Privacy Policy
What we collect, how we store it, and what we never do with it.
Last updated: March 8, 2026
What We Collect
Evidence Stack collects only the data necessary to provide personalized supplement guidance. Here is exactly what we store:
- Account information: Email address and authentication credentials when you create an account.
- Health goals: The wellness goals you select during the stack builder (e.g., sleep, focus, stress reduction).
- Supplement data: Your current supplements, dosages, and the stacks generated for you.
- Health context: Age range, sex, medications, and dietary restrictions you optionally provide for interaction screening.
- Email address: If you join the waitlist or create an account.
How We Store It
Your data is stored in Supabase, a hosted PostgreSQL database with row-level security enabled. Authentication is handled by Supabase Auth. All data is transmitted over HTTPS and encrypted at rest.
Some wizard data (goals, current supplements, health context) is also stored locally in your browser's localStorage for convenience. This data never leaves your device unless you explicitly save a stack to your account.
AI Processing
When you build a stack, your goals, current supplements, and health context are sent to OpenAI's GPT-4o API to generate personalized recommendations. This data is sent as part of a structured prompt and is processed according to OpenAI's privacy policy.
OpenAI does not use data submitted via their API to train models. Your health information is processed transiently and is not retained by OpenAI after the response is generated.
What We Never Do
- We never sell your data to third parties. Not to supplement companies, advertisers, data brokers, or anyone else. Ever.
- We have no affiliate tracking. We do not track which supplements you buy, where you buy them, or whether you buy them at all. We have zero financial incentive tied to your purchasing decisions.
- We do not run targeted ads. There are no ad networks, no retargeting pixels, and no behavioral tracking on this site.
Cookies
Evidence Stack uses only essential cookies required for authentication and session management. We do not use analytics cookies, advertising cookies, or third-party tracking cookies.
If you use the site without creating an account, no cookies are set at all.
Your Rights
You can request a copy of all data we hold about you, request correction of inaccurate data, or request deletion of your account and all associated data at any time. To exercise any of these rights, contact us at the address below.
If you delete your account, all stored data — including saved stacks, daily logs, and check-in history — is permanently removed from our database.
Contact
For privacy-related questions, data requests, or concerns, contact:
Adam Hultman
Vancouver, BC, Canada
privacy@evidence-stack.com