Privacy Policy

Last updated: March 5, 2026

What We Collect

When you create an account via Google Sign-In, we receive your name, email address, and profile picture from Google. We use this solely to create and manage your PepStack account.

We do not collect health data, medical records, or information about your use of any peptides or supplements.

How We Use Your Data

  • Account creation and authentication
  • Sending account-related notifications (password resets, security alerts)
  • Improving PepStack based on aggregate, anonymized usage patterns

We do not sell, rent, or share your personal information with third parties for marketing purposes.

Data Storage

Your account data is stored securely via Supabase (hosted on AWS). All data is encrypted in transit (TLS) and at rest.

Cookies

We use essential cookies for authentication and session management. We do not use third-party tracking cookies or advertising pixels.

Your Rights

You can request deletion of your account and all associated data at any time by contacting us. We will process deletion requests within 30 days.

Third-Party Services

  • Supabase - Authentication and database hosting
  • Vercel - Website hosting
  • Google - OAuth sign-in provider
  • PubChem (NIH) - Molecular structure data (public, no user data shared)

Changes

We may update this policy from time to time. Significant changes will be communicated via the website.

Contact

Questions about this policy: contact@pepstack.health