Privacy Policy
Last updated: September 1, 2026
HazMind is designed to work without knowing who you are. This policy explains what little data the Service handles and where it lives.
What we collect
You can use HazMind without an account. If you do create one, we collect your email address and, if you sign in with Google, the basic profile information Google returns. We never ask for your name, your location, or anything about your employer.
If you subscribe, payment is handled by Paddle, our payment processor. Your card details go to Paddle and never reach us. Paddle receives your email address to send receipts and manage the subscription.
When you run a classification session, the Service records:
- A randomly generated session ID (a UUID created in your browser)
- The answers you select at each step, and the resulting classifications
- Timestamps for when the session started and progressed
None of that session data identifies you. Answers are selected from fixed options, so there are no free-text fields to leak anything. If you are signed in, a session is linked to your account so you can look it back up — that link is the only connection between a session and a person.
Where your data lives
- On your device: session records are stored in your browser's local storage. They stay on your device until you clear your browser data.
- On our servers: sessions are mirrored to our infrastructure (hosted on Cloudflare) to help us improve the Service during test mode. A session that never reached a classification is automatically deleted after 24 hours. A session that did reach one is kept, so it can be looked back up.
Analytics
We measure how the Service is used, so we can tell what works and what doesn't. We never use personal information for analytics. What we record is limited to which pages were viewed, and a small fixed set of actions: a session being started, a session reaching a classification, an account being created, and a checkout being opened.
We do not send your answers, your classifications, your session IDs, or your email address to any analytics service. A page view records which kind of page you were on — for example “a classification session” — never which session it was. Two tools are used:
- Cloudflare Web Analytics — sets no cookies and creates no identifiers. It counts page views and nothing else. It is enabled by our hosting provider, Cloudflare, and is not used for visitors in the EU.
- Google Analytics — asks before it sets any cookie, and only sets one if you accept. You are asked once. If you decline, or never answer, it sets no cookie and creates no identifier for you. It still records that a page was viewed, with no way to connect that to you or to any other visit.
What we don't do
- No advertising, and no sale or sharing of data with third parties
- No use of your personal information for analytics, ever
- No profiles, and no linking of classification sessions to individuals
Cookies are used for two things only: keeping you signed in, if you have an account, and remembering your analytics choice above.
Our hosting provider (Cloudflare) processes network traffic as any host does; standard connection logs are governed by their policies.
Your control
Your session history lives in your browser. To remove it, clear your browser's site data for HazMind. Server-side copies of sessions that never reached a classification expire on their own within 24 hours; copies of completed sessions are kept.
Changes
As HazMind evolves out of test mode, we will update this policy and the “Last updated” date above before any new data practices take effect.
Contact
Questions or concerns about privacy? Contact us at feedback@hazmind.com.