Weakspot

Privacy Policy

Effective September 21, 2026

This policy explains how Weakspot processes information when you use the iPhone or iPad app. Weakspot does not sell personal information, display advertising, or track you across other companies’ apps and websites.

Information stored on your device

Your imported PDFs, photos, extracted text, subjects, questions, answers, and study history are stored locally on your device. Camera and photo access is used only for material you choose. You can delete a subject, delete all local study data, or delete your account from Settings.

Cloud question generation

If you have an active Pro subscription, Weakspot sends extracted text from the material you select, together with generation instructions, to a Firebase Cloud Function operated for Weakspot. The function sends that text to Anthropic to generate questions. Weakspot does not deliberately store your document text on its servers. Anthropic may retain API inputs and outputs for up to 30 days under its standard API retention practices for safety and abuse monitoring.

Account and usage information

Weakspot creates an anonymous Firebase account so the cloud service can verify requests. Firebase processes an anonymous user identifier and technical information such as IP address and user agent. Weakspot stores a quota ledger containing that identifier, question counts, timestamps, purchased-question balances, and processed purchase transaction identifiers. This is used only to enforce cloud-question allowances, credit verified purchases once, and prevent unauthorized API spending.

Subscriptions

Apple or Google Play processes payment, depending on your device. RevenueCat processes the anonymous account identifier, store purchase receipt, subscription status, consumable purchase history, and device or app technical information so Weakspot can unlock Pro and credit purchased cloud questions. Weakspot does not receive your full payment-card information. Purchased cloud-question credits do not expire, but consumable purchases are not restorable after the associated Weakspot account is deleted.

Crash diagnostics

Release versions use Firebase Crashlytics to receive crash reports, device and operating-system details, app version, and installation identifiers. This information is used to diagnose reliability problems. Crashlytics data is retained according to Firebase’s published retention practices.

Service providers and international processing

Weakspot uses Apple, Google Firebase, RevenueCat, and Anthropic to provide the services described above. They may process information in countries other than yours under their own privacy and security terms.

Deletion and retention

Use Settings → Delete Account to remove the Firebase identity, cloud quota ledger, RevenueCat customer profile, and local study data. This permanently removes any unused purchased cloud-question credits, which cannot be restored. RevenueCat queues deletion asynchronously. Deleting a Weakspot account does not cancel an App Store or Google Play subscription; cancel it separately in your store’s subscription settings. Service providers may retain limited backup, security, fraud-prevention, or legal records for the periods described in their policies.

Children

Weakspot is a general study tool and is not directed to children under 13. If you believe a child has provided information contrary to applicable law, contact us so we can investigate and delete it.

Changes and contact

We may update this policy as Weakspot changes. The effective date above identifies the current version. Questions or privacy requests can be sent to kjmfum1@gmail.com.