Privacy Policy
Last updated: April 8, 2026
This Privacy Policy explains how OPTMZ ("we", "us", "our") collects, uses, and protects your personal information when you use our platform at getoptmz.com.
1. Information We Collect
Account Information
- Name and email address provided during registration.
- Authentication data (login method, OAuth provider if applicable).
Payment Information
- Payment processing is handled by Stripe. We never store your credit card numbers, CVV, or full payment details on our servers. Stripe provides us with a tokenized reference and basic transaction metadata (last 4 digits, card brand, billing country).
Usage Data
- We collect analytics data via PostHog to understand how users interact with the platform. This includes pages visited, features used, session duration, and general interaction patterns.
Cookies
- We use cookies for authentication, analytics, and user preferences. See Section 4 for details.
2. How We Use Information
- Provide the service: Authenticate your account, deliver content based on your subscription tier, and manage your saved items.
- Process payments: Handle subscription billing, renewals, and refunds through Stripe.
- Send emails: If you have opted in, we send product updates, new compound profiles, and research summaries via email. You can unsubscribe at any time.
- Improve the platform: Analyze usage patterns to improve content, navigation, and features.
- Analytics: Aggregate and anonymized data helps us understand which content is most valuable and how to improve the user experience.
3. Data Sharing
We share data only with the following service providers, and only as necessary to operate the platform:
- Stripe — Payment processing and subscription management.
- Supabase — Database hosting and authentication infrastructure.
- PostHog — Product analytics and usage tracking.
- Resend — Transactional and marketing email delivery.
We never sell your personal data. We do not share your information with advertisers or data brokers.
4. Cookies
Essential cookies:
- Authentication session cookies managed by Supabase. These are required for the platform to function and cannot be disabled.
Analytics cookies:
- PostHog analytics cookies track anonymous usage data to help us improve the platform. These can be declined via the cookie consent banner.
Preference cookies:
- Theme choice (light/dark mode) is stored in localStorage and is not transmitted to our servers.
5. Data Retention
- Account data is retained for as long as your account is active.
- Account deletion: Upon request, we will delete your account and associated personal data within 30 days. Some anonymized or aggregated data may be retained for analytics purposes.
- Analytics data is anonymized after 24 months.
- Payment records are retained as required by applicable tax and financial regulations.
6. Your Rights
You have the right to:
- Access your personal data we hold about you.
- Correct inaccurate or incomplete personal data.
- Delete your account and personal data.
- Export your data in a portable format.
To exercise any of these rights, email privacy@getoptmz.com and we will respond within 30 days.
7. Security
We take the security of your data seriously:
- All data is encrypted in transit via TLS (HTTPS).
- Data is stored on Supabase infrastructure with Row Level Security (RLS) policies enforcing access control at the database level.
- Passwords are hashed using bcrypt and are never stored in plaintext.
- We conduct regular reviews of our security practices.
8. Children
OPTMZ is not intended for users under 18 years of age. We do not knowingly collect personal information from children. If we become aware that a user is under 18, we will take steps to delete their account and associated data.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page. Material changes will be communicated to active users via email.
Your continued use of the platform after changes are posted constitutes your acceptance of the revised policy.
10. Contact
For questions or concerns about this Privacy Policy, contact us at:
privacy@getoptmz.com