Privacy Policy
Tuesday Riot LLC · Last updated July 17, 2026
Overview
This Privacy Policy explains how Tuesday Riot LLC, operating under the registered assumed name imYou (Tuesday Riot LLC d/b/a imYou, referred to here as "we," "us," or "our"), collects, uses, and protects information when you use our website and products, including imYou ("the Service"). By using the Service, you agree to the practices described in this policy.
Our guiding principle is simple: we collect only what is strictly necessary to operate the Service. We do not sell your data, we do not profile you for advertising, and we store as little as possible on our servers.
1. Information We Collect
Account Information: When you register, we collect your email address and a display name you provide at signup. Your email and display name are the primary personal information stored on our servers. The display name is used to identify your account during our beta review and to address you in the Service; it is not used for advertising or profiling.
Account Status and Credits: We store your subscription tier, credit balance, credit reset date, and a flag indicating whether you have completed your first profile build. These fields exist solely to operate the Service and enforce plan limits.
Beta Access Status: We store a field indicating whether your account has been approved for beta access.
Support Data: If you contact us through the in-app helpdesk, we store the support ticket you submit, including its subject and message text, and our replies, on our servers so we can respond and keep a record of the request. We also keep a metadata-only activity log of certain in-app actions (for example, that a generation occurred and its credit cost) to help diagnose support issues. This log records that an action happened and its cost; it does not contain your profile, your writing, or your generated output.
Payment Information: We do not currently process payments. When payment processing is introduced, it will be handled entirely by a third-party payment provider. We will not store your card details.
2. Your Personal Profile (Local Only)
Your personal profile is the core of the Service. It is built from your onboarding conversation and any writing you share during your sessions. This profile is stored exclusively on your device using browser-native storage (IndexedDB). It is never transmitted to our servers, never stored in any database we control, and never sent to any third party.
When you use the writing features, your personal profile is included in API requests to Anthropic solely to generate your output. Those requests are stateless. We do not log them, cache them, or retain any record of their content.
You own your personal profile entirely. You can edit or delete it at any time from within the Service. Export and backup (saving a portable copy to restore or move to another device) are included on our paid plans.
3. Browser Extension
The imYou browser extension lets you generate in your voice on any web page. To do this, a small script runs on web pages to detect when you highlight text and to show the imYou prompt near your selection. It reads page content only when you actively select text and activate the extension (by clicking the imYou prompt, the right-click menu, or the toolbar icon). It does not read, monitor, collect, or transmit the pages you browse, only the specific text you select and submit. Selected text is used solely to generate your output and is handled the same way as any other writing input: included only in a stateless generation request (see Section 2) and never logged, cached, or stored by us.
The extension authenticates using your own account access token, which you provide by connecting it from within imYou. The token, along with a copy of your personal profile, is stored locally in the browser's extension storage on your device. As described in Section 2, your profile is transmitted only as part of a stateless generation request and is never stored or retained on our servers. Your chat history in the extension is stored locally on your device and is separate from your history on the website.
The extension requests browser permissions (side panel, local storage, context menu, and access to the active tab when you activate it) only to provide these features. It does not use them to track your browsing or to collect data in the background.
4. What We Do Not Collect
We do not collect usage analytics, page view data, session recordings, or behavioral data of any kind. We do not use tracking pixels, fingerprinting, or any third-party analytics tools.
We do not collect your writing samples, your chat history, your generated content, or any output produced by the Service in the course of using the writing features. That data exists only on your device. The one exception is text you choose to send us in a support ticket, which we store to handle your request as described in Section 1.
We do not collect device identifiers, IP addresses for tracking purposes, or any information beyond what is listed in Section 1.
5. How We Use Your Information
We use your email address to maintain your account, send account-related communications (such as approval notifications and support responses), and verify your identity when you log in.
We use your beta access status to control access to the Service during the beta period.
We do not use your information for advertising, profiling, or any purpose beyond operating your account.
6. How We Share Your Information
Supabase: We use Supabase to handle authentication and store account data (email, display name, beta access status, subscription tier, credit balance, credit reset date, and a flag indicating whether your first profile build has been completed), as well as support tickets and the metadata-only activity log. Supabase processes this data on our behalf and is subject to their privacy policy (supabase.com/privacy). Account data is stored in Supabase infrastructure.
