Skip to content

Privacy policy

What is stored, what is sent to AI model providers, who processes it for us, and how to delete it.
TODO(owner): draft for review by counsel before launch.

Who we are

The controller of your data is TODO(owner): legal entity name. Privacy questions go to TODO(owner): support email.

What we store

  • Account. Your email address and sign-in details, held by Clerk, and an internal account ID.
  • Credits and runs. Your credit balance and its ledger. For each AI run: the feature, the model, token counts, estimated cost and any error code.
  • AI reports. The output of each run, stored under your account so you can open it again.
  • Inputs you send. The text you submit to an AI feature, and any repository files you select for a draft. Repository file contents are not stored; only the list of paths and the output are kept.
  • Purchases. The purchase record from Dodo Payments, such as the pack and payment ID. Card details are entered with Dodo Payments, not on this site.
  • Learner state. Your answers, progress, projects and tailored questions are stored in your browser. They reach us only when you run an AI feature that sends them, such as an assessment of an answer.
  • Analytics and performance. Vercel Web Analytics records page views and daily visitor counts on public pages, along with page URL and route, referrer, timestamp, location, device, operating system and browser summaries. Vercel says Web Analytics does not use cookies and its visitor hash expires after 24 hours. Vercel Speed Insights records page performance measurements, such as loading and interaction metrics, along with page URL and route, network speed, browser, device, operating system and country. Both tools exclude sign-in and sign-up pages, account pages, saved reports, interview sessions and private project URLs.

Who processes data for us

  • Clerk for accounts and sign-in.
  • Neon for the database, through the Vercel Marketplace.
  • Vercel for hosting, Web Analytics, Speed Insights and the AI Gateway.
  • Model providers reached through the gateway, currently Anthropic and OpenAI.
  • Dodo Payments for payments, as merchant of record.
  • GitHub, only when you fetch a public repository for a draft.

Read Vercel Web Analytics privacy details and Vercel Speed Insights privacy details for the providers’ data handling information.

Model providers

We ask providers not to train on prompts. By default, requests are routed only to providers that keep no data (zero data retention). The AI page lists the models that run for each feature.

How long we keep data

You can delete your reports and run data at any time from your account. TODO(owner): set retention periods for the ledger, AI runs, payment records and deleted accounts.

Your choices

You can export your learner data as a JSON file, and import it again, from your progress. You can delete your AI reports from your account. To ask for anything else, including deleting your account, email TODO(owner): support email.

TODO(owner): describe the rights that apply to you in your jurisdiction, for example under the GDPR or UK GDPR, and how to use them.

Changes

We will update this page when the way we process data changes.