Last Updated: February 9, 2026
Welcome to Repliable. We take your privacy seriously. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our communication intelligence service.
By using Repliable, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our service.
When you create an account, we collect:
To provide our AI-powered message analysis service, we collect and store:
We collect your communication preferences including:
We use your information to:
Your data is stored in a PostgreSQL database hosted by Supabase (a cloud database provider).
We believe in transparency. Here's who can technically access your data:
Repliable (Us)
All sensitive content (messages, profile names, personal notes) is encrypted with AES-256-GCM (bank-level encryption) before being stored in our database. We have the technical ability to decrypt data to provide AI analysis and service features, but we do not access or read your private information. This is similar to how Gmail, Notion, and other web services handle your data.
What we can see:
We never sell or share your data with third parties for marketing purposes.
Supabase (Database Provider)
Our database infrastructure is provided by Supabase. Their staff may have administrative access for technical support and infrastructure maintenance. However, your sensitive data is encrypted, so even if they could see the database, they would only see encrypted text. Supabase is bound by their own privacy policy and data protection agreements.
Other Users
Other Repliable users cannot access your data. All data is strictly isolated by user account and protected by authentication.
We retain your data for as long as your account is active. You can request deletion at any time (see Section 8).
When you request message analysis, we send your message content, profile context, and conversation history to Anthropic's Claude AI model. This processing happens in real-time and is necessary for our service to function.
What Anthropic receives: Message text, sender profiles, communication context, your preferences
What Anthropic does NOT receive: Your email, account details, or unrelated messages
Anthropic's data handling is governed by their privacy policy. According to Anthropic, they do not use customer data to train their models without explicit consent.
User authentication is managed by Clerk. They handle login credentials, session management, and account security. Clerk's data practices are governed by their privacy policy.
We use Vercel Analytics for privacy-friendly usage analytics. This helps us understand how users interact with our service. Vercel Analytics does not use cookies and does not track users across sites.
We take your privacy and data security extremely seriously. We implement multiple layers of protection:
🔒 Your sensitive data is encrypted in our database
We use AES-256-GCM encryption (bank-level security, the same standard used by financial institutions) to protect your most sensitive information. Your data is encrypted before being stored in our database.
What we encrypt:
How this protects you:
If our database is ever breached, your encrypted data is unreadable to attackers. As with most web services (Gmail, Notion, etc.), we have the technical ability to decrypt your data to provide service functionality (like AI analysis), but we do not access or read your private data.
What we see (for service operations):
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security.
We use minimal cookies and tracking:
We do not use third-party advertising cookies or cross-site tracking.
We do not sell, rent, or trade your personal information. We may disclose your information only in the following circumstances:
You have the following rights regarding your personal data:
You can access all your data through the Repliable app. To request a complete export of your data, contact us.
You can update your profile information, preferences, and communication data directly in the app.
You can delete individual profiles, messages, or your entire account at any time. Deleted data is permanently removed from our systems. Note that some backup copies may persist for a limited time (typically 30 days) before permanent deletion.
You can opt out of non-essential communications through your account settings.
If you are in the European Economic Area, you have additional rights under GDPR including:
California residents have the right to:
Repliable is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
Your information may be transferred to and processed in the United States or other countries where our service providers operate. By using Repliable, you consent to the transfer of your information to countries outside your country of residence, which may have different data protection laws.
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
Your continued use of Repliable after changes are posted constitutes acceptance of the updated policy.
If you have questions about this Privacy Policy or how we handle your data, please contact us:
Email: privacy@repliable.ai
Website: repliable.ai
For data deletion requests, account issues, or privacy concerns, please include "Privacy Request" in your email subject line for faster processing.
Important Legal Note: This Privacy Policy is provided as a starting point and should be reviewed by a qualified attorney before launch. Privacy laws vary by jurisdiction and change frequently. Consult with legal counsel to ensure compliance with applicable laws including GDPR, CCPA, and other data protection regulations.