Privacy Policy
Learn how FindSkill.ai collects, uses, and protects your information.
Last Updated: 21 April 2026
Introduction
FindSkill.ai (“we,” “our,” or “us”) respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, and safeguard your data when you use our website at findskill.ai and our iOS app (“FindSkill” on the App Store). It applies to both platforms equally; sections specific to one platform are clearly labeled.
We operate under the principles of data minimization, purpose limitation, and transparency: we request only the data required to deliver the service, we do not repurpose data beyond what is described here without obtaining new consent, we do not sell your personal data, and we do not build advertising profiles about identified individuals.
Information We Collect
Information You Provide
- Account Information: When you create an account, we collect your email address and display name to enable progress tracking, certificate storage, and cross-device syncing.
- Course Progress: When you take courses, we store your lesson completion status, quiz answers, and scores to track your progress and issue certificates.
- Certificate Details: When you claim a certificate, we store your name (as entered), course completion data, scores, and a unique credential ID.
- Skill Requests: When you submit a skill request, we collect your email address and optional name to notify you when your skill is ready.
- Contact Information: When you contact us, we collect the information you provide in your message.
Automatically Collected Information
- Usage Data: We use analytics to understand how visitors use our site, including pages viewed, time spent, and general navigation patterns.
- Device Information: Basic information about your device and browser for compatibility and optimization purposes.
- Local Storage: We store course progress and preferences in your browser’s local storage for offline access. This data stays on your device unless you create an account.
- Cookies: We use essential cookies for site functionality, authentication cookies for logged-in users, and analytics cookies to improve our service.
iOS App Data
When you use our iOS app, we also store the following on your device:
- Onboarding preferences (language, role/profession selection) — stored locally via iOS
UserDefaultsso the app can personalize content and remember your choices between launches. - Reading and quiz progress — lesson completion state, quiz answers, and scores are saved locally and, when you are signed in, synced to your account so progress follows you across devices.
- Purchase status — StoreKit subscription and purchase state is cached locally to unlock premium content offline.
The iOS app does not access your contacts, photos, location, microphone, or camera. We do not use any tracking SDKs and do not share data with data brokers. Our app’s declared data uses are reflected in its PrivacyInfo.xcprivacy manifest and in the App Store privacy “nutrition label.”
How We Use Your Information
We use collected information to:
- Provide account access and authentication
- Track and sync course progress across devices
- Issue and verify certificates of completion
- Respond to your inquiries and skill requests
- Improve our website, courses, and services
- Send notifications about requested skills or course updates
- Analyze usage patterns to optimize user experience
- Comply with legal obligations
Third-Party Services
We use the following third-party services:
Authentication
We use Supabase for user authentication and data storage. Supabase processes your email and account data in accordance with their privacy policy.
We also support signing in with Apple (Sign in with Apple) and Google (Google Privacy Policy) as OAuth providers. When you use these providers, we receive the email address and name they choose to release to us. We do not receive your password or any other account data from these providers. If you use Sign in with Apple’s private email relay, we only receive the relay address.
Payment Processing
For premium subscriptions purchased on our website, we use Stripe to process payments. Stripe handles your payment information directly and we do not store credit card details. See Stripe’s privacy policy.
For purchases and subscriptions made inside our iOS app, payments are handled by Apple through the App Store using in-app purchase (StoreKit). Apple processes your payment method, billing address, and transaction details in accordance with the Apple Privacy Policy. We receive purchase confirmation and subscription status from Apple so we can unlock content on your account, but we do not receive or store your payment card details. Subscription management (cancellation, refunds, upgrades) for iOS purchases is handled through your Apple ID in the App Store.
Analytics
We use Google Analytics 4 on our website to understand traffic and usage patterns. IP addresses are truncated/anonymized before storage, and no precise geolocation is collected. We configure Google Analytics to disable advertising features and cross-site data sharing. You can opt out using Google’s opt-out browser add-on or by declining analytics cookies in our cookie banner. The iOS app does not include Google Analytics or any other analytics SDK.
Advertising
We may display advertisements through Google AdSense. These ads may use cookies to show relevant content. You can manage ad personalization in your Google Ad Settings.
