How your data is handled
Privacy
Effective August 23, 2026 · NAIBIC — Northern AI and Blockchain Innovation Center
Paranormal Protection is local-first. Investigations, sensor records, photos, audio, video and notes are stored in your browser’s on-device database (IndexedDB) and are not sent anywhere unless you explicitly start a cloud action.
Stays on your device
Investigation sessions, baselines, marked events, ParaPulse probe records, ParaSnap photos, ParaAudio and ParaVideo recordings, derivatives, notes, tags and exports.
Location values, when you enable them, are recorded on device only. They are never sent to us and are not included in the device diagnostic.
Uninstalling the app or clearing site data permanently deletes this local evidence.
Leaves your device only when you act
Account data. If you create an optional account, your email, password (handled by our authentication provider, never stored by the app in readable form), display name, optional username and optional avatar are stored in our hosted database.
Cloud backup. Off by default. You opt in, then select each item and confirm before it uploads. Backups go to a private per-user storage folder. Local originals are never modified or deleted by a backup.
AI assistance. When you explicitly request transcription, review or a summary, only the exact audio region or text you selected is sent to OpenAI for processing. Nothing is sent automatically. AI output is labelled as assistance and never presented as proof of anything.
Payments. If you choose a paid plan, Stripe processes the checkout and payment details under its own privacy terms. Paranormal Protection stores only the billing identifiers, plan, renewal status and amounts needed to provide and manage access; it does not receive or store your full card number.
Optional product analytics. Signed-in users may opt in from More. If enabled, the app records only an allow-listed action name and timestamp, linked to the account, to measure onboarding and review flow. It has no fields for evidence, media, sensor readings, locations, notes, transcripts or device identifiers. It is off by default and can be disabled at any time.
Referral attribution. If a signed-in user shares a personal invite and the recipient creates or signs in to an account through it, we store the two account IDs, an opaque invite code and the acceptance timestamp. We do not upload address books, contacts, messages, evidence, locations, or browsing history. An account can be attributed to one inviter only.
What we never do
No background evidence sync, no automatic evidence uploads, no advertising, no sale of data.
No tracking of your location, no behavioral advertising profiles, no access to your evidence by other users, and no administrator access to your evidence, notes, transcripts, recordings or storage paths.
Camera, microphone, motion, magnetometer and location permissions are requested only after you press an explicit control, never on page load.
Access controls
Every account row and backup record is protected by per-user database policies. Storage buckets are private and scoped to your own folder. Administrator views show only aggregate counts and account-level fields; they cannot read evidence content or private objects.
Retention and deletion
Cloud copies stay until you remove them. Account data stays until you delete your account. Local evidence stays until you delete it on the device.
Opted-in product events, invite codes and referral attribution are deleted automatically with the related account. Turning analytics off immediately stops future product-event collection.
See Data deletion for exact steps.
Contact
Questions about this notice can be sent through the Support page.