Privacy Policy
Last updated: June 2026
This is a template provided for convenience and is not legal advice. Have it reviewed by qualified counsel before relying on it.
What we collect
- Account data: your email and optional profile (name, institution, country), and a hashed password if you use one.
- Your research content: projects, sources (including pasted text and uploaded PDFs), claims, evidence, tasks, and Professor chats.
- Billing data: subscription status and plan. Card details are handled by our payment processor (SkipCash) — we do not store card numbers.
- Operational logs needed to run and secure the service.
How we use it
To provide the features (store and process your sources/claims, run source‑bound AI analysis), authenticate you, process subscriptions, send transactional email (e.g. sign‑in links, receipts), and keep the service secure. We do not sell your data.
Processors we use
- Hosting/Database: Railway (PostgreSQL).
- File storage: an S3‑compatible bucket for uploaded PDFs.
- AI: Anthropic (and optionally OpenRouter) — only the source text/claims needed for a given request are sent.
- Metadata: a third‑party scholarly index for public bibliographic lookups.
- Email: Resend for transactional messages and passwordless sign-in links.
- Payments: SkipCash.
Project isolation
Your data is scoped to your account and to each project. Sources, claims, tasks, and AI context from one project are not mixed into another.
Retention & your choices
We keep your data while your account is active (including in a read‑only/expired state, where it is preserved rather than deleted). You can edit or delete your projects and content at any time, and you may request account deletion by contacting us.
Security
Passwords are hashed, sessions are cookie‑based and expire, and access is gated server‑side. No system is perfectly secure, but we take reasonable measures to protect your data.
Contact
Questions or requests? Email privacy@litreviews.ai.