Legal

Privacy Policy

Last updated: April 9, 2026

1. Introduction

Anatalib ("we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform at anatalib.com (the "Service").

2. Information We Collect

Account Information

When you register, we collect your email address and password (stored securely via Supabase Auth with bcrypt hashing). We do not store passwords in plain text.

Usage Data

We collect information about your interactions with the Service, including questions submitted, answers received, credit usage, and feature interactions. This data is used to improve accuracy and user experience.

Payment Information

Payment processing is handled by PayPal and Wise. We do not store your full credit card or bank account details. We retain transaction IDs, amounts, and credit allocations for billing records.

Images & Files

Images you upload for question analysis are processed in-memory and sent to AI providers (OpenAI, Anthropic, Google) for analysis. We do not permanently store uploaded images on our servers.

3. How We Use Your Information

  • Provide, operate, and maintain the Service
  • Process transactions and manage your account credits
  • Send administrative emails (password resets, purchase confirmations)
  • Respond to support inquiries
  • Monitor and analyze usage to improve accuracy and performance
  • Detect, prevent, and address technical issues or abuse

4. Third-Party Services

We use the following third-party services to operate Anatalib:

AI Core EngineAI question analysis
AI Pro EngineAI question analysis and arbitration
AI Ultra EngineAI question analysis
SupabaseDatabase, authentication, and backend services
PayPalPayment processing
WisePayment processing (bank transfers)

Each provider has their own privacy policy. Questions sent for analysis are subject to these providers' data handling policies.

5. Data Security

We implement industry-standard security measures including: encrypted data transmission (TLS/HTTPS), secure authentication via Supabase Auth, row-level security (RLS) on all database tables, rate limiting on API endpoints, server-side API key management (keys never exposed to clients), and regular security audits.

6. Data Retention

Chat history and answers are retained for as long as your account is active. You can delete individual chats from the interface. Upon account deletion, all associated data (chats, profile, transaction history) is permanently deleted within 30 days.

7. Your Rights

You have the right to:

  • Access and export your personal data
  • Correct inaccurate personal information
  • Delete your account and associated data
  • Withdraw consent for data processing
  • Object to automated decision-making

To exercise any of these rights, contact us at privacy@anatalib.com.

8. Cookies

We use essential cookies only — authentication tokens and session management. We do not use advertising or tracking cookies. Your theme preference and language selection are stored in your browser's localStorage.

9. Children's Privacy

Anatalib is designed for students of all ages. For users under 16, we collect only the minimum data necessary (email for authentication). We do not knowingly collect additional personal information from children.

10. Changes to This Policy

We may update this Privacy Policy periodically. Changes will be posted on this page with an updated revision date. Continued use of the Service after changes constitutes acceptance of the revised policy.

11. Contact Us

For privacy-related questions or requests, contact us at:

Email: privacy@anatalib.com

Or use our contact form.