Privacy by default

No email. No password. No ads. No data sold.

That's not a feature we added — it's how SATellar works. There's no account to log in to because there's no account.

On first launch we generate an anonymous ID so the leaderboard and “Restore Purchases” work across devices. That's the entire “identity” we have on you. The detailed policy below covers every byte we do touch — the short version: almost nothing.

Privacy Policy

Last updated: May 11, 2026 • Effective: May 11, 2026

The short version: SATellar does not ask for your name, email, phone number, or any contact info. You don't sign in with Google, Apple, or email — there's no traditional account. On first launch, we mint an anonymous user ID (a random UUID) so we can power the optional leaderboard, validate your subscription, and understand which features are working. Your practice questions, answers, and stats live on your device; a minimal slice of practice events is also synced to our backend tied to that anonymous ID. We do not sell or share your data. Purchases go through Apple's in-app billing; we never see your payment details. If you're under 13, you may not use SATellar.

1. Who We Are

SATellar is an independent mobile application. This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our mobile application ("App") on iOS and Android, and our website at https://satellar.app (collectively, the "Service").

SAT® is a registered trademark of College Board, which is not affiliated with, and does not endorse, SATellar.

For privacy questions, contact us at: [email protected]

2. Information We Collect

2.1 Information You Provide

SATellar does not ask for your name, email address, phone number, date of birth, or any contact information. There is no Google, Apple, or email sign-in.

Data TypeWhen CollectedPurpose
Display name (optional)If you opt in to the leaderboardShown alongside your stats on the public leaderboard
Grade level (optional)During onboardingPersonalize question difficulty and pacing recommendations

Payment information: We do NOT directly collect or store payment card details. All payments are processed by Apple (App Store) or Google (Google Play) and are subject to their respective privacy policies.

2.2 Information Generated Through Use

Data TypeDescription
Practice session dataQuestions answered, answer selections, scores, time spent, session type
Performance dataAccuracy rates, difficulty level, subject-area performance
BookmarksQuestions you save for review
Badges & achievementsEarned based on your activity
PreferencesTheme (light/dark), notification settings

2.3 Information Collected Automatically

Data TypeDescription
Anonymous user IDA random UUID generated on first launch via Supabase anonymous auth; not linked to your real-world identity
Device informationDevice model, operating system, screen resolution
Usage dataApp open/close events, feature interactions (e.g., session_started, paywall_viewed, purchase_completed)
Log dataIP address (server logs only), crash reports
Approximate locationDerived from IP address only (not GPS)

We do not collect precise geolocation, contacts, photos, microphone data, camera data, or health data.

3. How We Use Your Information

We do not send marketing emails because we do not collect email addresses.

We will not sell your personal information. We do not use your data for third-party advertising. We do not build advertising profiles based on your activity.

4. How We Share Your Information

4.1 With Other Users

If you opt in to the leaderboard, your display name and stats (accuracy, level, total correct, sessions completed) are visible to other users. We don't show your email or any contact info because we don't collect any. You can toggle leaderboard visibility off at any time via the “Show me on the leaderboard” switch in your profile settings; turning it off removes your row from the public leaderboard.

4.2 With Service Providers

ProviderPurposeData Shared
SupabaseBackend database for leaderboard, referrals, and anonymous user identityAnonymous user ID, practice session metadata (subject, topic, difficulty, correctness), optional display name, IP address (server logs)
PostHogProduct analytics — understanding which features are used and where users get stuckAnonymous user ID, app events (session_started, paywall_viewed, purchase_completed, etc.), device platform, OS version, IP address
RevenueCatSubscription receipt validation, entitlement tracking, restore purchasesAnonymous user ID, platform purchase receipts, subscription status, device platform/OS version
ApplePayment processing via App StorePurchase details (we receive only confirmation and product ID, not card data)

These providers process data on our behalf under contractual obligations of confidentiality. None of them receive your real name, email, or any contact information — only the anonymous user ID and the data needed for their specific function. See RevenueCat's Privacy Policy, PostHog's Privacy Policy, and Supabase's Privacy Policy for details on their processing.

4.3 For Legal Reasons

We may disclose your information if required by law, court order, or government request, or if necessary to protect our rights, prevent fraud, or ensure user safety.

4.4 Business Transfers

If SATellar is involved in a merger, acquisition, or asset sale, your information may be transferred. We will notify you via email or in-app notice before your information becomes subject to a different privacy policy.

5. Data Storage and Security

5.1 Where Your Data Is Stored

5.2 International Data Transfers

If you are located outside the United States, your data will be transferred to and processed in the United States. For users in the EEA/UK, we rely on Standard Contractual Clauses (SCCs) as the legal mechanism for such transfers.

5.3 Security Measures

No method of transmission or storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

6. Data Retention

Data TypeRetention Period
Anonymous user ID and optional display nameUntil you delete your account
Practice events (backend copy)Until you delete your account
Analytics events (PostHog)Up to 24 months, then deleted
Payment/transaction recordsUp to 7 years (tax/legal compliance)
Crash and error logsUp to 12 months
Anonymized/aggregated analyticsIndefinitely (not linked to you)

When you delete your account, we will delete or anonymize your personal data within 30 days, except where retention is required by law.

7. Your Privacy Rights

7.1 All Users

Regardless of location, you may:

7.2 California Residents (CCPA/CPRA)

Under the California Consumer Privacy Act, as amended by the California Privacy Rights Act, you have the right to:

How to exercise your rights: Email [email protected] or use the Privacy section in your Profile settings. We will verify your identity and respond within 45 days.

CCPA Disclosures (prior 12 months):

CategoryCollectedSoldShared for Ads
Identifiers (anonymous user ID, optional display name, IP)YesNoNo
Internet/network activity (app usage events, device info)YesNoNo
Education information (practice answers, sessions)YesNoNo
Commercial information (purchase history)YesNoNo
Inferences (difficulty level, performance trends)YesNoNo

7.3 European Economic Area & UK Residents (GDPR)

If you are in the EEA or UK, we process your data under the following legal bases:

Legal BasisApplies To
Performance of a contract (Art. 6(1)(b))Providing the Service, account management, purchases
Legitimate interests (Art. 6(1)(f))Improving the Service, analytics, fraud prevention
Consent (Art. 6(1)(a))Marketing emails, non-essential cookies
Legal obligation (Art. 6(1)(c))Tax records, lawful government requests

You have the right to: access, rectification, erasure ("right to be forgotten"), restrict processing, data portability, object to processing, withdraw consent, and lodge a complaint with your local supervisory authority.

To exercise these rights, contact [email protected]. We will respond within one month.

7.4 CalOPPA Compliance

In accordance with the California Online Privacy Protection Act: this policy is conspicuously linked from our App and website; we describe all categories of personal information collected and third parties with whom it is shared; and we honor "Do Not Track" browser signals by not engaging in cross-site tracking.

7.5 Other U.S. States

Residents of Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, and other states with privacy laws may have similar rights to those described in Section 7.2. To exercise them, contact [email protected].

8. Children's Privacy (COPPA)

SATellar is designed for students aged 13 and older. We do not knowingly collect personal information from children under 13.

8.1 Age Verification

SATellar is marketed to high-school students preparing for the SAT. During onboarding, we ask for your grade level (we do not collect date of birth). If you are under 13, you are not authorized to use the App and you should stop using it immediately. If a parent or guardian becomes aware their child under 13 has used the App, they should contact us at [email protected] to request deletion of any associated data.

8.2 Users Aged 13–15

8.3 Parental Rights

If you are a parent or guardian and believe your child under 13 has provided us with personal information, please contact us immediately at [email protected]. We will investigate and delete any such information within 48 hours of verification.

9. Cookies and Tracking

9.1 Mobile App

The SATellar mobile app does not use cookies. We use local device storage (SQLite) for app data and preferences.

9.2 Website

Our website may use essential cookies for authentication. We do not use advertising cookies or third-party tracking pixels. For EEA/UK visitors, we display a cookie consent banner before setting any non-essential cookies.

10. In-App Purchases and Subscriptions

All payments are processed through Apple App Store (iOS) or Google Play Store (Android). We do not directly collect, process, or store your credit card or payment details. We receive only a transaction confirmation, purchase type, and subscription status from the platform.

We use RevenueCat as a service provider to validate your purchase receipts with Apple/Google, track your subscription tier (Starter, Plus, Pro), and support the "Restore Purchases" feature across reinstalls and new devices. RevenueCat receives only an anonymous user identifier, your platform purchase receipts, and basic device metadata. RevenueCat does not receive your name, email, or practice data. See Section 4.2 for details.

You manage and cancel subscriptions through your Apple or Google account settings, not through SATellar directly. See our Terms of Service Section 5 for auto-renewal, cancellation, and refund information.

11. Data Breach Notification

In the event of a data breach affecting your personal information, we will:

12. Changes to This Policy

We may update this policy to reflect changes in our practices or legal requirements. When we make changes:

13. Contact Us

For privacy questions, data requests, or concerns:

SATellar
Email: [email protected]
Website: https://satellar.app

For EEA/UK users, if you are not satisfied with our response, you have the right to lodge a complaint with your local data protection supervisory authority.

SAT® is a registered trademark of College Board, which is not affiliated with, and does not endorse, SATellar.