Powerlevel UpOpen app

Privacy notice

Privacy

Last updated: August 5, 2026

Data we collect

Powerlevel Up stores your email address, name and profile details; authentication and account metadata; projects, source metadata, knowledge units, card prompts and answers, tags, language metadata, review history, study progress, scheduling settings, and reminders. Card and source fields can contain personal information if you put it there.

Each signed-in session records its creation, last activity and expiry, plus the IP address and browser user-agent supplied with the authentication request. We use this metadata for session security, abuse prevention, and troubleshooting. Passwords, session cookies, verification and reset tokens, invite tokens, and agent tokens are stored only in hashed or otherwise protected form where applicable.

If you connect an AI agent, we store authorization request IDs, agent labels, requested and approved scopes, duration, approval path and status, material hints, grant use and revocation timestamps, submission receipts and status, submitted content, and limited authorization-event telemetry such as event type, scope count, and duration. We do not give an agent your password or browser session.

How the data is used

We use this data to authenticate you, send transactional email, create and schedule cards, show your dashboard, process approved agent submissions, prevent abuse, debug the service, and respond to support requests.

We do not sell personal information, run targeted advertising, or use your card content to train our own AI models.

Privacy-safe product analytics

We self-host Umami on our Hetzner infrastructure to understand aggregate product use. It receives a canonical page route, timestamp, a canonical internal referrer or external referrer origin, coarse browser, device, language and location information, and fixed events such as calls to action, successful account creation, content creation or import, the first committed review in a page session, visible-and-focused time thresholds, and landing-page scroll-depth thresholds. Campaign and other query values are removed. Cloudflare also provides aggregate edge traffic and performance information.

The analytics integration uses no analytics cookies or stable account identifier. We do not send names, email addresses, account or content IDs, card, project or source content, form values, search text, review ratings, agent labels, authorization values, or other query-string or fragment secrets. Session replay and heatmaps are disabled. Do Not Track or Global Privacy Control prevents the Umami tracker from loading. Umami uses a request IP address transiently for coarse location and an anonymous rotating session hash but does not store the address.

Anonymous analytics are not linked to your Powerlevel Up account, are not part of account export, and cannot be selected out when an account is deleted. They are scheduled for deletion after 13 months. Encrypted analytics backups become eligible for deletion once they are 30 days old and are removed by a daily timer. Aggregate counts may remain until those schedules complete.

Providers and data locations

Hetzner hosts the application, SQLite database, self-hosted Umami analytics database, and server-side backups, so account content, anonymous analytics, and ordinary network metadata are processed on that infrastructure. Cloudflare provides DNS, proxy traffic analytics, and Turnstile abuse protection during account creation, including signup, guest creation, and guest upgrade. Turnstile receives the challenge token and IP address and may process browser or device signals under Cloudflare's terms. Resend processes recipient email addresses, transactional email content, and delivery metadata for verification, password reset, approval, invite, and reminder email.

An external AI tool is separate from Powerlevel Up. Information you give that tool is governed by its provider. Powerlevel Up receives only the authorization metadata and content the approved agent sends to our API.

Retention

Your account and active study content remain until you delete them. A signed-in session can remain for up to 30 days after activity; expired sessions are removed by scheduled cleanup. An inactive anonymous account with no session is removed after 7 days.

Email-verification records expire after 24 hours and password-reset records after 30 minutes. Expired invite records are removed; accepted or revoked invites are retained for up to 30 days. Agent authorization requests expire after 20 minutes and terminal request/event telemetry is retained for up to 30 days. Idempotency replay records expire after 24 hours. Terminal agent submissions and expired or revoked grants are normally retained for up to 90 days, with dependent active records preserved until they can be removed safely. Sent or canceled reminder records are retained for up to 30 days; pending reminders remain until sent, canceled, or account deletion.

Cleanup runs at startup and about every 6 hours in bounded batches, so a record may remain briefly after its stated period. Account deletion removes live account-owned database records. Server backups are targeted for 30-day rotation. Operational logs are minimized, should not contain bearer tokens or card content, and may remain until normal host log rotation, targeted at no more than 30 days.

Exports and your controls

The dashboard's full-account ZIP and JSON export includes your profile; non-secret account and session metadata, including stored IP address and user-agent; retained verification and invite metadata; projects, sources, knowledge and language metadata, cards, reviews, daily progress and settings; reminders; and retained agent requests, grants, events, submissions, and idempotency responses. It excludes passwords, token values and hashes, credential hashes, agent bearer secrets, idempotency hashes, and provider access, refresh, or ID tokens.

A project-scoped export and Anki exports contain study content for the selected scope, not the broader account metadata. Import restores supported study data only; it does not recreate sessions, credentials, reminders, or agent access. You can also revoke agent grants and permanently delete your account from the dashboard.

Age and sensitive information

Powerlevel Up is not for children under 13. Do not use the service for highly sensitive information, medical records, financial records, or secrets. Flashcards may include personal study material, so only add content you are comfortable storing in this service.

Contact

For privacy, deletion, or support questions, email [email protected].