Privacy policy
Last updated 11 September 2026
Orbind turns the study material you give it — notes, PDFs, photos of pages, YouTube videos — into an exam brief, flashcards, quizzes and a learning path. Doing that means handling your material and some data about you. This page says what, why, who else is involved, how long it is kept and how to get it deleted.
Orbind is run by [OPERATOR_NAME] (“we”). Questions about this policy or your data: hello@orbind.app.
What we collect
- Your account. Sign-in is handled by Clerk. We receive your account ID and your email address, and keep them with your plan (free or Pro) and the counters we need to apply its limits — how many materials you have added and how many generation jobs you started today. We never see your password.
- What you add. Text you paste, YouTube links, and files you upload (PDFs, images, .txt and .md). From each we keep the text we read out of it (for a video, its captions), a title, a summary and key points, and the text split into passages, each with an “embedding” — a list of numbers that lets the app find the passages relevant to a question. We also keep a copy of an uploaded file, so it can be read again if processing is interrupted, for as long as the material exists.
- What the app makes for you. Exam briefs and your edits to them, flashcards and your review history (how you rated each card and when it is due next), quizzes with every attempt and answer, your learning-path progress and XP, and the cheat sheet and title of each workspace.
- Tutor chat. Your messages go to OpenAI to write the reply. We do not store the conversation; it is gone when you leave the page.
- Before you sign up. You can try Orbind without an account. When you do, we create an anonymous account for your trial and set a cookie,
orbind_anon, that identifies it. The cookie holds a random ID and a signature, nothing else, and expires after 7 days. We also use your IP address, in memory only and never saved, to limit how many trials can be started from one address in a day. - Usage analytics. We use PostHog to understand how the app is used: the pages you visit and events such as a material being ready, cards being ready, a review session finished or a plan limit reached, tied to your account ID (or your anonymous ID during a trial — the two are linked when you sign up). We also record some sessions (“session replay”) to see where people get stuck. Recordings hide what you type into form fields, but they can show other things on the screen, including your study content.
- Error reports. When something breaks, a report goes to Sentry: what failed and where in our code, your browser and operating system, the address of the page or request, and your account ID. We set it up to leave out your email address, cookies, sign-in tokens and the contents of requests, so your material and what the app generated from it are not part of a report.
- Email. Clerk sends sign-in and verification emails. We send an optional daily email saying how many cards are due for review, through Resend.
We do not collect payment details: there are no paid plans yet. If you press “Notify me when Pro launches”, we record that against your account ID.
Your material is sent to OpenAI
Orbind's AI features run on OpenAI's API. To read, summarise and index what you add, and to write everything the app generates, we send OpenAI the relevant text — the text of your material or passages of it — and, for photos and images, the image itself so its text can be transcribed. When you use the tutor, your messages are sent along with the summaries of your workspace and the part of the brief you asked about.
Under OpenAI's API terms, data sent this way is not used to train their models by default. We do not use your material to train any model either.
For a YouTube link, our server fetches the video's captions and details from YouTube. Nothing about you is sent with that request.
Please don't upload anything you would not want processed this way, such as sensitive personal information about yourself or other people.
Who processes data for us
These providers handle data on our behalf, only to run Orbind:
- Clerk — sign-in and account management. Your email address and sign-in details.
- OpenAI — reading, summarising and generating study content, and the tutor. Your material and the requests built from it, as described above.
- Cloudflare R2 — storage for the files you upload.
- Render — hosts our API and database, where your account and everything in your workspaces is stored.
- Vercel — hosts the website. Like any web host, it sees your IP address and browser details when you load a page.
- Resend — sends the daily review email: your email address, the number of cards due and the names of your workspaces.
- PostHog — usage analytics and session replay, as described above.
- Sentry — error reports, as described above.
Some of these providers process data outside your country, including in the United States. We do not sell your data and we do not use it for advertising.
Cookies and local storage
orbind_anon— set by our API when you start a trial, to keep your trial together. Expires after 7 days, and is removed when you sign up and your trial moves into your account.- Clerk's cookies — keep you signed in.
- PostHog's cookie and local storage — recognise the same browser from one visit to the next.
- Local storage — a few small preferences: the workspace you last opened, whether the chat panel is open, and a trial waiting to be moved into your new account.
There are no advertising cookies.
How long we keep it
- Your account and workspaces — for as long as your account exists. Deleting a material removes it, its text, its passages and the copy of its uploaded file straight away; cards and questions already written from it stay in the workspace.
- Trials that never become an account — deleted after 7 days by our daily clean-up: the anonymous account and everything in it, including the material, the file you uploaded, the cards and your reviews. If you sign up within the 7 days, the trial moves into your account instead.
- Uploaded files — the copy in Cloudflare R2 is deleted right after its material or trial. If R2 can't be reached at that moment, the copy may be left behind there, no longer linked to any account or reachable from the app.
- Analytics and error reports — kept by PostHog and Sentry for the retention period of our plan with each, then deleted.
Deleting your account
There is no delete button in the app yet. Email hello@orbind.app from the address on your account and we will process your request within a reasonable time. That removes:
- your account record and email address, and your Clerk sign-in;
- every workspace and every material in it — text, links, uploaded files, passages and embeddings;
- everything generated from them — briefs and your edits, flashcards and your review history, quizzes and attempts, learning-path progress;
- the analytics tied to your account ID in PostHog.
Error reports in Sentry carry only your account ID, not your email address or content, and are deleted when their retention period ends. You can also delete a single material yourself at any time from a workspace's Materials page.
Email preferences
The daily review email is on when you create an account, and is only sent on days when you have cards due. Turn it off with the Daily e-mail switch in the app's sidebar, or with the unsubscribe link at the bottom of every one of those emails — the link works without signing in. Clerk's sign-in and verification emails are part of having an account and can't be turned off. We do not send marketing email.
Your rights
You can ask us for a copy of your data, to correct it, to delete it, or to stop processing it — email hello@orbind.app. Depending on where you live (for example in the EU or the UK), you may also have the right to complain to your data protection authority.
Children
Orbind is not meant for children under 13. If you are under the age at which you can agree to this policy yourself where you live, ask a parent or guardian before using it.
Changes
When this policy changes, the date at the top changes with it. If a change affects how we use data you have already given us, we will tell you in the app or by email before it applies.