WaveSeek

Privacy Policy

Operated by Virona · Last updated 2026-09-15

What we collect

If you create an account: your email address (via our authentication provider, including a third-party sign-in provider if you choose to use one), the name you choose to be called, a record that you agreed to these terms and when, a record that you confirmed you are 13 or older, and your synced app state, tuned channels, saved ideas, watchlists (topics you track), workspaces and folders, shared items you create, dismissed items, your setup preferences, your plan, and your monthly AI-generation counts. On iOS, if you turn on trend-alert notifications we also store a device push token so we can deliver them. If you explore as a guest, everything stays in your browser's local storage and nothing is sent to our servers except anonymous API requests.

What stays on your device

Guest data, your theme and motion preferences, cached data for offline use, and, in the iOS app, your Face ID / Touch ID unlock preference all live only on your device; we do not store them on our servers. Biometric matching is performed by your device's operating system; WaveSeek never receives your fingerprint or face data.

How we use it

Account data is used to provide the service: syncing your state across devices, enforcing plan limits, delivering trend-alert notifications you opt into, and operating the AI Builder and Opportunity Brief. Prompts and context you submit for generation are processed by our AI provider to produce results. We do not sell your data or run ads. We use Vercel Web Analytics to count visits and a small number of product events, see "Cookies & local storage" below, and we do not share your data with anyone beyond the service providers described here.

Service providers we rely on

We rely on a small number of third-party service providers, each handling data only to provide their service to us: a cloud hosting and database provider stores your account and synced state and runs our application, APIs, and nightly data pipeline; an AI provider processes generation and classification requests; when paid billing is live, payment processors (for web card payments and, on iOS, in-app subscriptions) handle the transaction, we receive only your plan status and a payment reference, never your full card details; a mobile push-notification service delivers iOS alerts; and third-party sign-in providers authenticate you only if you choose them. A current list of our named sub-processors is available on request at support@waveseek.dev.

Public data we analyze

WaveSeek's research features are built from public online conversations and app-store / storefront reviews aggregated into anonymous trends, complaints, praise, and review statistics. This public content is not linked to your account.

Cookies & local storage

WaveSeek uses only essential browser storage: localStorage for your on-device settings, channels, vault, and cached data, and authentication tokens to keep you signed in. We set no advertising cookies and nothing that follows you to other sites. We do use Vercel Web Analytics, which is cookieless: it records page views plus a few product events (such as which plan and billing period a checkout was started for) and coarse technical details like country, device type and browser. It never receives your name, your email, your saved ideas or anything you type into the app, and it sets no cookie. Page views are always counted this way, because they are cookieless and identify no one. You can turn off the product events from the notice shown on your first visit ("Essential only"), and that choice is honoured immediately: those events are dropped before they are sent. The choice is stored in this browser only.

Retention and deletion

Synced state lives while your account exists. You can delete your account and all synced data at any time from Profile → Delete account, or by emailing support@waveseek.dev from your account address; deletion removes your synced state, push tokens, and shared items. Guest data can be cleared by clearing your browser storage or using the reset controls in your Profile.

Children and the age check

WaveSeek is not directed at children under 13, and we do not knowingly collect their data. Before you can use an account, the first setup step asks for your date of birth. That date is checked in your browser and is never sent to us or stored anywhere, the only thing recorded is whether you are 13 or older, kept as a single yes in your account record alongside the rest of your synced state. If the date says you are under 13 we do not let the account continue, we store nothing about the attempt, and we offer to delete the account there and then. The confirmation and the name you chose are kept for as long as your account exists and are removed with it when you use Profile → Delete account. Neither is shared with anyone.

Changes and contact

We will update this policy as the service evolves; the "last updated" date above reflects the current version. Contact support@waveseek.dev with any privacy question or request.