Privacy Policy
Last updated: August 25, 2026
Coryond ("we", "us") is operated by an individual based in Denmark. This policy explains what personal data we collect when you use Coryond, why we collect it, and what rights you have over it.
What we collect
- Account data: your email address and a securely hashed version of your password (we never see or store your actual password).
- Usage data: which lessons you've completed, your streak history, and any reflection text you choose to write inside a lesson.
- Contact form submissions: if you email us through the Contact page, we receive the name, email, and message you provide.
We do not use advertising trackers, third-party analytics, or any technology that follows you across other websites.
Cookies
Coryond sets one essential cookie to keep you signed in. It is strictly necessary for the service to function and isn't used for tracking or advertising, so it doesn't require a cookie consent banner under current EU guidance. If we ever add analytics or marketing cookies, we'll update this policy and add a consent banner first.
Who we share data with
We use a small number of service providers ("processors") to run Coryond. We don't sell your data to anyone.
- Supabase — stores our database and handles account authentication.
- Resend — delivers transactional emails (account confirmation, password reset, contact form replies).
- Netlify — hosts the website and application.
These providers may process data on servers located outside Denmark, including in the EU and the United States. Each is bound by its own data processing agreement and standard contractual clauses where required.
How long we keep your data
We keep your account and usage data for as long as your account is active. If you'd like your account and data deleted, contact us at hello@coryond.com and we'll do so within a reasonable time. (A self-service delete-account option is planned but not live yet.)
Your rights
Under GDPR, you have the right to access, correct, export, or delete your personal data, and to object to or restrict how we process it. To exercise any of these rights, email hello@coryond.com. If you believe we've mishandled your data, you can also file a complaint with Denmark's data protection authority, Datatilsynet.
Age requirement
Coryond is not intended for anyone under 13. If you're between 13 and 16, please make sure a parent or guardian is aware you're using it.
Security
All traffic to Coryond is encrypted (HTTPS). Passwords are hashed, never stored in plain text, and your data is protected by database-level access rules so that only you can read your own lesson progress and reflections.
Changes to this policy
If this policy changes in a meaningful way, we'll update the date at the top of this page and, for significant changes, notify you by email.
Contact
Questions about this policy or your data? Email hello@coryond.com.