Privacy Policy
Last updated: March 2025
1. What we collect
When you create an account, we collect:
- Your email address (for authentication only)
- A handle you choose (shown only to your anonymous review group)
- Your timezone (to determine the correct daily prompt)
- Your preferred practice time (for reminders, if enabled)
During each session, we store the text you write, your self-assessment responses, your peer reviews, and session metadata (word count, duration, timestamp).
2. How we use your data
- To deliver the daily practice (prompts, Socratic questions, peer review)
- To track your streak and progress within the app
- To generate your weekly insight and thinking signature (via LLM, using only your writing from that period)
- To improve the product
We do not sell your data. We do not use your writing to train AI models.
3. Peer review anonymity
Your writing is shared with a small anonymous review group (typically 3–5 people). Your identity is never revealed to reviewers — only your handle, which you control. Reviewers' identities are likewise hidden from you.
4. LLM processing
Your writing is sent to a third-party language model provider (currently Google Gemini or Groq) solely to generate your Socratic challenge question and weekly insight. These providers process your writing according to their own privacy policies. We send only the minimum necessary text and do not include your email or other identifying information in these requests.
5. Data retention
Your account and all associated data are retained until you delete your account. You can request deletion at any time by contacting us. We will process deletion requests within 30 days.
6. Security
Your data is stored in Supabase (hosted on AWS). Authentication is handled via Supabase Auth with magic link email sign-in. We do not store passwords. Communications are encrypted in transit via TLS.
7. Contact
For privacy-related questions or deletion requests, contact us at our contact page.