Anthropic (AI sub-processor): When you use the writing features, your request, which includes your personal profile as part of the prompt, is sent to the Anthropic API solely to generate your output. Anthropic acts as our sub-processor for this processing and handles the request under its own privacy policy (anthropic.com/privacy) and API terms, which state that API inputs and outputs are not used to train its models. We do not store your personal profile on our servers or send it to Anthropic as stored data; it is included only as stateless request context and is not retained by us.
Vercel: All web requests are routed through Vercel's infrastructure before reaching our application. Vercel processes request metadata (IP address, headers) in accordance with their privacy policy (vercel.com/legal/privacy-policy).
Legal Requirements: We may disclose information if required by law or in response to a valid legal request.
Business Transfer: In the event of a merger or acquisition, your account information may be transferred as part of that transaction. We will notify you before this occurs.
We do not sell, rent, or share your personal information with any other third parties.
7. Data Storage and Security
Account data (email, beta status) is stored by Supabase with industry-standard security controls including row-level security policies.
Your personal profile, chat history, and all writing data lives in your browser's local storage (IndexedDB) and never leaves your device through our systems.
No method of storage is 100% secure. We take reasonable measures to protect the information we do hold, and we minimize what we hold to reduce risk.
8. Data Retention
We retain your account data (email, display name, and beta status) for as long as your account is active. If you request deletion, we will remove your account from our systems within 30 days.
Support tickets and their replies are retained indefinitely as part of our support records, even after the related request is resolved. If you close your account, we may retain support correspondence where we have a legitimate interest in keeping a record of past requests or where retention is required to comply with legal obligations. You may ask us about the support data we hold by contacting support@imyou.ai.
Your local data (personal profile, chat history) is retained on your device until you delete it or clear your browser storage. We have no ability to delete it remotely.
9. Your Rights
You have the right to access the personal information we hold about you (email, display name, beta status), request correction of inaccurate information, request deletion of your account and all associated server-side data, and request a portable copy of that data. Your personal profile stays on your device under your control; you can edit or delete it in the Service at any time, and saving a portable backup of it is included on our paid plans.
To exercise any of these rights, contact us at support@imyou.ai.
10. EU/EEA Users (GDPR)
If you are located in the European Economic Area, we process your personal data under the following lawful bases: email address and account credentials are processed on the basis of contract performance (Article 6(1)(b)), which is to say they are necessary to provide the Service you signed up for. Beta access status is processed on the basis of legitimate interests (Article 6(1)(f)), specifically to control access during our beta period and protect the integrity of the Service.
You have the right to access, rectify, erase, restrict processing of, and port your personal data. You also have the right to object to processing and to lodge a complaint with your local data protection authority.
Processors and sub-processors: We use a small number of service providers that process personal data on our behalf and only on our documented instructions. These are Supabase (authentication and account data), Vercel (application hosting and request routing), and Anthropic (AI generation). Some of these providers process data in the United States. Where personal data is transferred outside the European Economic Area, we work to ensure appropriate safeguards are in place for that transfer. You can request more information about these providers and safeguards by contacting support@imyou.ai.
Tuesday Riot LLC qualifies for the Article 27 SME exception and has not designated a formal EU representative at this stage of operations.
11. California Residents (CCPA)
If you are a California resident, you have rights under the California Consumer Privacy Act including the right to know what personal information we collect, the right to delete your personal information, and the right to opt out of the sale of personal information. We do not sell personal information. To submit a request, contact us at support@imyou.ai. We will respond to verifiable CCPA requests within 45 days.
12. Children's Privacy
The Service is intended only for adults aged 18 and older. It is not directed to minors, and we do not knowingly collect personal information from anyone under 18. You must confirm that you are at least 18 years old to register. If you believe someone under 18 has created an account or provided us with personal information, contact us at support@imyou.ai and we will close the account and delete the information.
13. Changes to This Policy
We may update this Privacy Policy when our practices change, for example, when payment processing or analytics are introduced. We will notify you of material changes by email at least 30 days before they take effect. Continued use of the Service after changes take effect constitutes your acceptance. If you do not agree to material changes, you may cancel your account before they take effect.
14. Contact
imYou (a registered assumed name of Tuesday Riot LLC)
Email: support@imyou.ai
Website: imyou.ai