Privacy Policy
Last updated: April 4, 2026
1. Information We Collect
We collect the following types of information:
- Account information: name, email address, and password when you create an account
- Test submissions: written essays and audio recordings submitted for AI assessment
- Usage data: test results, scores, progress data, and interaction patterns
- Technical data: IP address, browser type, device information, and cookies
- Payment data: processed securely by Paddle; we do not store credit card numbers
2. How We Use Your Information
- To provide AI-powered scoring and feedback on your submissions
- To track your progress and personalize your learning experience
- To process payments and manage subscriptions
- To communicate with you about your account and the Service
- To improve our AI models and service quality (anonymized, aggregated data only)
- To ensure security and prevent abuse
3. AI Processing
Your essays and audio recordings are processed by third-party AI services (Anthropic Claude API, OpenAI Whisper API) for the sole purpose of generating scores and feedback. Per our agreements with these providers, your data is not used to train their AI models.
4. Data Sharing
We do not sell your personal data. We share data only with:
- AI providers (Anthropic, OpenAI) — for scoring and transcription
- Payment processor (Paddle) — for billing
- Hosting providers — for infrastructure
- Law enforcement — only when legally required
5. Data Security
We protect your data with industry-standard measures:
- HTTPS/TLS encryption for all data in transit
- Encrypted database storage for data at rest
- Regular security audits and updates
- Access controls limiting who can view user data
6. Your Rights
You have the right to:
- Access — request a copy of all data we hold about you
- Correction — update or correct your personal information
- Deletion — request permanent deletion of your account and all associated data
- Export — download your data in a portable format
- Restriction — restrict how we process your data
To exercise these rights, contact us at privacy@bandscore.ai. We will respond within 30 days.
7. Data Retention
We retain your data for as long as your account is active. If you delete your account, all personal data is permanently removed within 30 days. Anonymized, aggregated data may be retained for analytics purposes.
8. Cookies
We use essential cookies for authentication and session management. We may use analytics cookies to understand how the Service is used. See our Cookie Policy for details.
9. Children's Privacy
The Service is not intended for children under 13. We do not knowingly collect personal information from children under 13.
10. Contact
For privacy-related questions, contact us at privacy@bandscore.ai.