Privacy Policy
Last Updated: July 27, 2024
Introduction
Welcome to RIVAL. We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services, including when you create an account, subscribe to Pro features, or generate AI challenges.
If you have any questions or concerns about this privacy notice or our practices, please contact us.
Information We Collect
We collect information in the following ways:
Information You Provide to Us
- Account Information: When you register for an account, we collect personal information such as your email address. If you register using a third-party provider like Google, we may receive your name and avatar URL as provided by that service.
- Subscription Information: If you subscribe to our Pro tiers, our payment processor, Stripe, will collect payment information necessary to process the transaction. We receive confirmation of payment and subscription status from Stripe, but we do not directly store your full payment card details. We store your Stripe customer ID and subscription ID to manage your subscription.
- User-Generated Content: If you are a Pro user, we collect the prompts you submit when creating challenges. The AI-generated responses to these prompts are also stored.
- Communications: If you contact us directly, we may receive additional information about you such as your name, email address, the contents of the message and/or attachments you may send us, and any other information you may choose to provide.
Information We Collect Automatically
When you use our Website, we automatically collect certain information about your device and usage:
- Log and Usage Data: Like most websites, we collect information that your browser sends whenever you visit our Website. This may include your IP address, browser type and settings, the date and time of your request, how you interacted with the Website, and device information.
- Cookies and Similar Technologies: We use cookies and similar tracking technologies (like web beacons and pixels) to access or store information, operate the service (e.g., authentication), and analyze usage. You can control the use of cookies at the individual browser level.
- Analytics Data (PostHog): We use PostHog for web analytics to understand user behavior and improve the service. This data includes interactions with the site features and may be linked to an anonymous or user ID. You can learn more about PostHog's privacy practices on their website.
How We Use Your Information
We use the information we collect for various purposes, including:
- To provide, operate, and maintain our Website and Services.
- To improve, personalize, and expand our Website and Services.
- To understand and analyze how you use our Website and Services (via analytics).
- To process your transactions and manage your subscriptions (via Stripe integration).
- To facilitate account creation and authentication.
- To generate AI responses for the challenges you create (for Pro users).
- To communicate with you, either directly or through one of our partners, including for customer service, to provide you with updates and other information relating to the Website, and for marketing and promotional purposes (where permitted by law and subject to your opt-out rights).
- To send you administrative information, such as changes to our terms, conditions, and policies.
- To find and prevent fraud and ensure the security of our Website.
- To comply with legal obligations.
How We Share Your Information
We may share the information we collect in the following circumstances:
- Service Providers: We share information with third-party vendors and service providers that perform services on our behalf, such as payment processing (Stripe), cloud hosting (Vercel, Supabase), AI model access (OpenRouter), task queueing (Upstash), and analytics (PostHog). These providers only have access to the information necessary to perform their functions and are obligated to protect your information.
- AI Models (OpenRouter): When Pro users create challenges, the submitted prompts are sent to the selected AI models via the OpenRouter API to generate responses. Please refer to OpenRouter's policies regarding data handling.
- Business Transfers: Information may be disclosed or transferred as part of, or during negotiations of, any merger, sale of company assets, financing, or acquisition of all or a portion of our business to another company.
- Legal Requirements: We may disclose your information if required to do so by law or in the good faith belief that such action is necessary to comply with a legal obligation, protect and defend our rights or property, prevent or investigate possible wrongdoing in connection with the Service, protect the personal safety of users of the Service or the public, or protect against legal liability.
- With Your Consent: We may share your information for other purposes with your explicit consent.
We do not sell your personal information.
Data Storage and Security
Your information, including profile data, user-generated challenges, and responses, is stored using Supabase. We implement reasonable security measures (including those provided by Supabase and Vercel) to protect your information. However, no electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.
Data Retention
We retain your personal information for as long as your account is active or as needed to provide you services, comply with our legal obligations, resolve disputes, and enforce our agreements. User-generated challenges and responses are retained until the user deletes them or deletes their account, subject to our backup policies.
Your Privacy Rights
Depending on your location, you may have certain rights regarding your personal information:
- Access: You can request access to the personal information we hold about you via your account settings or by contacting us.
- Correction: You can update your account information through your account settings.
- Deletion: You can request the deletion of your account and associated personal data via your account settings or by contacting us. Note that deleting your account will also delete your user-generated challenges and responses permanently.
- Opt-out of Marketing: You can opt-out of receiving promotional communications from us by following the unsubscribe link or instructions provided in any email we send.
Users in certain regions (like the EEA, UK, Canada) may have additional rights under applicable data protection laws.
Third-Party Websites
Our Website may contain links to other websites not operated or controlled by us (e.g., links to model providers, Stripe, GitHub). This Privacy Policy does not apply to third-party websites. We encourage you to review the privacy policies of any third-party website you visit.
Children's Privacy
Our Service is not intended for individuals under the age of 13. We do not knowingly collect personal identifiable information from children under 13. If you become aware that a child has provided us with personal information, please contact us.
Updates To This Notice
We may update this privacy notice from time to time. The updated version will be indicated by an updated "Last Updated" date. We encourage you to review this Privacy Policy periodically.
Contact Us
If you have questions or comments about this notice, you may reach out via the contact methods provided on our associated platforms (e.g., Twitter @nuancedev or GitHub issues on the nuanced profile if applicable).