Privacy Policy

Last updated: August 2026 — Proofite

Who we are

Proofite (proofite.com) is a personal briefing service: it collects the sources you choose (newsletters, RSS feeds, web searches, forwarded emails) and writes a personal digest and podcast. Data controller: the service operator, reachable at [email protected].

Data we process

  • Account: email, name and password (stored hashed), or the provider identifier if you sign in with Google or Apple (email, name and — for Google — profile picture).
  • Content: emails received at the Proofite addresses you create, the feeds and searches you configure, and text extracted from attachments. Attachment files are not kept: only the extracted text.
  • Preferences and feedback: the signals you give (interests, technical level, written or transcribed voice notes), used only to personalise your digests.
  • Mobile app: if you enable notifications, the device push token (used only to deliver the notification; deleted on logout).
  • Technical data: operational logs and AI usage logs (tokens and costs), never for advertising.

How we use it

Solely to run the service: writing your personal digests, podcasts and voice replies. For AI processing, content text is sent to language and speech model providers (via OpenRouter, OpenAI and Google AI) for the sole purpose of producing your content. Web searches use serper.dev. Payments, when any, are handled by Stripe: card details never touch our servers. No data is ever sold or used for advertising.

Where the data lives

Proofite's servers and backups are in the European Union. AI providers may process text outside the EU under GDPR safeguards (standard contractual clauses).

Retention and your rights

From Settings you can export all your data in one click (complete JSON) and delete your account yourself: deletion is immediate and removes everything about you. You have the rights of access, rectification, erasure and portability under the GDPR: write to [email protected].

Cookies

We only use technical session cookies (authentication); in the mobile apps the session is a token stored on your device. No profiling or third-party cookies.

Visit statistics for the public site run on a server of ours (Umami): they are anonymous and aggregated, and use no cookies or other identifiers stored on your device. To understand where pages fail people we also record the path of the visit (clicks and scrolling) on public pages only: the recording stays on that same server of ours, no third party receives it, and text and form fields are masked by the browser before anything is sent — we never see what you type. Inside the app (app.proofite.com) we record nothing.