identifiers, tax and total amounts, entitlement status, and download history needed to provide purchased files.
  • Support information: support type, title, message content, account context, and related purchase or download details that you choose to provide.
  • Resource and affiliate interactions: pages, resources, or outbound links requested by your browser. Affiliate partners may receive referral information when you choose to open a sponsored external link.
  • Device and technical information: IP address, browser and device information, dates and times of requests, diagnostics, security logs, and performance telemetry generated by the website, hosting provider, API, and storage infrastructure.
  • Browser storage: cart contents, entitlement cache state, cookie-notice preference, and session or account cache cookies described below.

3. How information is used

OT Playbook uses personal information to:

  • Provide, secure, and maintain the website, accounts, admin tools, and public content.
  • Authenticate users, protect admin areas, detect duplicate account conflicts, and prevent unauthorized downloads.
  • Process checkout, record orders, grant entitlements, provide purchase history, and deliver digital downloads.
  • Respond to support requests and troubleshoot account, checkout, resource, and download issues.
  • Maintain security logs, diagnose service failures, prevent fraud or abuse, and comply with legal obligations.
  • Understand aggregate site operation and performance. User-facing analytics are not currently implemented.

4. Payments

OT Playbook uses Stripe to collect payments. OT Playbook does not store complete payment card numbers, card security codes, or bank account credentials. Stripe may collect payment details, billing information, fraud-prevention signals, tax information, and transaction records under Stripe's own terms and privacy practices.

OT Playbook stores the order, product snapshot, Stripe identifiers, tax, total, currency, and entitlement records needed for accounting, support, fraud prevention, legal compliance, and continued download access.

5. Cookies and browser storage

OT Playbook uses cookies and browser storage for site operation rather than behavioral advertising.

  • Authentication cookies: Auth0 and the site use cookies to keep users signed in, protect routes, and sign users out correctly.
  • Current user cache: the site may store an encrypted httpOnly cookie named ot-current-user to reduce repeated account lookups and clear it on logout or identity mismatch.
  • Cart storage: the browser stores digital-download cart contents in local storage under ot-playbook.cart.v1.
  • Entitlement cache: the browser may cache purchase availability for the signed-in user so product pages can show whether a download is already owned.
  • Local and test cookies: development or mock environments may use cookies such as ot-playbook-auth; these are not intended for production identity storage.

You can block or delete cookies and local storage through your browser settings. Some features, including sign-in, cart review, checkout, purchase availability, admin tools, and downloads, may not work correctly without them.

6. When information is shared

OT Playbook does not sell personal information. OT Playbook shares information only as needed to operate the site:

  • With Auth0 for account creation, sign-in, session management, and identity verification.
  • With Stripe for checkout, payment processing, tax support when enabled, order confirmation, and fraud prevention.
  • With hosting, storage, monitoring, and infrastructure providers such as Vercel, Azure, and Application Insights.
  • With affiliate or external resource providers when you intentionally follow an outbound or sponsored link.
  • With professional advisers, service providers, authorities, or other parties when required for legal compliance, security, fraud prevention, dispute resolution, or business operations.

OT Playbook does not share personal information for cross-context behavioral advertising. If that changes, this policy will be updated before that use begins.

7. Retention

OT Playbook keeps personal information only as long as reasonably needed for the purposes described in this policy. Account profile data is retained while the account is active or as needed for support and security. Order, tax, payment, fraud-prevention, entitlement, and download records may be retained longer because they support accounting, legal compliance, customer service, and permanent digital download access.

If you request deletion, OT Playbook will delete or anonymize information where practical, but may preserve records needed for tax, accounting, fraud prevention, security, dispute resolution, support history, or legal obligations.

8. Your choices and privacy rights

Depending on where you live, you may have rights to request access, correction, deletion, portability, restriction, or objection to certain processing of your personal information. You may also have the right to appeal a denied request or opt out of certain sale, sharing, targeted advertising, or profiling uses.

OT Playbook does not currently sell personal information or use personal information for cross-context behavioral advertising. You can make a privacy request through the contact page. Signed-in customers can also use support.

OT Playbook may need to verify your identity before completing a request. If a request concerns a purchase, entitlement, or account, verification may require signing in through the account provider or confirming information already associated with the account.

9. Children's privacy

OT Playbook publishes occupational therapy education for adults, caregivers, and educators. The site is not directed to children under 13, and OT Playbook does not knowingly collect personal information directly from children under 13. If you believe a child has provided personal information through the site, contact OT Playbook so the information can be reviewed and deleted where appropriate.

10. Security

OT Playbook uses administrative, technical, and organizational safeguards intended to protect personal information, including hosted identity management, encrypted account cache cookies, backend authorization checks, private storage for digital downloads and original uploaded files, and limited admin access. No website or storage system can guarantee absolute security.

11. International visitors

OT Playbook is operated with United States-based services and infrastructure providers. If you access the site from outside the United States, your information may be processed in the United States and other countries where OT Playbook's service providers operate.

12. Changes to this policy

OT Playbook may update this policy as the website, legal requirements, analytics, payment, affiliate, account, or download features change. The updated policy will be posted on this page with a new last updated date. Continued use of the site after an update means the updated policy applies going forward.

13. Contact

To ask a privacy question or make a privacy request, use the contact page. If you are signed in and need help with an account, order, or download, use support.