Privacy Policy
Last updated: May 2026
1. Data We Collect
We collect the minimum data necessary to provide the service:
- Account data: email address, display name, experience level
- Hearing data: incident descriptions, messages, diagrams, AI-generated verdicts and debriefs you create
- Subscription data: plan type, credit balance, Stripe customer ID (payment card details are held by Stripe, not us)
- Usage data: hearing counts, timestamps (for session expiry and abuse prevention)
2. How We Use Your Data
- To provide and personalise the ProtestSim service
- To enforce usage limits and process payments
- To send transactional emails (sign-in links, payment receipts)
- To maintain and improve the service
We do not sell your personal data. We do not use your hearing content to train AI models.
3. Third-Party Services
ProtestSim uses the following third-party processors:
- Supabase (EU data hosting) — stores your account, hearing, and subscription data
- Anthropic (Claude API)— processes your incident descriptions and hearing messages to generate AI responses. Anthropic's privacy policy applies.
- OpenAI (Whisper API)— transcribes voice input if you use the voice feature. OpenAI's privacy policy applies.
- Stripe— processes payments. Card details are held by Stripe, not ProtestSim. Stripe's privacy policy applies.
- Vercel — hosts the application. Standard server logs (IP addresses, request metadata) are retained for security purposes.
4. Data Retention
Your data is retained for as long as your account is active. Abandoned hearings are automatically expired after 2 days. You may delete your account and all associated data at any time from the settings page.
5. Your Rights (GDPR)
If you are in the UK or EU, you have the right to access, correct, port, or delete your personal data. You also have the right to object to processing and to lodge a complaint with your national data protection authority.
To exercise these rights, email support@protestsim.com or use the account deletion feature in settings.
6. Cookies
ProtestSim uses only strictly necessary cookies for authentication (Supabase session cookies). We do not use tracking or advertising cookies.
7. Contact
For privacy questions or GDPR requests, contact support@protestsim.com.