Privacy Policy
Last updated: June 5, 2025
Information We Collect
Account Information
When you create an account, we collect your email address, full name, and optionally your phone number. You can sign up with email and password or through Google OAuth.
Payment Information
Payments are processed by Razorpay. We store your Razorpay order ID and payment ID for subscription management. We never store credit card numbers, CVVs, or other card details directly — Razorpay handles all payment card data under PCI DSS compliance.
Usage Data
We use Vercel Analytics to collect anonymous, cookieless page-view and web-vital data. This does not include personally identifiable information.
AI Interaction Data
When you use the Design Studio, your system design submissions are sent to Anthropic’s API for AI-powered review. Anthropic does not retain input or output data beyond the duration of the API call.
Learning Progress
We track which sections you have completed, your referral code, and related progress data in our database.
Geographic Data
We detect your country from request headers to display the appropriate currency (USD or INR). No precise location data is stored.
How We Use Your Data
- Authenticating your account and managing your session
- Processing payments and managing subscriptions
- Providing AI-powered design reviews in the Design Studio
- Tracking your learning progress across the guide
- Sending transactional emails (password resets, payment confirmations) via Resend
- Displaying the correct currency based on your region
Third-Party Services
Supabase
Authentication and database hosting. Your account data and learning progress are stored in Supabase’s infrastructure.
Razorpay
Payment processing for premium subscriptions. Razorpay processes and stores your payment card details under PCI DSS standards.
Vercel
Application hosting and anonymous analytics.
Anthropic
AI model API for Design Studio reviews. Submissions are processed in real time and not retained.
Resend
Transactional email delivery for account-related communications.
Cookies
We use Supabase authentication cookies to maintain your login session. These are strictly necessary cookies — we do not use third-party tracking cookies. Vercel Analytics is entirely cookieless.
Data Retention
Your account data and learning progress are retained as long as your account is active. If you request account deletion, all associated data is permanently removed within 30 days. Anonymous analytics data is retained according to Vercel’s standard retention policies.
Your Rights
- Request deletion of your account and all associated data
- Request an export of the personal data we hold about you
- Opt out of non-essential communications
- Update your account information at any time through your profile
Data Security
All data is transmitted over HTTPS with TLS encryption. Authentication sessions are managed through secure, httpOnly cookies. Payment processing is handled entirely by Razorpay under PCI DSS compliance standards.
Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated through a notice on the website. Continued use of the service after changes constitutes acceptance of the updated policy.
Contact
If you have questions about this Privacy Policy or want to exercise your data rights, please reach out via our contact page.