← Back to home

Privacy Policy

Last updated: April 10, 2026

1. Who we are

Laoshi Xu (“we”, “us”) operates this website and learning service. This policy describes how we handle personal information when you use the site, create an account, or contact us at support@laoshixu.com.

2. What we collect

  • Account data: email address and authentication details when you sign up or sign in (including optional sign-in with Google, if enabled).
  • Learning activity: scores, review lists, flashcard usage, and related progress stored to provide the service (e.g. leaderboard, review features).
  • Technical data: IP address and basic request data processed by our hosting, database, and security providers for operation, abuse prevention, and rate limiting.
  • Analytics: aggregated usage metrics via our analytics provider to understand traffic and improve the product (see our Cookies page).

3. How we use information

We use personal information to:

  • Provide, secure, and improve the service;
  • Authenticate you and maintain your session;
  • Send transactional emails (e.g. sign-up confirmation) where applicable;
  • Detect abuse, spam, and protect users and infrastructure.

4. Legal bases (EEA/UK)

Where GDPR/UK GDPR applies, we rely on contract (providing the service you request), legitimate interests (security, analytics, product improvement), and consent where required (e.g. non-essential cookies or marketing, if offered).

5. Sharing and processors

We use trusted service providers (“processors”) to host the app and store data, including authentication and database services (e.g. Supabase), hosting/analytics (e.g. Vercel), and optional security or AI features as described in the product. They process data only on our instructions and under appropriate agreements.

6. Retention

We keep information as long as your account is active and as needed to operate the service, comply with law, and resolve disputes. You may request deletion of your account subject to legal exceptions.

7. Your rights

Depending on your location, you may have rights to access, correct, delete, or export your personal data, or to object to or restrict certain processing. Email support@laoshixu.com to exercise these rights. You may also lodge a complaint with your local data protection authority.

8. Children

The service is not directed at children under the age required for lawful consent in your region without parental involvement. Do not provide personal information if you are not old enough to use the service under applicable law.

9. International transfers

Your information may be processed in countries other than your own. Where required, we use appropriate safeguards (such as standard contractual clauses) for transfers from the EEA/UK.

10. Changes

We may update this policy from time to time. We will post the revised version on this page and update the “Last updated” date.

11. Contact

For privacy questions or requests: support@laoshixu.com.

This page is a practical template for a small web app. It is not legal advice; have counsel review it for your jurisdiction and product.