Privacy Policy
Last updated
This policy describes exactly what SatisPhy Labs does with your personal data. It reflects how the service is actually built, not a generic template.
Who is responsible
The data controller is [FULL LEGAL NAME], a sole trader based in London, United Kingdom, trading as SatisPhy Labs. Contact address: [POSTAL ADDRESS].
For any privacy question or request, email satisphylabs@gmail.com.
What we collect, and why
| Data | Why | Lawful basis |
|---|---|---|
| Email address | Identifies your account; used to contact you about your purchase | Performance of a contract |
| Password (hashed) | Signing you in securely | Performance of a contract |
| Session token | Keeps you signed in between pages | Performance of a contract |
| Stripe customer & subscription IDs, plan status, renewal date | Knowing whether your access is active | Performance of a contract |
Your password is never stored. It is put through scrypt with a random per-user salt, and only that result is kept. It cannot be reversed back into your password.
What we do not collect
- Card details. Payment happens entirely on Stripe's systems. Your card number never reaches our servers.
- Your clips. Simulations run in your browser and recordings are written straight to your device. No video or audio you create is ever uploaded to us.
- Third-party analytics, advertising or cross-site trackers. No Google Analytics, no advertising pixels, no third-party tracking cookies. Usage measurement is our own and never leaves our server (see below).
- Your name, address or phone number, unless you put them in an email to us.
Usage analytics
We measure how the site is used so we know which simulations are worth improving. This is built in-house and the data never leaves our server.
We record: pages viewed, which simulation was opened and for how long, whether its controls were adjusted, when a clip is exported and at which aspect ratio, and which site referred you (for example a search engine or a social network).
We do not use a cookie or any other storage on your device for this. To count visitors without identifying them we take a one-way hash of your IP address and browser, combined with a secret that changes every day. The result cannot be reversed, is not linked to your account, and because the secret rotates daily it cannot be used to recognise you tomorrow or to follow you between sites.
Analytics records are deleted automatically after 180 days.
Cookies
One cookie, named sid. It holds a random session token, contains no
personal data, is marked HttpOnly and SameSite=Lax, and expires after 30 days. It is
strictly necessary to keep you signed in, so no cookie banner is required. Signing out
deletes it.
Who else processes your data
- Stripe: payments, subscription management and billing emails. Stripe is the controller of the card data you give it. See stripe.com/gb/privacy.
- Railway: hosting. The application and its database run on Railway infrastructure in the United Kingdom / European Union.
Your account data is stored in the UK/EU. Stripe may transfer data internationally under its own safeguards, which are described in its privacy policy.
We do not sell your data, and we never will.
How long we keep it
Account data is deleted 12 months after you close your account or after your last plan ends, whichever is later. Stripe keeps payment records for longer where tax and accounting law requires it, currently six years in the UK.
Ask us to delete your account sooner and we will, subject to those records.
Your rights
Under UK GDPR you can ask us to:
- give you a copy of the personal data we hold about you
- correct anything inaccurate
- delete your data
- restrict or object to how we use it
- provide it in a portable format
Email satisphylabs@gmail.com and we will respond within one month. Given how little we hold, most requests are quick.
If you are unhappy with how we handle your data you can complain to the Information Commissioner's Office at ico.org.uk or on 0303 123 1113.
Children
Accounts are for adults aged 18 or over. We do not knowingly collect data from children. If a child has used the Service, it should be through an account held by their parent or guardian. Contact us if you believe we hold a child's data and we will delete it.
Security
The site is served over HTTPS. Passwords are hashed with scrypt. Session cookies are HttpOnly. Studio content is served only to signed-in users with an active plan. No system is perfectly secure, but we keep what we hold deliberately minimal so there is little to lose.
Changes
If this policy changes materially we will email the address on your account. The date at the top always shows the current version.