Privacy Policy
Last Updated: October 25, 2025
1. Introduction
Welcome to FL4SH ("we," "our," or "us"). We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and website.
2. Information We Collect
Personal Information
- Account Information: Email address, username, password (encrypted)
- Profile Data: Exam level (GCSE/A-Level), exam board, subjects
- Study Data: Flashcards created, study sessions, progress statistics
- Usage Data: How you interact with the app, features used, time spent
Automatically Collected Information
- Device information (type, operating system, unique device identifiers)
- IP address and general location data
- App performance and crash data
- Analytics data (via third-party services)
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve FL4SH services
- Personalize your learning experience
- Generate AI-powered flashcards specific to your exam board
- Track your study progress and provide analytics
- Send you important updates and notifications
- Process payments and manage subscriptions
- Respond to your support requests
- Prevent fraud and ensure platform security
4. Data Storage and Security
Your data is stored securely using Supabase (PostgreSQL database) with:
- Industry-standard encryption (AES-256)
- Secure authentication via OAuth 2.0 and JWT tokens
- Row-level security policies
- Regular security audits and updates
- Data centers located in the EU (GDPR compliant)
5. Third-Party Services
We use the following third-party services:
- Supabase: Database and authentication
- OpenAI: AI card generation and voice analysis
- Vercel: Hosting and serverless functions
- Expo/EAS: Mobile app infrastructure
- Stripe: Payment processing (future)
Each service has its own privacy policy and data handling practices.
6. Your Rights (GDPR & UK GDPR)
You have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate or incomplete data
- Erasure: Request deletion of your data ("right to be forgotten")
- Data Portability: Receive your data in a portable format
- Restriction: Limit how we process your data
- Object: Object to processing of your data
- Withdraw Consent: Withdraw consent at any time
7. Children's Privacy
FL4SH is designed for students aged 13 and above. We do not knowingly collect personal information from children under 13. If you are a parent and believe your child has provided us with personal information, please contact us.
8. Data Retention
We retain your personal information only as long as necessary to provide our services and for legitimate business purposes. When you delete your account, we will delete or anonymize your personal data within 30 days.
9. Cookies and Tracking
We use cookies and similar technologies to:
- Keep you logged in
- Remember your preferences
- Analyze usage patterns
- Improve user experience
You can control cookies through your browser settings.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.
11. Contact Us
If you have questions about this Privacy Policy, please contact us: