Privacy Policy
Mardonic is a personal life analysis platform. This policy explains what data we collect, how we use it, and how we protect it. We believe in plain language — not legalese designed to obscure what's actually happening with your data.
The short version: We collect the data needed to run the service. We don't sell it. We don't share it except where required to operate (payments, email delivery). You can request deletion at any time.
Data We Collect
We collect the following categories of information when you use Mardonic:
- Account information — your email address and hashed password when you create an account.
- Assessment responses — your daily check-in answers across the sectors you configure. These are the core data that power your chart.
- Sector allocations — the life areas you've defined and their relative weightings.
- Chart and analysis data — computed trendlines, patterns, candlestick values, and flags generated from your assessments.
- Session and usage data — timestamps, streak information, session counts, and behavioral events used to compute milestones and improve the product.
- Payment information — processed by Stripe. We receive a confirmation of subscription status; we do not store your card number or full payment details.
- Communications — emails you send to our support address and email addresses used for delivery of check-in emails, milestone notifications, and product updates.
How We Use Your Data
Your data is used to provide and improve the Mardonic service. Specifically:
- Generating your personal life chart from assessment responses.
- Detecting technical patterns (candlestick patterns, trendlines, momentum signals) and surfacing them in your analysis.
- Delivering personalized coaching prompts and daily check-in emails.
- Tracking your streaks, milestones, and session history.
- Processing and managing your subscription via Stripe.
- Sending transactional emails (account verification, password reset, milestone notifications).
- Improving the product through aggregate, anonymized usage analysis.
We do not use your data for advertising. We do not build advertising profiles.
Privacy by Design
Mardonic is architected with a meaningful privacy guarantee: your email address and your assessment data are stored separately with no direct link between them. Your life data is keyed to an anonymous UUID — not your identity. Even in the event of a database breach, your assessment responses cannot be tied back to you by name or email.
This is not a marketing claim — it is the actual database schema. Your email is in one table. Your chart data references only an anonymous identifier.
Third-Party Services
We use the following third-party providers to operate the service:
- Stripe — payment processing and subscription management. Your payment data is governed by Stripe's Privacy Policy.
- Twilio — SMS verification for account security (when applicable). Governed by Twilio's Privacy Policy.
- Email delivery — transactional emails are sent through our email proxy infrastructure. Your email address is transmitted to deliver messages to your inbox.
- Neon / PostgreSQL — database hosting for your account and assessment data.
- Render — application hosting infrastructure.
We do not share your personal data with any other third parties. We do not sell your data to anyone, ever.
Data Retention
- Active accounts: Data is retained for the lifetime of your account.
- Cancelled accounts: Your data is retained for 30 days after cancellation, then permanently deleted. This gives you a window to reactivate without losing your history. After 30 days, deletion is permanent and cannot be reversed.
- Deletion requests: You can request immediate deletion of your account and all associated data at any time by contacting mardonic@polsia.app.
Cookies and Local Storage
We use the following client-side storage mechanisms:
- Authentication cookie — an httpOnly, secure JWT cookie that keeps you logged in for up to 30 days. It is not accessible to JavaScript and is not used for tracking.
- localStorage — used to store your anonymous user UUID for continuity before account creation, and to preserve preferences (e.g., chart view settings) on your device.
- sessionStorage — used briefly to pass referral codes through the signup flow. Cleared after use.
We do not use third-party tracking cookies. We do not use advertising cookies.
Your Rights
Depending on your location, you may have rights under GDPR (EU/EEA), CCPA (California), or similar laws. Regardless of jurisdiction, we honor the following for all users:
- Access: You can request a copy of the data we hold about you.
- Correction: You can request correction of inaccurate data.
- Deletion: You can request deletion of your account and all associated data.
- Portability: You can request an export of your assessment data in a machine-readable format.
- Opt-out of emails: You can manage email preferences in your account settings, or unsubscribe via any email we send.
To exercise any of these rights, email mardonic@polsia.app. We will respond within 30 days.
Children's Privacy
Mardonic is intended for users 18 years of age and older. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, contact us immediately at mardonic@polsia.app and we will delete it.
Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we'll update the effective date at the top and notify active users via email. Continued use of the service after changes constitutes acceptance of the updated policy.
Contact
Questions, data requests, or concerns: mardonic@polsia.app
Mardonic is operated by Polsia, Inc.