Privacy Policy
Effective August 11, 2026. This is a working draft prepared with AI assistance as a starting point — it has not been reviewed by a lawyer. It describes what the software actually does today rather than what a template says it might do; when the Service changes, this page changes with it.
PKL is operated from Mexico. A registered business entity is in formation, and this page will be updated to name the legal operator once that is complete. References to "PKL," "we," "us," or "our" in this document mean the operator of the Service.
Contact for privacy questions, data access requests, and deletion requests: legal@personalknowledgeledger.com.
1. What this policy covers
This policy covers personalknowledgeledger.com and the PKL application behind it. PKL is a personal study tool: you give it material from courses you have already paid for, and it turns that material into a private vault you can question and be quizzed on. Almost everything in this policy follows from that one fact — the content is yours, it is private to your account, and we handle it only to run the Service for you.
2. What we collect
We collect only what the Service needs to function. In practice that is five things:
- Account information. When you sign in with Google through Supabase Auth, we receive your email address, your name, and your profile picture. We never see or store your Google password.
- The material you put in. Text you paste, and text extracted from files you upload (PDF, PowerPoint, and image files). From it we store your courses, the concept pages synthesized from them, citations with short source excerpts, and numeric vector embeddings that make your vault searchable. Audio and video transcription is not currently enabled.
- Your study activity. Queries, teach-backs, debates and benchmarks are logged with a timestamp, the concept involved, and where relevant an outcome score. This is what drives spaced-repetition scheduling and the ROI ledger — the features exist only because this is recorded.
- Technical and security information. The IP address requests come from, an approximate location derived from it, a label for each active session's device, and how many requests an account has made. Section 4 explains this in full, because it is the part most people want detail on.
- Billing information. Your Stripe customer and subscription identifiers, your plan, its status, and its renewal date. Card numbers go directly from your browser to Stripe and never reach our servers — we could not see them if we wanted to.
3. How your course material is processed by AI
To turn your material into concept pages, citations, teach-back questions, debates and benchmarks, the relevant text is sent to third-party AI providers: Anthropic for the synthesis and question generation, and Voyage AI to produce the embeddings that make search work. They process it to return a result to you.
We do not use your course material to train any model of our own, and we do not grant these providers rights to your material beyond processing it under their API terms to serve your request. Your vault is not shared with, visible to, or pooled with other users.
4. Security, sessions, and location data — the honest detail
PKL is sold as one account for one person, so it has to be able to tell when a single subscription is being shared across many people, and it has to be able to stop automated abuse. That requires collecting more technical data than a typical app, and we would rather describe it plainly than have you discover it:
- We record the IP address of requests, and keep a per-account record of which IP addresses have been seen for that account, when they were first and last seen, and how many requests came from each.
- We look up the approximate location of an IP address — city, region, country, and the network operator — using ipinfo.io. This is coarse, derived from the address rather than from your device, and is not GPS or precise location.
- Each active session is recorded with a device label so that concurrent sessions can be counted and capped.
- The operator of the Service can see this information at the account level, including a map showing the approximate locations of active sessions.
This data is used for session capping, rate limiting, and investigating abuse — and for nothing else. It is not used for advertising, profiling, marketing, or building a picture of you as a person. Session records older than 30 days are pruned automatically.
5. Cookies
PKL sets session cookies through Supabase Auth so that you stay signed in and so that requests can be tied to your account. That is the only category of cookie the Service uses. There are no advertising cookies and no cross-site tracking cookies.
6. Email
If you have them enabled, PKL sends you operational email — the weekly digest, review reminders, and alerts about your account. These are sent through Resend, which receives your email address for that purpose. We do not send marketing email to your account address without asking you first.
7. Who else handles your data
PKL is run by one person, not a company with departments, so the Service depends on third-party providers. Each one receives only what it needs to do its job:
- Supabase — authentication, database, and storage. Holds your account and your vault.
- Vercel — hosting and delivery of the application.
- Anthropic — AI synthesis, teach-back, debate, and benchmarking.
- Voyage AI — vector embeddings that make your vault searchable.
- Stripe — subscription payments and billing.
- Resend — delivery of operational email.
- ipinfo.io — approximate location lookup for IP addresses, as described in Section 4.
We do not sell, rent, or trade your personal information or your course material to anyone. We disclose data outside this list only if we are legally required to, or where Section 4 of the Terms of Service requires cooperating with a rights holder over a valid infringement claim.
8. What PKL deliberately does not do
The Service contains no third-party analytics, no advertising software, and no tracking or session-recording tools of any kind — no Google Analytics, no advertising pixels, no heatmaps. This is a deliberate choice, and it is verifiable: there is no such code in the application.
9. How long we keep things
Your vault content is kept until you delete it or delete your account. Session records are pruned automatically after 30 days. Billing records are kept for as long as tax and accounting obligations require. Error and audit records are kept while they remain operationally useful and are not used to build a profile of you.
10. Deleting your data
Deleting a course from your vault removes that course and everything derived from it — its concepts, citations, and relationships — immediately and irreversibly.
Deleting your account, from the "Danger zone" on the Digest page, cancels any active subscription and removes your account along with its content. There is no undo. If you would rather we did it for you, email the address at the top of this page.
11. Your rights over your data
If you are in Mexico, the Ley Federal de Protección de Datos Personales en Posesión de los Particulares gives you ARCO rights — access, rectification, cancellation, and opposition. If you are in the European Economic Area or the United Kingdom, the GDPR gives you comparable rights, including access, correction, erasure, portability, restriction, and objection.
Most of these you can exercise directly in the app: your vault shows everything stored about your material, and account deletion is self-service. For anything else — including a copy of your data or a question about how it is handled — email the address at the top of this page and we will respond.
12. Where your data is processed, and children
The providers listed in Section 7 are based principally in the United States, so your data is processed there and transferred outside Mexico and the European Economic Area to reach them. The Service is not intended for or directed at children under 16, and we do not knowingly collect their information.
13. Changes and contact
We will update this policy as the Service changes, and the effective date at the top of this page will change with it. Questions, data requests, or privacy concerns: legal@personalknowledgeledger.com.