Privacy Policy

Last updated: June 10, 2026

Your privacy is important to us. This Privacy Policy explains what data we collect, how we use it, and your rights regarding your personal information when using AnkiAI ("the Service").

1. Information We Collect

We collect the following types of information:

  • Account information: Email address, name, and profile picture (if using social login)
  • User-created content: Flashcard decks, flashcards, and prompts you submit for AI generation
  • Usage data: Number of generations, feature usage, and activity timestamps
  • Payment information: Managed by our third-party payment provider — we do not store credit card details

2. How We Use Your Data

We use your data to:

  • Provide, maintain, and improve the Service
  • Authenticate your identity and secure your account
  • Process AI generation requests on your behalf
  • Track usage limits based on your subscription plan
  • Process payments and manage subscriptions
  • Communicate important updates about the Service or your account

3. Data Sharing & Third-Party Services

We do NOT sell your personal data. We share data only with the following third-party services necessary to operate the platform:

  • Supabase — Database hosting, authentication, and data storage
  • OpenAI — Processes your prompts to generate flashcard content (prompts are sent to OpenAI for processing)
  • Payment provider (Stripe / Paddle) — Handles subscription billing and payment processing
  • Vercel — Application hosting and content delivery

4. AI Processing Disclosure

When you use the AI generation feature, your prompts are sent to OpenAI for processing. OpenAI may process this data according to their own privacy policy. We recommend reviewing OpenAI's Privacy Policy for details. We do not use your content to train AI models.

5. Data Security

Your data is stored securely using Supabase with Row Level Security, ensuring that only you can access your own decks and flashcards. We use industry-standard encryption for data in transit (HTTPS/TLS). While we take reasonable precautions to protect your data, no method of electronic storage is 100% secure.

6. Data Retention & Deletion

We retain your data for as long as your account is active. If you wish to delete your account and all associated data, please contact us at the email below. Upon account deletion, your personal data, decks, flashcards, and generation history will be permanently removed from our systems within 30 days.

7. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal data we hold about you
  • Request correction of inaccurate data
  • Request deletion of your data
  • Export your data (via our CSV and APKG export features)
  • Withdraw consent for data processing

8. Cookies

We use essential cookies for authentication and session management. We do not use tracking cookies or third-party advertising cookies.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of material changes via email or through the Service. Continued use of the Service after changes take effect constitutes acceptance of the updated policy.

10. Contact

If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us at luiscastle002@gmail.com.