Privacy Policy

Last updated: June 2026

This is a template provided for convenience and is not legal advice. Have it reviewed by qualified counsel before relying on it.

What we collect

  • Account data: your email and optional profile (name, institution, country), and a hashed password if you use one.
  • Your research content: projects, sources (including pasted text and uploaded PDFs), claims, evidence, tasks, and Professor chats.
  • Billing data: subscription status and plan. Card details are handled by our payment processor (SkipCash) — we do not store card numbers.
  • Operational logs needed to run and secure the service.

How we use it

To provide the features (store and process your sources/claims, run source‑bound AI analysis), authenticate you, process subscriptions, send transactional email (e.g. sign‑in links, receipts), and keep the service secure. We do not sell your data.

Processors we use

  • Hosting/Database: Railway (PostgreSQL).
  • File storage: an S3‑compatible bucket for uploaded PDFs.
  • AI: Anthropic (and optionally OpenRouter) — only the source text/claims needed for a given request are sent.
  • Metadata: a third‑party scholarly index for public bibliographic lookups.
  • Email: Resend for transactional messages and passwordless sign-in links.
  • Payments: SkipCash.

Project isolation

Your data is scoped to your account and to each project. Sources, claims, tasks, and AI context from one project are not mixed into another.

Retention & your choices

We keep your data while your account is active (including in a read‑only/expired state, where it is preserved rather than deleted). You can edit or delete your projects and content at any time, and you may request account deletion by contacting us.

Security

Passwords are hashed, sessions are cookie‑based and expire, and access is gated server‑side. No system is perfectly secure, but we take reasonable measures to protect your data.

Contact

Questions or requests? Email privacy@litreviews.ai.