Privacy Policy

Last updated: March 26, 2026

Short version: DuoLector is a private space for you and your partner. We collect only what is necessary to make the app work. We do not sell your data. We do not show ads. Your messages and diary entries are private to your couple.

1. Who We Are

DuoLector ("we", "us", "our") is an independent web application developed and operated by Matias Sosa ([email protected]). The app is accessible at duolector.com.

2. Information We Collect

We collect only what is necessary to provide the service:

We do not collect: location data, contacts, microphone/camera access, payment information, or any data from other apps on your device.

3. How We Use Your Information

We do not use your data for advertising, profiling, or sale to third parties.

4. Data Storage & Security

All data is stored on Supabase (servers located in São Paulo, Brazil). Supabase is SOC 2 Type II compliant. Data is encrypted in transit (HTTPS/TLS) and at rest. Row Level Security (RLS) ensures each couple can only access their own data.

Uploaded files (PDFs, photos, music) are stored in Supabase Storage with private bucket policies.

5. Data Sharing

We share data only in these limited circumstances:

We never sell, rent, or share your personal data with advertisers or third-party data brokers.

6. Data Retention

Your data is stored as long as your account is active. You can delete your account and all associated data at any time by contacting us at [email protected]. Deletion is permanent and irreversible within 30 days of request.

7. Children's Privacy COPPA

DuoLector is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us immediately and we will delete it.

8. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

To exercise any of these rights, contact us at [email protected].

9. Cookies & Local Storage

DuoLector uses browser localStorage to cache your session, preferences, and playlist data for faster loading. We do not use third-party tracking cookies or advertising cookies. No cookie consent banner is needed because we do not use analytics or advertising cookies.

10. Push Notifications

Push notifications are optional and require explicit browser permission. You can disable them at any time in app Settings → Notifications. Notification data (subscription endpoint) is stored securely and only used to deliver notifications from your partner.

11. Third-Party Services

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of significant changes by posting the new policy at this URL with an updated date. Continued use of DuoLector after changes constitutes acceptance of the new policy.

13. Contact

For any privacy-related questions or requests: