Privacy Policy
Last updated: 18 July 2026
Wine Exam Trainer is built to know as little about you as possible. There are no ads, and accounts are optional: you can use the app — including paid access — without ever giving us an e-mail address.
What stays on your device
Your study progress, streaks, exam history, preferences (name, dark mode) and unlock status are stored in your browser's local storage on your device. Clearing your browser data deletes them. If you don't sign in, none of this is uploaded.
Optional account & progress sync
If you choose to sign in (to use your access and progress on more than one device), we additionally store:
- Your e-mail address — your account identifier. There is no password; signing in works with a 6-digit one-time code we e-mail you. Codes are stored only as a hash and expire after 10 minutes.
- Signed-in devices: your anonymous device IDs and a hashed device token per device (max 5 devices; you can sign out any device in the app).
- Synced study progress: the same progress described above (answer statistics, streaks, exam history, preferences), stored under your account so your devices can share it. "Reset all progress" in the app also resets the synced copy.
Signing out stops syncing on that device. To delete your account and synced data entirely, e-mail us (address below).
What our server stores
The server stores the minimum needed to run the paid features, keyed to a random anonymous device ID (e.g. c_a1b2c3) — or to your account, if you created one:
- Access: which codes were redeemed and which subscriptions are active for a device ID or account, with expiry dates.
- Question feedback: reports you choose to send about questions (category, optional comment, app version).
- Subscription events from Paddle: subscription ID, Paddle customer ID, status and billing-period end. We never see or store your card details or address.
Sign-in e-mails (Resend)
One-time sign-in codes are delivered by Resend, our e-mail processor, from an EU (Ireland) sending region. Resend processes your e-mail address and the message itself under its own privacy policy; we don't use it to send you anything except the codes you request.
Analytics (Microsoft Clarity)
We use Microsoft Clarity to understand how the app is used (anonymised usage patterns, heatmaps and session replays with text masking). Microsoft acts as our processor under the Microsoft privacy statement. For visitors in the EEA/UK/Switzerland, Clarity runs cookieless — no tracking cookies are set and sessions are not linked across visits.
Usage counts
Each time the app opens it asks our server whether your access is still valid. We keep a daily count of those checks so we can see how many devices use the trainer and whether people come back. What is stored is a one-way salted hash of the random device identifier — not the identifier itself, not your name, e-mail or IP address, and nothing about which questions you answer. The result is a per-day tally (how many devices, how many were new, how many had full access), kept for at most 400 days. It cannot be traced back to you, and it is never shared.
Payments (Paddle)
Purchases are processed by Paddle.com as Merchant of Record. Paddle collects the data needed to process your payment (such as email, country and payment details) under its own privacy policy.
AI marking
When you submit an open-question answer or tasting note for marking, the text of your answer is sent to our server and on to Anthropic's Claude API to be graded. Answers are not stored on our server and are not used by us to train models. Don't put personal information in your answers.
Legal basis & retention (GDPR)
We process the data above to perform our contract with you (Art. 6(1)(b) GDPR) and out of legitimate interest in improving the question bank and the app (Art. 6(1)(f)). Access and subscription records are kept while relevant for entitlements and statutory obligations; feedback reports are kept until folded into question fixes; account data (e-mail, devices, synced progress) is kept until you ask us to delete it.
Your rights
You have the right to access, correct, delete or receive the data linked to your device ID or account, and to object to processing. If you signed in, mention your account e-mail and we can locate everything directly. Without an account, your device ID is shown nowhere in the UI — email us and we will help you locate it, or simply clear your browser storage to unlink your device. Contact: info@wineexamtrainer.com. You may also lodge a complaint with your local data-protection authority.
Controller: Wine Exam Trainer · info@wineexamtrainer.com