Privacy Policy
Last updated: June 15, 2026
1. Information We Collect
Account Data: When you sign in with Google, we receive your name, email address, and profile picture. We do not access any other data from your social account.
Usage Data: We track which product features you use (verifications, summaries, chats, and similar analysis actions) and the YouTube video IDs you analyze. This data is used to enforce plan limits, improve the service, and display your activity dashboard.
Processing Data: To generate analyses, summaries, and source-based answers, we process the YouTube transcript, web page content, or PDF text you submit, along with any related questions you ask inside the product.
Device and Security Data: When you sign in or link a device, we may store device type, browser or app metadata, and IP address to help manage active devices, improve account security, and enforce device limits.
API Tokens: Each installation generates a unique API token stored locally on your device and as a hash on our servers.
Diagnostic Data: If the mobile app or browser extension encounters an unexpected failure, we may send technical diagnostics such as error messages, stack traces, app or browser version, and device metadata to our monitoring provider so we can investigate and fix stability issues. We do not intentionally include transcript content, chat prompts, or authentication secrets in these reports.
2. How We Use Your Information
- To provide and improve the EvidenceLens service
- To manage your account and subscription
- To enforce usage limits based on your plan
- To process source-based AI results that you request
- To monitor active devices and protect your account
- To display your activity and usage statistics
- To detect, diagnose, and fix application errors and crashes
3. Data Sharing
We do not sell your personal information. We share data only with:
- Stripe: For payment processing (email and subscription data)
- Google: During OAuth sign-in and when processing AI requests through our selected Google AI services
- Sentry: For error monitoring and diagnostic reporting
4. Data Retention and Deletion
We retain your account and usage data for as long as your account is active. You can permanently delete your account and all associated data at any time from your account settings. For full instructions, including how to request deletion if you cannot sign in, see our account deletion page.
5. Security
API tokens are stored as SHA-256 hashes. All communication uses HTTPS. JWT tokens expire after 30 days.
6. Contact
For questions about this policy, contact us at support@evidence-lens.com.