Legal · Privacy Policy · v1.0 · Effective 2026-07-27
Privacy Policy
This policy describes how The Cognition Factory (“TCF,” “we,” “us”) handles information when you use thecognitionfactory.com and the TCF desktop / mobile application (the “App”).
1. Who this covers
- Visitors to thecognitionfactory.com
- People who submit the contact or partner-packet forms
- Users of the TCF App (Windows, Android, and any other platforms we ship)
2. Information we collect
Website
- Contact form data you submit (name, email, organization if provided, path/interest, message).
- Technical logs that our hosting provider (Cloudflare) may process for security, reliability, and abuse prevention (e.g. IP address, request metadata).
- We do not run advertising trackers or third-party analytics pixels on the marketing site as shipped.
App (device-local)
- Profiles, progress, notes, telemetry events, library paths, and settings you create in the App — stored under application data on the device.
- Optional API key you enter for a language-model provider (stored with platform secure storage where available).
- Optional app sign-in credentials you set for launch gate (device-local).
- Files you attach or open as study materials (read only as needed for App features you invoke).
What we do not do by default
- We do not require a TCF cloud account for the household App as currently shipped.
- We do not sell personal information.
- We do not use App study content for advertising.
3. How we use information
- Contact form: to respond to inquiries and, when relevant, share materials you requested.
- Site security: rate limiting, abuse prevention, and operational reliability.
- App: to provide local learning features you configure (map, practice, save place, chat with your chosen provider).
4. Sharing
- Email delivery: contact form submissions are relayed through our form/email provider (currently Web3Forms) to our inbox.
- Hosting / edge: Cloudflare processes requests for the public site and related edge functions.
- Language models: if you enable Grok / xAI (or another provider) in the App, content you send in chat—including attached materials—is transmitted to that provider under their terms and privacy policy, using your API key.
- We may disclose information if required by law or to protect rights, safety, and security.
5. Retention
- Contact messages: retained as long as needed to respond and maintain ordinary business records, then deleted or archived according to our operational practice.
- App data: retained on your device until you delete it, uninstall the App, or clear application storage.
6. Security
We use reasonable technical and organizational measures appropriate to a small software product (HTTPS for the site, server-side form secrets, optional secure storage for API keys in the App). No method of transmission or storage is perfectly secure. You are responsible for device access control (including App launch credentials) and for protecting API keys.
7. Children
The service is directed to adults and institutional users. We do not knowingly collect personal information from children under 13. If you believe a child provided information, contact us and we will delete it where feasible.
8. Your choices
- Do not submit a contact form if you do not want us to receive that message.
- In the App, omit API keys and cloud chat if you want fully offline use of local features.
- Delete profiles, dumps, and app data from the device to remove local records.
- Email us to request deletion of contact-form correspondence we hold, subject to legal retention needs.
9. International users
We are based in the United States. If you access the site or App from elsewhere, you understand that information may be processed in the U.S. and by providers in other jurisdictions.
10. Changes
We may update this policy. The “Effective” date at the top will change. Continued use after an update constitutes acceptance of the revised policy where permitted by law.
11. Contact
Questions about privacy: [email protected]