Your Privacy at BrieflyGo
Your privacy is not just legal text for us. It is the foundation of trust. Here is exactly what we collect, what we do with it, and what we never do.
What We Collect
Only what is needed to operate the service:
- Account data: your email address, used for authentication and service communications.
- Documents you analyze: PDFs, Word files, or text you upload for AI analysis. Processed transiently and not stored after your session unless you explicitly save a report.
- Analytics data: page URL, referrer, anonymized IP, browser type, OS, device type, and country code. No full IP address is ever stored in our first-party analytics store.
- Support messages: name (optional), email, and message content when you contact us via the contact form.
We do not collect behavioral profiles, purchase history beyond your own subscription, or data from third party brokers.
Legal Basis for Processing (GDPR Art. 6)
For users in the European Economic Area (EEA), we rely on the following legal bases:
- Contract performance (Art. 6(1)(b)): processing your email and uploaded documents to deliver the service you subscribed to.
- Legitimate interests (Art. 6(1)(f)): first-party anonymized analytics to understand product usage, improve reliability, prevent abuse, and maintain security.
- Consent: optional third-party analytics tools only load after you explicitly allow them through the consent banner.
- Legal obligation (Art. 6(1)(c)): retaining billing records as required by applicable tax law.
No Selling
How We Use AI
IP Address Anonymization
Our first-party analytics system never stores a complete IP address. Before data is written to storage, the last octet of IPv4 addresses is replaced with 0. For IPv6, the trailing bits are zeroed so the stored value is not directly identifying.
Cookies & Tracking
BrieflyGo uses a consent banner for optional analytics. Our first-party product analytics remain server-side, and Google Analytics only loads after you allow it via the banner.
- Optional analytics stay off until you give consent.
- No cross-site advertising or behavioral profiling.
- No third-party advertising networks.
Auth session tokens are stored in localStorage for Supabase auth, which is scoped to our domain.
Data Retention
- Account data: retained while your account is active. Deleted permanently within 30 days of account deletion.
- Uploaded documents: not stored beyond your active session unless you explicitly save a report.
- Analytics: retained for operational analysis and then purged on our standard retention schedule.
- Billing records: retained as required by applicable tax law.
- Support messages: retained for support and product quality follow-up, then removed on the normal retention cycle.
Your Rights (GDPR Art. 15-22)
If you are in the EEA or UK, you have rights of access, rectification, erasure, restriction, portability, objection, and complaint to your local data protection authority.
Contact privacy@brieflygo.com for privacy requests.
California Privacy Rights (CCPA / CPRA)
California residents may request access, deletion, correction, and other rights provided by applicable California privacy law. We do not sell personal information.
To exercise a California privacy right, email privacy@brieflygo.com with the subject line California Privacy Request.
Data Transfers
Contact
Privacy questions or data requests:
- Email: privacy@brieflygo.com
- Subject line: Privacy Request
Last updated: April 2026. Applies to BrieflyGo (brieflygo.com).