SpillHub
FAQ

Privacy Policy

This Privacy Policy explains how SPILLHUB ("we," "us," or "our") collects, uses, and protects information when you use the Service. By using SPILLHUB, you agree to the practices described here.

1. What This Policy Covers

This policy covers information we collect when you visit, submit a note, heart a note, unlock archives, or otherwise interact with SPILLHUB. It does not cover third‑party services we integrate with (such as payment providers or social platforms), which have their own privacy policies.

2. No Accounts, No Profiles

SPILLHUB is designed to be used without creating an account. We do not ask for your name, email address, or social profile in order to submit notes, read the wall, or unlock archives. We also do not display any usernames or persistent public identities alongside notes.

3. Information We Collect Automatically

When you visit or use the Service, we automatically collect some technical information to operate and protect the app, including:

  • Device and browser data – such as browser type, operating system, and basic configuration.
  • IP address – used for security, abuse prevention, and approximate location (e.g., country/region).
  • Usage information – such as pages visited, timestamps, and basic interactions (e.g., submitting a note, unlocking archives, clicking share).

We use this information to enforce one‑per‑day limits, rate limit abuse, debug issues, and understand how the Service is used in aggregate. We do not use this information to build personal profiles or sell individual user data.

4. Cookies and Local Storage

We use small pieces of data stored in your browser to make the Service work as intended, including:

  • Anonymous session cookies – used to enforce "one note per day" and to remember that your browser answered today's prompt so the wall can unlock.
  • Archive access cookies – used to remember that your browser has unlocked archive access for a period of time.
  • Theme preferences – stored in local storage to remember your light/dark theme setting.

These cookies contain anonymous identifiers (such as hashed values) rather than your name or email. If you clear your cookies, you may lose stored state such as archive access or whether the wall is unlocked for today on that device.

5. Information You Submit

When you submit a note, we store the content you write along with technical metadata needed to operate the Service, such as:

  • the text of your note,
  • the date and prompt it responded to,
  • the time it was submitted, and
  • internal fields used for moderation and abuse prevention (e.g., IP, user agent, anonymous session id).

Notes are stored in a database and, once submitted and accepted, become part of the day's wall and eventual archives (unless removed for moderation reasons). Submissions are anonymous within the app; we do not attach your name or contact details to a note.

6. Moderation and Safety Tools

To keep the experience safe and within basic guardrails, we use a combination of:

  • simple content filters and blocklists,
  • rate limiting and duplicate detection, and
  • automated or AI‑assisted content checks (for example, using third‑party moderation APIs).

When we send content to a third‑party moderation provider, we attempt to send only what is necessary (e.g., the text of the note) and use it solely for safety and abuse prevention. Those providers process the data according to their own terms and privacy policies. We do not use moderation data to build public profiles of you or link it to your real‑world identity.

7. Payments and Billing Data

When you purchase optional features (such as colored or pinned notes, or archive access), payments are processed by third‑party providers (for example, Stripe). We do not store your full payment card details on our servers.

We may store limited payment‑related metadata (such as a payment intent id, amount, currency, and status) so we can verify and fulfill purchases, prevent fraud, and provide support. The handling of your payment method details is governed by the payment provider's own privacy policy and terms, not this document.

8. Analytics and Logs

We may use server logs and privacy‑respecting analytics to understand how the Service is used in aggregate (for example, how many notes were submitted today, which prompts drive engagement, or how often archives are unlocked).

These logs may include IP addresses and technical metadata, but we do not attempt to link this data to a real‑world identity or track your activity across unrelated sites or services. Analytics are used to improve the product, monitor performance, and diagnose issues, not to build advertising profiles.

9. How We Use Information

We use the information we collect to:

  • operate and maintain the core features of SPILLHUB;
  • enforce one‑per‑day limits and archive access windows;
  • moderate content and enforce our Terms of Service;
  • prevent spam, abuse, and security incidents;
  • improve prompts, UI, and overall experience; and
  • comply with legal obligations, if any.

We do not sell your personal data, and we do not run third‑party targeted advertising based on your use of the Service.

10. How We Share Information

We may share information in limited circumstances, including:

  • Service providers – such as hosting providers, database providers, analytics tools, payment processors, and moderation APIs, who help us run the Service.
  • Legal and safety – if required by law, subpoena, or court order, or if we believe in good faith that disclosure is reasonably necessary to protect the rights, property, or safety of us, our users, or others.

We do not sell or rent your information to third parties for their marketing purposes.

11. Data Retention and Deletion

We retain notes and related metadata for as long as needed to operate the wall and archives, enforce our Terms, and comply with legal obligations. Technical logs and analytics may be retained for a shorter period, subject to operational needs and storage limits.

Because the Service is anonymous and does not maintain user accounts, we typically cannot verify individual identity well enough to selectively delete a specific note on request. However, we may remove content at our discretion for moderation or legal reasons, as described in the Terms of Service. If you have a serious concern about specific content, you can contact us and we will review it in good faith.

12. Security

We take reasonable measures to protect the Service and the data we process, including using reputable hosting providers, applying security updates, and limiting access to production systems. However, no online service is completely secure, and we cannot guarantee absolute security. Use the Service with this in mind, and avoid sharing information that could identify you or others in ways you would regret if it became public.

13. Children and Sensitive Information

The Service is intended for adults. We do not knowingly collect personal information from children under the age of 13 (or the minimum age required in your jurisdiction). If you believe a child has submitted content or information to the Service, please contact us so we can review and take appropriate action.

You should not use the Service to share sensitive personal information about yourself or others (such as full names, addresses, financial information, or medical details). If you do, that information may appear in notes displayed to other users or captured in logs, and we cannot fully control how others may react to or share it.

14. International Users and Data Transfers

The Service may be operated from and data may be stored in one or more countries. By using the Service, you understand that your information may be processed and stored in jurisdictions that may have different data protection laws than your own. We will handle your information as described in this Privacy Policy regardless of where it is processed.

15. Your Choices and Rights

Because we do not maintain user accounts or collect traditional identity information, many typical data subject rights (such as access, export, or rectification tied to a named account) are not directly applicable. However, you still have meaningful choices:

  • You can choose not to submit notes or to submit less specific content.
  • You can clear cookies or stop using the Service at any time.
  • You can contact us if you have concerns about specific content or believe this policy has been violated.

If you are in a jurisdiction with specific privacy rights (such as the EU or UK), you may have additional rights under local law. We will make reasonable efforts to honor such requests where they do not conflict with the anonymous, accountless nature of the Service or legal obligations.

16. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date on this page. Your continued use of the Service after changes become effective constitutes your acceptance of the revised policy. If you do not agree with the changes, you should stop using the Service.

17. Contact

If you have questions or concerns about this Privacy Policy or how we handle information, you can reach out via the contact or feedback options in the app.

Last updated: November 21, 2025