Legal

Privacy Policy

Last updated August 26, 2026

Overview

This policy explains what we collect when you use WordTrunk, why we collect it, and the choices you have. We keep it short and in plain language — the same way we keep your vocabulary.

Information we collect

We collect only what we need to run your account and your spaced-repetition schedule:

  • Your email address, used to sign in and contact you.
  • The word sets, words, translations, and tags you create.
  • Revision activity — answers, streaks, and timings that power your progress charts.
  • The display name you choose for your greeting, if you set one.

How we use your data

Your data is used to schedule revisions, render your progress, and keep your library in sync across devices. We do not sell your data, and we do not use the contents of your word sets for advertising.

Storage & security

Data is stored with Supabase and protected by row-level security so each learner can only read their own records. Connections are encrypted in transit.

Your choices

You can edit or delete any word set at any time from Manage Vocabulary. For anything else — a copy of everything we hold about you, a correction, or permanent deletion of your account — email support@wordtrunk.com and we will action it within one month. We will first send a short code to your registered email address and ask you to send it back, so that nobody can request your data by pretending to be you. If you ask us to delete your account, we stop sign-in straight away and then wait 30 days before erasing anything, and we email you a link to cancel in that time. If you are unhappy with how we handle your request, you can complain to your data protection regulator — in the UK, the Information Commissioner's Office.

Product analytics & retention

We record product-usage events — which features are used, when, and in which languages — to understand how WordTrunk is used and improve it. This is pseudonymous data, not anonymous data:

  • Events are linked to an internal account identifier only. No name, email address, IP address or device/browser information is stored with them, and the admin analytics view displays only a truncated identifier — it never resolves an identifier to a name or email. Error monitoring is a separate purpose that does record some technical device information — see the next section.
  • We never store the content of your words, translations, notes or feedback messages in analytics — only counts and category labels.
  • We do not sell this data, and it is not shared with third-party advertising or analytics networks.
  • Detailed usage records are retained for up to 400 days, after which they are deleted and only aggregate daily totals remain. Those totals carry no account identifier, but because WordTrunk is small some of them describe very few people, so we do not claim they are anonymous.
  • Deleting your account deletes your usage records, and the aggregate totals for the days you were active are recalculated without you — so your activity is removed from those totals too.

Our lawful basis for this processing is our legitimate interest in operating and improving the service (UK/EU GDPR). To request access to or erasure of your usage records, email support@wordtrunk.com and we will action it.

Error monitoring

Separately from product analytics, we record a technical report when something in the app fails, so we can find the fault and fix it. This is a different purpose from analytics, and it collects different data:

  • An error report contains the page or feature involved, the type of error and its technical stack trace, the version of the app you were running, your browser and operating system, and basic device characteristics such as your language and time zone. It is linked to the same internal account identifier as your usage data — never your name or email address.
  • We never include the content of your words, translations, notes, feedback messages or uploaded files in an error report. Search terms are stripped from web addresses, the contents of requests are discarded, and any email address found in a report is removed before it is sent.
  • Error reports are processed on our behalf by Sentry and stored on servers in the European Union. We do not send your IP address, and Sentry is configured not to store it — but it still derives an approximate location (country and city) from the connection and keeps that alongside the report. Our hosting provider, Vercel, also keeps short-term server logs which, unlike our analytics, may include your full IP address.
  • Error reports are deleted after 90 days.

Our lawful basis for error monitoring is our legitimate interest in keeping the service secure and reliable. It is separate from the product analytics described above, and the data is used only to diagnose and fix faults — never to build a profile of you, and never for marketing.

Contact

Questions about this policy? Email support@wordtrunk.com.

Terms · Help and FAQ · Contact support