Privacy Policy

Draft — review with counsel before publishing

What we collect

  • Account data: your email address and a hashed password, stored by our authentication provider (Supabase).
  • Design material you submit: screenshots, PDFs, website captures, and Figma frames you choose to evaluate. These are stored in a private bucket that only your account can access.
  • Figma access tokens: if you connect Figma, the access token is encrypted before storage and is used only to fetch frames from links you paste.
  • Usage data: evaluation counts, timestamps, and model token usage, used for quotas and billing.

How evaluations work

To generate a report, the screens you submit and the context you provide are sent to Anthropic's Claude API. Anthropic processes this data under its API terms and does not use API inputs to train its models. Reports are stored in your account until you delete them.

Retention and deletion

  • Abandoned draft evaluations and their files are deleted after 7 days.
  • Uploaded files for completed evaluations are deleted after 90 days; the written report is kept.
  • You can delete any evaluation, disconnect Figma, or delete your entire account from Settings at any time. Account deletion removes all data immediately.

Sharing

We do not sell your data. Sub-processors: Supabase (database, authentication, storage), Vercel (hosting), Anthropic (AI evaluation), and Figma (when you connect it). Each is bound by its own privacy terms.

Security

Data is encrypted in transit (TLS) and at rest by our providers; Figma tokens are additionally encrypted with an application key. Access to your data is restricted to your account through row-level security.

Contact

Questions or requests (access, correction, deletion): add your support email here.