Privacy Policy
Last updated: April 4, 2026
1. What We Collect
When you create an account on BigDScreener, we collect:
- Username and password — Your chosen username is stored in plaintext. Your password is hashed using bcrypt and is never stored or viewable in plaintext.
- Google account data (if you use Google Sign-In) — We receive your Google account ID, email address, and display name from Google. We store the Google account ID to link your sign-ins and your display name for personalization.
- Saved formulas — Custom screening formulas you choose to save to your account.
We do not collect analytics, tracking data, cookies for advertising, or any data beyond what is listed above. We do not use third-party analytics services.
2. How We Use Your Data
Your data is used solely to:
- Authenticate you and maintain your session
- Store and retrieve your saved custom formulas
- Display your username/display name in the application
We do not sell, share, or transfer your personal data to any third parties.
3. Data Storage and Security
Your data is stored in a PostgreSQL database on a server hosted on Oracle Cloud Infrastructure. Authentication tokens (JWT) are stored in your browser's localStorage. Access tokens expire after 30 minutes; refresh tokens expire after 30 days.
Passwords are hashed with bcrypt (12 rounds). Refresh tokens are stored server-side as SHA-256 hashes. All API communication uses HTTPS.
4. Third-Party Services
- Google Identity Services — Used for optional Google Sign-In. Subject to Google's Privacy Policy.
- Cloudflare Pages — Hosts the frontend. Subject to Cloudflare's Privacy Policy.
5. Your Rights
You may:
- Delete your saved formulas at any time through the application
- Delete your account and all associated data at any time using the "Delete account" option in your user menu
- Use the application without creating an account (anonymous access to all screening features)
6. Data Retention
Your account data is retained as long as your account exists. If you request account deletion, all data (user record, refresh tokens, saved formulas) is permanently deleted.
7. Contact
For privacy-related questions or account deletion requests, contact: bigdscreener@gmail.com