Hosting
Our website is hosted on Netlify. Netlify may collect basic access logs for security and performance purposes.
Third-Party Protection Commitment
All third parties listed above with whom we share user data — including analytics tools, advertising networks, third-party SDKs, authentication providers, payment processors, and any parent, subsidiary, or related entities — are contractually required to provide the same or equivalent level of protection for your personal data as described in this Privacy Policy and as required by applicable law (including Apple’s App Store Review Guidelines, the GDPR, and the CCPA/CPRA). We do not knowingly share user data with any third party that cannot meet this standard.
No Third-Party AI Data Sharing
We do not transmit any user-generated content, account data, quiz answers, course progress, skill requests, or support messages to third-party AI services such as OpenAI, Anthropic, Google Gemini, or any other large language model provider. The AI tools we use for content creation (described in the “AI Tools in Content Creation” section below) operate solely on generic topic information authored by our team, not on your personal data. If we ever change this practice, we will update this Privacy Policy, notify affected users, and obtain explicit in-app consent before transmitting any personal data to a named third-party AI provider, as required by Apple’s Guideline 5.1.2(i).
No Tracking Across Apps or Websites
Our iOS app does not track you across other companies’ apps and websites. We do not use the Advertising Identifier (IDFA), do not call Apple’s App Tracking Transparency (ATT) prompt, and do not integrate any tracking SDKs, data broker SDKs, or cross-app advertising networks. Our App Privacy “nutrition label” on the App Store reflects this.
Data Retention
- Account Data: Retained as long as your account is active. You may request deletion at any time.
- Course Progress: Retained as long as your account is active, or until you request deletion. Local-only progress (no account) is stored only on your device.
- Certificates: Retained indefinitely to support credential verification, unless you request deletion.
- Skill Requests: Retained until the request is fulfilled and for a reasonable period afterward for reference.
- Analytics Data: Retained according to our analytics provider’s policies (typically 26 months).
- Contact Messages: Retained as long as necessary to address your inquiry.
Your Rights
Depending on your location, you may have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate information
- Request deletion of your personal information and account
- Request deletion of certificates and associated data
- Export your course progress data
- Object to certain processing of your data
- Withdraw consent where applicable
- Opt out of the sale or sharing of personal data (we do not sell or share personal data for cross-context behavioral advertising, so no action is required on your part)
To exercise these rights, contact us at hello@findskill.ai. We will respond within the timeframes required by applicable law (typically 30 days under the GDPR and 45 days under the CCPA/CPRA).
How to Delete Your Account
You can delete your account and all associated personal data at any time:
- On the website: Sign in at findskill.ai, go to Account → Settings → Delete Account, and confirm. Your account, course progress, certificates, and personal data will be permanently deleted.
- In the iOS app: Open the app, go to Profile → Settings → Delete Account, and confirm. Deletion is immediate and covers the same data scope as the web flow.
- By email: If you cannot access the in-product flow, email hello@findskill.ai from the address associated with your account and request deletion. We will verify your identity and delete your data within 30 days.
Deletion is permanent and cannot be undone. We may retain minimal records (e.g., transaction history) where required by law, tax, or accounting obligations, or for fraud prevention, for the minimum period required.
How to Withdraw Consent
- Disable cross-device sync: Sign out of your account to stop syncing new progress to our servers.
- Revoke Sign in with Apple: iOS → Settings → your Apple ID → Sign in with Apple → FindSkill → Stop Using Apple ID.
- Revoke Google sign-in: myaccount.google.com/permissions → FindSkill → Remove access.
- Cancel an iOS subscription: iOS → Settings → your Apple ID → Subscriptions → FindSkill → Cancel Subscription. Subscription management for iOS purchases is handled by Apple.
- Cancel a web subscription: Account → Billing → Manage Subscription (Stripe customer portal).
- Opt out of marketing emails: Click the “unsubscribe” link in any email, or email us.
- Full consent withdrawal: Email hello@findskill.ai to withdraw all processing consent. Note that withdrawing consent may disable account-based features.
Legal Basis for Processing (GDPR)
If you are in the European Economic Area, the United Kingdom, or Switzerland, we process your personal data under the following legal bases:
- Contract (Article 6(1)(b) GDPR): To provide the account, course, certificate, and subscription services you request.
