Privacy Policy

Your privacy is important to us. This policy outlines how KnowFlow collects, uses, and safeguards your data.

Introduction

KnowFlow is committed to protecting your privacy and ensuring that your personal data is handled securely. This Privacy Policy governs how we collect, use, and disclose information from users ("Users") who interact with our spaced repetition learning platform. By accessing or using our services, you agree to the terms of this Privacy Policy.

Age Requirement: You must be at least 18 years old to use KnowFlow. We do not knowingly collect information from individuals under 18. If we discover that we have inadvertently collected personal information from someone under 18, we will delete that information immediately.

Data We Collect

When you use KnowFlow, we collect the following types of information:

  • Account Information: When you sign up, we collect your email address and authentication details. If you log in through Google or Facebook OAuth, we receive your email and basic profile information from those providers to manage your account securely.
  • Learning Content: We store the flashcard decks you create, your study progress, spaced repetition scheduling data, and review history to provide our core learning services.
  • Organization Data: If you create or join an organization, we collect organization names, team memberships, and shared deck information to enable collaboration features.
  • Usage Information: We collect information about how you interact with the platform, including pages visited, features used, and study session data to improve our services.
  • Technical Information: We automatically collect your IP address, browser type, device information, and operating system for security, analytics, and service optimization.
  • Payment Information: If you subscribe to a paid plan, payment processing is handled by third-party payment processors. We do not store full credit card information but may receive transaction confirmations and subscription status.

How We Use Your Data

We use the information we collect for the following purposes:

  • Provide Services: To create and maintain your account, store your flashcard decks, calculate spaced repetition schedules, track your learning progress, and enable collaboration features.
  • Improve Platform: To analyze usage patterns, identify bugs, optimize performance, and develop new features that enhance the learning experience.
  • Communication: To send you service-related notifications, account updates, and respond to your inquiries and support requests.
  • Security: To detect and prevent fraud, abuse, security incidents, and other harmful activities.
  • Legal Compliance: To comply with applicable laws, regulations, legal processes, and enforceable governmental requests.

Your Learning Content and Ownership

You retain full ownership of all flashcard decks, study materials, and learning content you create on KnowFlow. By default, all your content remains completely private and is only accessible to you. We use your content solely to provide you with our learning services (storage, spaced repetition calculations, progress tracking).

If you choose to share decks within an organization or team, those specific decks become accessible to other members of that organization or team. If you make any deck public, it becomes accessible to all KnowFlow users.

We do not use your private learning content for advertising, marketing, or any other purpose beyond providing you with our services. We do not train AI models or machine learning systems on your flashcard content.

How We Protect Your Data

Your data security is our priority. We implement the following security measures:

  • Encryption: All data transmitted between your device and our servers is encrypted using industry-standard TLS/SSL protocols.
  • Secure Storage: We use Supabase as our backend infrastructure provider, which provides encryption at rest and follows industry best practices for data security.
  • Access Controls: We implement strict access controls to ensure that only authorized personnel can access user data, and only when necessary for service operations or support.
  • Authentication: We use secure authentication mechanisms including OAuth 2.0 for third-party logins and secure session management.
  • Regular Backups: We perform regular automated backups of your data to prevent data loss.

While we take extensive precautions, no digital transmission or storage method is 100% secure. We encourage you to use strong passwords and enable any additional security features we provide.

Third-Party Services

KnowFlow uses the following third-party services to operate and improve our platform:

  • Supabase: Our backend database and authentication provider, which stores your account information and learning content. Supabase servers are located in the United States and comply with industry security standards.
  • Google OAuth / Facebook OAuth: If you choose to log in using Google or Facebook, those providers handle your authentication and share your email and basic profile information with us.
  • Analytics Services: We may use analytics services to understand how users interact with our platform and improve the user experience. These services collect anonymized usage data.
  • Payment Processors: If you subscribe to a paid plan, we use third-party payment processors to handle transactions securely. We do not store your full payment card information.

We do not sell, trade, or rent your personal information to outside parties. We only share data with third-party service providers who assist us in operating our platform, and they are contractually obligated to keep your information confidential.

Cookies and Local Storage

KnowFlow uses cookies and browser local storage to maintain your login session and store user preferences. These are essential for the platform to function properly. We do not use cookies for advertising or tracking purposes.

Third-party services (such as OAuth providers or analytics services) may use their own cookies. You can manage cookie preferences through your browser settings, though disabling certain cookies may affect platform functionality.

Your Privacy Rights

Depending on your location, you may have the following rights regarding your personal data:

  • Access: You can request a copy of the personal data we hold about you.
  • Correction: You can request that we correct any inaccurate or incomplete personal data.
  • Deletion: You can request that we delete your personal data. Note that some data may need to be retained for legal or legitimate business purposes.
  • Data Portability: You can request an export of your learning content and study data in a portable format through your account settings.
  • Withdraw Consent: Where we rely on your consent to process your data, you can withdraw that consent at any time.
  • Object to Processing: You can object to certain types of data processing, such as processing for marketing purposes.

To exercise any of these rights, please contact us at help@knowflow.cards. We will respond to your request within 30 days.

Data Retention and Deletion

We retain your personal data for as long as your account is active or as needed to provide you with our services. If you delete your account, we will permanently delete your personal data and learning content after a 30-day grace period, during which you can restore your account if you change your mind.

Some data may be retained for longer periods where required by law or for legitimate business purposes (e.g., preventing fraud, resolving disputes, enforcing our agreements). Anonymous or aggregated data that cannot identify you may be retained indefinitely for analytics and service improvement purposes.

International Data Transfers

KnowFlow is operated in the United States, and our servers and data processors are located in the United States. If you access our services from outside the United States, your data will be transferred to, stored, and processed in the United States. By using our services, you consent to this transfer and processing. We take appropriate measures to ensure that your data receives an adequate level of protection wherever it is processed.

Organization and Team Data

If you are part of an organization or team on KnowFlow, please be aware that organization administrators may have access to certain information about your activity within that organization, including study progress on shared decks and team collaboration activities. Organization administrators are responsible for their own compliance with privacy laws when accessing and using this information.

Changes to This Privacy Policy

We reserve the right to modify this Privacy Policy at any time. If we make material changes, we will notify you by email or through a prominent notice on our platform prior to the changes taking effect. Changes will be reflected on this page with an updated revision date. We encourage you to review this policy periodically to stay informed about how we protect your data.

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your personal data, please contact us at:

Whitson Interface Systems, LLC
Email: help@knowflow.cards
Website: knowflow.cards

Last updated: 2025-11-11