Privacy Policy
Last updated: April 14, 2026
Overview
Poster Paper Summarizer (“the app”) is built to help researchers understand academic posters faster. We take your privacy seriously. This policy explains what data we collect, how we use it, who we share it with, and how you can control or delete it.
What We Collect
- Account data: your email address and hashed password, stored securely via Supabase Authentication.
- Profile data: name, role, field, institution, research lab, Google Scholar URL, LinkedIn URL, published paper titles, and bio — all provided voluntarily by you.
- Poster images: photos you capture or select. Images are temporarily sent to OpenAI for AI analysis and are not stored by us beyond your local device.
- Scan history: poster titles, AI-generated summaries, chat messages, and bookmarks — stored locally on your device.
- Social data: follow relationships, lab memberships, blocked user lists, and content reports, stored in our Supabase database.
- Usage data: poster fingerprints (one-way SHA-256 hashes of OCR text) used to power a shared analysis cache.
How We Use Your Data
- To provide and personalise the app experience.
- To generate AI-powered poster summaries (via OpenAI GPT-4o).
- To power the research network (profiles, follows, lab directory).
- To cache poster analysis results so repeated scans are faster.
We do not sell your data. We do not use your data for advertising or marketing profiling.
Third-Party Services
- OpenAI (openai.com): Poster images and OCR text are sent to OpenAI's API for analysis. OpenAI's privacy policy applies to data processed by their systems.
- Supabase (supabase.com): Your account, profile, social, and cache data are stored in Supabase-hosted databases. Supabase's privacy policy applies.
Data Retention
- Scan history and poster images are stored on your device only and are deleted when you uninstall the app.
- Account and profile data in Supabase is retained until you delete your account.
- Cached poster fingerprints are retained indefinitely to improve performance for all users; they contain no personally identifiable information.
Your Rights
You may at any time:
- Edit or delete your profile information from the Profile tab.
- Delete your account from Settings — this permanently removes your profile and social data from Supabase.
- Request a copy of or full deletion of your data by emailing support@posterai.app.
- Withdraw consent by stopping use of the app; locally stored data is removed when you uninstall.
Children
This app is intended for researchers and students aged 13 and older. We do not knowingly collect personal data from children under 13. If you believe a child has provided us data, please contact support@posterai.app and we will delete it promptly.
Security
- All data in transit is encrypted via HTTPS/TLS.
- Supabase Row-Level Security (RLS) policies ensure users can only access their own data.
- Passwords are hashed by Supabase Authentication; we never store plaintext passwords.
- On-device data is protected by iOS Data Protection (encrypted at rest when your device is locked).
Contact Us
Questions about this policy? Reach us at:
support@posterai.app
We aim to respond within 5 business days.