Legal

PRIVACY
POLICY

Last updated: February 2026

Who We Are

SPITR.AI is a professional intelligence briefing application. This policy covers both the SPITR.AI website (spitr.ai) and the SPITR.AI mobile application (the "App").

We are committed to being transparent about how your data is handled. The short version: we collect only what is necessary to deliver the service, we do not sell or share your data for advertising, and we do not use tracking or analytics tools.

The Website

The SPITR.AI website does not set cookies, does not use analytics software, and does not collect any personal information from visitors.

Google Fonts. This website loads fonts from Google's servers (fonts.googleapis.com). When your browser requests these fonts, your IP address and browser information are transmitted to Google as a standard part of that request. We do not receive or store this data. Google's privacy policy governs how they handle it: policies.google.com/privacy.

This is the only third-party request the website makes.

The App — What We Collect

The App stores the minimum data necessary to generate your daily intelligence briefing. The table below describes everything we collect, why, and how long we keep it.

Data Why we collect it How long we keep it
Your thesis
Title, opinion, pillars, and the full thesis text you enter
To generate your daily briefing cards. This is the core content of the service. Until you delete the thesis, or until you delete your account. Maximum 5 theses are stored at any time.
Daily briefing cards
AI-generated news summaries and talking points
To display your morning briefing in the App. Cards are regenerated each day. Previous days' cards are not retained indefinitely.
RSS source URLs
Feed addresses assigned to your thesis
To identify which news sources to scan for your thesis. Retained for as long as the associated thesis exists.
Device push token
A Firebase Cloud Messaging token unique to your device
To send you a morning notification when your briefing is ready. No notification is sent without this. Retained until you revoke notification permission on your device, or until the token becomes invalid (at which point it is automatically removed).

We do not collect your name, email address, payment details, location, or any other personal identifiers. The App does not require an account to use.

Third-Party Services

To deliver the service, SPITR.AI works with two third-party providers. Each receives a limited subset of data necessary for their specific function.

Provider What they receive Why
Anthropic
United States
Your thesis text, and the text of news articles retrieved from RSS feeds. Anthropic's Claude AI model generates your briefing cards and identifies relevant news sources. Data is transmitted over an encrypted connection. Anthropic does not use API inputs to train its models. See anthropic.com/privacy.
Google Firebase
United States
Your device push token. Firebase Cloud Messaging (FCM) delivers push notifications to your device when your morning briefing is ready. The token identifies your device; it does not identify you as a person. See firebase.google.com/support/privacy.

Both Anthropic and Google Firebase are based in the United States. Transfers of data to these providers from the UK are made on the basis of Standard Contractual Clauses or equivalent adequacy mechanisms under UK GDPR.

We do not use advertising networks, social media trackers, or any other third-party services beyond those listed above.

Lawful Basis for Processing

Under UK GDPR, we rely on the following lawful bases:

Contract. Processing your thesis data and generating briefing cards is necessary to perform the service you have requested.

Consent. We store your device push token and send notifications only if you grant notification permission on your device. You can withdraw this consent at any time by revoking notification permission in your device settings.

Legitimate interests. We process RSS feed content (publicly available news) to identify relevant articles for your briefing.

Your Rights

Under UK GDPR you have the following rights in relation to personal data we hold about you:

To exercise any of these rights, contact us using the details below. We will respond within 30 days.

If you are not satisfied with how we handle your data, you have the right to lodge a complaint with the UK's data protection authority, the Information Commissioner's Office (ICO): ico.org.uk.

Data Security

Your data is stored in a private database on our server. The server is not publicly accessible except through the SPITR.AI App API, which communicates over HTTPS. We do not share database access with any third party.

No method of transmission over the internet is 100% secure. We take reasonable precautions to protect your data but cannot guarantee absolute security.

Changes to This Policy

We may update this policy from time to time. The "last updated" date at the top of this page will reflect any changes. If we make material changes — particularly those that expand how we use your data — we will notify you through the App before the changes take effect.

Contact

If you have any questions about this policy or about how your data is handled, please get in touch.

SPITR.AI
Email: privacy@spitr.ai