This Privacy Policy describes how VARYX™ ("we," "us," or "our") collects, uses, and protects information from users of the VARYX application and related services. By using VARYX, you agree to the practices described in this policy.
1. Information We Collect
1a. Information You Provide
- Email address (used for authentication via magic link login)
- Picks and prop analyses you choose to save or track within the app
- Subscription tier selection and billing preferences
- Any feedback, support requests, or bug reports you submit to us
1b. Information Collected Automatically
- Usage data: which features you access, how frequently, and when
- AI tool usage: number of analysis requests made per session and per day
- Device type, browser type, operating system, and screen resolution
- IP address and approximate geographic location (country/region level)
- Error and crash reports (collected via Sentry for debugging purposes)
- Page view and performance analytics (collected via Vercel Analytics)
1c. Payment Information
When you subscribe to a paid plan, payment processing is handled entirely by Stripe, our third-party payment processor. We do not directly collect, store, or have access to your full credit card number, bank account details, or other sensitive financial information. Stripe may share with us: your name, email, last four digits of your card, card expiration date, billing address, and transaction history for record-keeping and support purposes.
We do not collect your full name, physical address, phone number, Social Security number, or government-issued identification.
2. How We Use Your Information
- To authenticate your identity and maintain your session
- To sync your saved picks and preferences across your devices
- To enforce subscription tier access limits and usage quotas
- To process and manage your subscription and billing
- To understand how the app is being used and identify areas for improvement
- To communicate with you about your account, updates, and service changes
- To troubleshoot technical issues and monitor application performance
- To detect and prevent fraud, abuse, or unauthorized access
We do not use your data for third-party advertising or marketing. We do not sell your personal information.
3. Data Storage and Security
Your data is stored and processed using the following third-party services:
- Supabase — user authentication, account data, and saved picks storage
- Cloudflare Workers & KV — backend API processing and cached analysis storage
- Vercel — application hosting and performance analytics
- Stripe — payment processing and subscription management
- Sentry — error monitoring and crash reporting
- Anthropic (Claude AI) — AI analysis processing (only query content is sent, never your identity or personal information)
We implement reasonable technical and organizational measures to protect your data, including encrypted connections (HTTPS/TLS), secure authentication, and access controls. However, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.
4. Data Sharing
We do not sell, rent, trade, or share your personal information with any third party for marketing purposes. We may share information with:
- Supabase — for authentication and data storage
- Cloudflare — for backend infrastructure and content delivery
- Stripe — for payment processing (only when you subscribe to a paid plan)
- Anthropic — AI analysis requests are routed through our secure backend proxy; only your query content is sent, never your identity
- Sentry — for error tracking and debugging (device and browser info only, no personal identity)
- Vercel — for hosting and anonymized analytics
- Law enforcement or legal authorities — as required by law, legal process, or to protect our legal rights
5. Cookies and Tracking
VARYX uses localStorage (browser-based storage) to maintain your session, preferences, and application state. We do not use traditional tracking cookies for advertising purposes.
Third-party services integrated into the app (Vercel Analytics, Sentry) may use their own cookies or similar technologies as described in their respective privacy policies.
You can clear localStorage at any time through your browser settings. Doing so will log you out and reset your local preferences.
6. Data Retention
- Account data (email, preferences) — retained for the duration of your account
- Saved picks and analysis history — retained for the duration of your account
- Usage and analytics logs — retained for up to 12 months, then anonymized or deleted
- Payment records — retained for up to 7 years as required by tax and financial regulations
- Error and crash reports — retained for up to 90 days
Upon account deletion, your personal data will be removed from our active systems within 30 days. Some data may persist in encrypted backups for up to 90 days before being permanently deleted.
7. Your Rights
You have the right to:
- Access — request a copy of the personal data we hold about you
- Correction — request correction of inaccurate or incomplete data
- Deletion — request deletion of your personal data at any time
- Portability — request your data in a commonly used, machine-readable format
- Withdrawal — cancel your subscription and close your account at any time
- Opt-out — opt out of non-essential communications
To exercise any of these rights, contact us at varyx.app@gmail.com. We will respond to your request within 30 days.
8. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- The right to know what personal information we collect, use, and disclose
- The right to request deletion of your personal information
- The right to opt out of the sale of your personal information (we do not sell personal information)
- The right to non-discrimination for exercising your privacy rights
To exercise your CCPA rights, contact us at varyx.app@gmail.com.
9. International Users
VARYX is operated from the United States. If you access the Service from outside the United States, your information may be transferred to, stored, and processed in the United States. By using the Service, you consent to the transfer of your information to the United States, which may have different data protection laws than your country of residence.
10. Children's Privacy
VARYX is not intended for use by individuals under the age of twenty-one (21). We do not knowingly collect personal information from anyone under 21. If we become aware that we have collected personal information from a minor, we will take steps to delete that information promptly.
11. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. Material changes will be communicated through the app or via email to your registered email address.
Your continued use of VARYX following notification of changes constitutes your acceptance of the updated policy. We encourage you to review this policy periodically.
12. Contact
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us at:
Email: varyx.app@gmail.com
By using VARYX, you acknowledge that you have read and understood this Privacy Policy.