Legal Documentation

Privacy Policy

Last Updated: 2026-02-15

Contact: help@brainedge.net

Summary for Humans

We value your time. Here are the critical takeaways from this document.

GDPR CompliantWe process your data under clear legal bases (contract, consent, or legitimate interests) as required by EU law.
Data MinimizationWe collect only what is necessary to run the service. No unnecessary data collection.
We Don't Sell Your DataYour personal data is never sold to third parties, recruiters, or advertisers.
Right to ErasureYou can request deletion of your account and associated data at any time by contacting us.
01

Scope

This Privacy Policy explains how Brainedge ("we", "us") collects and processes personal data when you visit Brainedge.net, read content, take assessments, purchase reports, or contact support.

02

Data We Collect

We collect only what we need to provide and improve the service:

A) Data you provide

  • Account data: email address and authentication metadata; if using Google sign-in, profile name/image provided by Google
  • Assessment inputs: your answers to questions (free/deep)
  • Optional profile inputs: role/industry, skills (if you choose to provide)
  • Support messages: content you send via contact form or email

B) Data we collect automatically

  • Basic technical logs: IP address, device/browser info, timestamps, pages requested (server logs)
  • Usage events (if you consent to analytics): page views, clicks, session duration, and feature usage

C) Payment data

Payment is processed by Stripe. We receive limited metadata such as payment status, product, and transaction identifiers. We do not store full card details.

03

Why We Process Your Data (Purposes and Legal Bases)

We process personal data under GDPR legal bases depending on the purpose:

Provide the service (assessments, reports, dashboard, account access)

Legal basis: Performance of a contract (GDPR Art. 6(1)(b))

Customer support and communication

Legal basis: Performance of a contract or legitimate interests (Art. 6(1)(b)/(f))

Security and fraud prevention (rate limiting, abuse detection, log retention)

Legal basis: Legitimate interests (Art. 6(1)(f))

Analytics and product improvement (non-essential tracking)

Legal basis: Consent (Art. 6(1)(a)) and ePrivacy consent for non-essential cookies/tracking

Marketing emails (newsletter/insights)

Legal basis: Consent (Art. 6(1)(a)) or legitimate interests where permitted by applicable local rules (you always have an easy opt-out)

04

Cookies and Tracking (ePrivacy / Consent)

We use:

  • Strictly necessary cookies (no consent required): security, session, essential preferences
  • Optional analytics cookies/events (consent required): measuring engagement and improving content

We will not set non-essential cookies or analytics until you consent. You can withdraw consent at any time via [COOKIE SETTINGS LINK].

05

How Long We Keep Data (Retention)

We keep personal data only as long as necessary:

  • Account data: while your account remains active; deleted upon request unless legal obligations require retention
  • Assessment data: 12 months or until you delete it
  • Support messages: 12 months
  • Security logs: 30 days
  • Purchase records (invoices/transactions): as required by tax/accounting laws in our jurisdiction
06

Sharing and Processors

We share personal data only with service providers ("processors") necessary to run the service:

Hosting/CDNVercel
Database/AuthSupabase
PaymentsStripe
Email deliveryResend
AnalyticsPostHog

We require processors to protect data and process it only under our instructions.

07

International Transfers

If we transfer personal data outside the EEA/UK, we use appropriate safeguards such as Standard Contractual Clauses (SCCs) and vendor contractual commitments where applicable. (Update this section after final vendor list.)

08

Your Rights (EU/EEA/UK)

You have rights under GDPR, including:

Access, rectification, deletion
Restriction and objection to processing
Data portability
Withdraw consent (where processing is based on consent)
Lodge a complaint with your supervisory authority

To exercise rights, email: help@brainedge.net. We may request verification to protect your data.

09

Automated Decision-Making

We provide scores and recommendations based on your inputs. These outputs are intended for informational purposes and are not legal, medical, or employment advice. We do not use automated decision-making that produces legal effects about you (e.g., hiring decisions).

10

Children

Our service is not directed to children. If you believe a child has provided personal data, contact help@brainedge.net.

11

Security

We use appropriate technical and organisational measures such as encryption in transit, access controls, and least-privilege permissions.

12

Contact

Privacy questions: help@brainedge.net

Support: help@brainedge.net

Questions?

If you have any questions about this Privacy Policy, please contact us.

help@brainedge.net

Ready to analyze your trajectory?

Secure your report today. No subscription, just pure data.

Start Assessment