- Legitimate interest (Article 6(1)(f) GDPR): To secure our service, prevent fraud, analyze aggregate usage, and improve our product. You may object to this processing at any time.
- Consent (Article 6(1)(a) GDPR): For optional analytics cookies, marketing communications, and any future use of your data not covered by the above bases. You may withdraw consent at any time without affecting the lawfulness of prior processing.
- Legal obligation (Article 6(1)(c) GDPR): To comply with tax, accounting, and other legal requirements.
California Residents (CCPA / CPRA)
If you are a California resident, you have the right to know what personal information we collect, the right to delete, the right to correct, the right to limit the use of sensitive personal information, and the right to opt out of the “sale” or “sharing” of personal information. We do not sell or share personal information as those terms are defined under the CCPA/CPRA, so no opt-out is necessary. To exercise any of these rights, email hello@findskill.ai. You may also designate an authorized agent to submit requests on your behalf. We will not discriminate against you for exercising these rights.
AI Tools in Content Creation
We use artificial intelligence tools (including but not limited to Anthropic Claude, OpenAI ChatGPT, Google Gemini, and similar large language models) internally, by our content team, to draft, translate, and research courses, skills, blog posts, and other static content published on our platform. These tools operate on generic topic information authored by our team.
Your personal data is not involved in this process. We do not send your account data, course progress, quiz answers, skill requests, support messages, or any other user-generated content to these AI services. Your personal information is not used to train AI models and is not shared with AI service providers.
If we ever introduce a feature that sends personal data to a third-party AI service (for example, an AI tutor, AI chat, or AI-assisted skill generator), we will:
- Update this Privacy Policy to name the specific AI provider and describe what data is shared and why.
- Obtain your explicit in-app consent before any such data is transmitted, as required by Apple’s Guideline 5.1.2(i) and applicable privacy laws.
- Allow you to decline without losing access to non-AI features.
Device Permissions (iOS App)
Our iOS app requests the minimum device permissions necessary. Currently the app does not request access to your camera, microphone, location, contacts, photo library, health data, HomeKit, or calendar. If we add a feature in the future that requires any of these, we will request the corresponding iOS permission with a clear purpose string describing why the data is needed, and you will be free to decline. Declining a permission will only disable the specific feature that requires it; the rest of the app will continue to work.
Subscriptions & Auto-Renewal
Paid plans are sold as auto-renewing subscriptions.
- On the website: billing is handled by Stripe. You can view, pause, or cancel anytime from Account → Billing → Manage Subscription.
- In the iOS app: billing is handled by Apple through your Apple ID. The subscription title, duration, and per-period price are shown before purchase. Payment is charged to your Apple ID at confirmation. The subscription automatically renews unless auto-renew is turned off at least 24 hours before the end of the current period. You can manage or cancel the subscription in iOS Settings → your Apple ID → Subscriptions. Any unused portion of a free trial is forfeited when you purchase a subscription where applicable. iOS subscription terms are governed by Apple’s standard End User License Agreement (EULA) in addition to this Privacy Policy and our Terms of Service.
Data Security
We implement appropriate technical and organizational measures to protect your personal information, including encrypted connections (HTTPS/TLS), secure authentication (OAuth 2.0, Apple Sign-In, Google Sign-In), role-based access controls, encryption at rest for sensitive fields, and regular security reviews. However, no internet transmission is completely secure, and we cannot guarantee absolute security.
Data Breach Notification
In the event of a data breach that materially affects your personal information, we will notify affected users and the relevant supervisory authorities within the timeframes required by applicable law (e.g., 72 hours under GDPR Article 33, without unreasonable delay under US state laws). Notification will describe the nature of the breach, the categories of data affected, the likely consequences, and the measures we have taken or propose to take.
Children’s Privacy
Our service is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe we have collected such information, please contact us immediately.
International Users
Our service is operated from the United States. If you access our site from outside the US, your information may be transferred to and processed in the United States, where data protection laws may differ from your country.
Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes by posting the new policy on this page with an updated “Last Updated” date.
Contact Us
If you have questions about this Privacy Policy, please contact us:
Email: hello@findskill.ai