Privacy Policy
Last updated: March 26, 2026
1. Introduction
Welcome to TheHeisenBug ("we", "us", or "our"). We operate the website www.theheisenbug.com (the "Service"). This Privacy Policy explains how we collect, use, and protect your personal information when you use our Service.
By using the Service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Account Information
When you sign in using Google OAuth, we receive and store the following information from your Google account:
- Name
- Email address
- Profile photo URL
2.2 Usage Data
We collect data about how you interact with the Service, including:
- Questions you have marked as read
- Learning chapter progress
- Text highlights and annotations you create
2.3 Analytics Data
We use Firebase Analytics (provided by Google) to collect anonymous usage statistics such as page views, feature usage, and general interaction patterns. This data is aggregated and does not personally identify you.
3. How We Use Your Information
We use the information we collect to:
- Authenticate your identity and provide access to your account
- Save and sync your reading progress, highlights, and preferences across devices
- Verify your premium purchase status and provide access to premium content
- Improve the Service based on aggregated usage patterns
4. Third-Party Services
We rely on the following third-party services to operate the platform:
4.1 Firebase (Google)
We use Firebase for authentication, database (Firestore), file storage, hosting, and analytics. Your data is stored on Google's servers. See Firebase Privacy Policy.
4.2 Stripe
Payment processing is handled entirely by Stripe. We do not store your credit card number, billing address, or any other payment details on our servers. All payment information is processed and stored by Stripe in accordance with Stripe's Privacy Policy.
4.3 Google OAuth
We use Google OAuth for sign-in. We only access the basic profile information (name, email, photo) authorized during the sign-in flow. We do not access any other Google account data.
5. Data Storage and Security
Your data is stored in Google Firebase (Firestore) with security rules that restrict access to your own documents using your unique user ID. We implement reasonable security measures to protect your information, but no method of transmission over the internet is 100% secure.
6. Data Retention
We retain your account data and usage data for as long as your account remains active. If you wish to delete your data, please contact us at the email address below, and we will remove your personal information from our systems within a reasonable timeframe.
7. Your Rights
In accordance with the Brazilian General Data Protection Law (LGPD - Lei Geral de Proteção de Dados) and other applicable regulations, you have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate or incomplete data
- Request deletion of your personal data
- Request information about which third parties have access to your data
- Revoke consent for data processing at any time
To exercise any of these rights, please contact us at the email address provided below.
8. Children's Privacy
Our Service is available to users of all ages. We do not knowingly collect sensitive personal information from children. The data we collect (name, email, and usage data) is minimal and used solely to provide the Service.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify users of significant changes by updating the "Last updated" date at the top of this page. Continued use of the Service after changes constitutes acceptance of the updated policy.
10. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact us at: