Skip to content

Privacy

Privacy policy

Plain-language summary. THE GRIND collects the minimum information needed to run your learning account, and nothing more.

What we collect

  • Your email address, display name and an optional 2-letter country code.
  • Your password, stored only as a salted scrypt hash — never in plain text.
  • Your learning activity: lessons completed, quiz scores, saved items, streak.
  • Session records (device user-agent and IP) used for security and logout.

What we do not do

  • We do not sell your data.
  • We do not collect unnecessary personal information.
  • We do not expose password hashes or 2FA secrets, including in data exports.

Scam reports

Reports you submit enter a moderation queue. They are reviewed by humans and are never published automatically. Do not submit other people's personal information.

Your controls

  • Export a copy of your data at any time from your account settings.
  • Delete your account and all associated data from your account settings.
  • Enable two-factor authentication for an extra layer of protection.

Security

We use established hashing, signed httpOnly session cookies, server-side authorization checks, input validation and rate limiting. No system is perfect — if you believe your account is at risk, change your password and review your sessions.

This page is a summary for an educational project, not legal advice. Read the terms.