Privacy
The short version: we store what the product needs in order to teach you words, and you can delete all of it yourself, at any moment.
What we store
The account: name, email address, interface language, and either a password hash or the identifier of the Google account you signed in with, along with the avatar that comes with it.
The learning: the languages you added, the words you keep, your own notes and mnemonics on them, the answers you gave and the schedule built out of them.
The API tokens you create yourself, if you connect a bot.
What it is for
Only to run the product: to build the next dictation, to show your progress, and to send the letters an account needs, such as confirming an address or resetting a password.
We do not sell this data and we do not show advertising.
Outside services
Parts of the product run through outside services: delivering mail, synthesising pronunciation, generating examples and the story of the day, and signing in with Google if you use it. What they need in order to do that reaches them.
Inside the signed in part of the site we count how the product is used. The email address goes there hashed, never in the clear. The public pages, the dictionary and the guides among them, load no analytics at all.
Cookies
The site sets its own session cookie, and that is what keeps a sign in and a form working. There is no advertising cookie.
Deleting the account
Settings, then Account. The account is deleted for real rather than hidden, and in the same operation it takes with it your languages, your words with your notes, your answers and schedule, your daily sessions and stories, and your API tokens.
The words of the shared dictionary stay: they are not yours, and they carry nothing of yours.
Database backups are kept for a while, so a copy of a deleted account can live on in them until those backups expire.