Last Updated: April 15, 2026

Privacy Policy

SAT Hacker is committed to protecting your privacy. This policy explains what information we collect, how we use it, and the choices you have regarding your data.

1. Information We Collect

We collect the following categories of information when you use SAT Hacker:

Account Information

  • Name and email address provided during registration
  • Password (stored as a hashed value — never in plain text)
  • Optional profile details such as grade level, target test date, and target score

Practice & Performance Data

  • Questions attempted, answers given, and time spent per question
  • Diagnostic results and in-platform score predictions
  • AI tutor conversation history (used to personalize Hacker's responses)
  • Flashcard review history and study streak data

College Board Data (Optional)

  • Official practice test scores and domain breakdowns you manually enter or import
  • We do not have direct integration with College Board systems and do not access your College Board account without your explicit action

Usage & Technical Data

  • Browser type, operating system, device type, and IP address
  • Pages visited, features used, and session duration
  • Error logs and crash reports to help us improve the Service

2. How We Use Your Information

We use the information we collect for the following purposes:

  • Personalized study plans: Your diagnostic results, practice history, and optional CB score data power our adaptive engine to prioritize your weakest skill areas.
  • AI tutor context: Your current question, recent performance, and conversation history are sent to the AI model to generate relevant, personalized guidance from Hacker.
  • Score prediction: We analyze your practice performance over time to estimate your projected SAT score.
  • Service delivery and account management: Processing payments, sending transactional emails (receipts, password resets), and providing customer support.
  • Product improvement: Aggregated and anonymized usage patterns help us identify bugs, improve features, and develop new content.
  • Legal compliance: Responding to lawful requests from authorities and fulfilling our legal obligations.

We do not use your data for advertising, do not sell it to data brokers, and do not profile you for purposes unrelated to SAT preparation.

3. Data Storage

Your data is stored in a PostgreSQL database hosted by Supabase on servers located in the United States. All data at rest is encrypted using AES-256. All data in transit is encrypted using TLS 1.2 or higher. Our infrastructure is hosted on US-based cloud providers and is subject to US law, including applicable federal and state privacy requirements.

4. Third-Party Services

We use the following third-party services to operate SAT Hacker. Each provider has its own privacy policy governing their data practices:

ProviderPurposeData Shared
SupabaseDatabase & AuthenticationAll stored user data
AnthropicAI Tutor (Claude)Current question context, conversation messages
VercelHosting & DeploymentWeb traffic, server logs
StripePayment ProcessingBilling information (we do not store card numbers)

We require all third-party processors to maintain appropriate security measures and to use your data only for the purposes we specify. We do not authorize any third party to use your personal data for their own marketing purposes.

5. Data Sharing

We do not sell your personal data. We do not rent, trade, or share your identifiable information with third parties for their own commercial purposes.

We may share your data in the following limited circumstances:

  • Service providers: As described in Section 4, with vendors who process data on our behalf under contract.
  • Legal requirements: When required by law, subpoena, court order, or to protect the safety of users or the public.
  • Business transfers: In the event of a merger, acquisition, or sale of all or substantially all of our assets, your data may be transferred. We will notify you before your data is transferred and becomes subject to a different privacy policy.
  • Aggregated research: We may share anonymized, aggregated performance data (e.g., average scores by topic) with educational researchers, publishers, or the public. This data cannot be used to identify individual users.

6. Student Data (FERPA & COPPA)

SAT Hacker serves students of all ages, including minors. We take our obligations under the Family Educational Rights and Privacy Act (FERPA) and the Children's Online Privacy Protection Act (COPPA) seriously.

Children under 13: We do not knowingly collect personal information from children under 13 without verifiable parental consent. If a parent or guardian contacts us to report that their child under 13 has created an account without consent, we will promptly delete the account and all associated data.

Students ages 13–17: We recommend that a parent or guardian review this policy before the student creates an account. By allowing your minor child to use SAT Hacker, you consent to the data practices described in this policy on their behalf.

School or district accounts:If SAT Hacker is deployed by a school or district, student data is subject to FERPA protections. We act as a “school official” under FERPA for purposes of providing the Service and use student data only for educational purposes authorized by the school.

7. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate or incomplete data.
  • Deletion: Request deletion of your account and associated data (subject to legal retention obligations).
  • Export: Request your practice history and performance data in a portable format (JSON or CSV).
  • Opt-out of marketing: Unsubscribe from promotional emails at any time using the unsubscribe link or by emailing us.
  • California residents (CCPA): You have the right to know what personal information we collect, the right to delete, and the right to opt out of any sale of personal information (we do not sell data).

To exercise any of these rights, contact us at privacy@sat-hacker.com. We will respond within 30 days. We may need to verify your identity before processing your request.

8. Cookies

SAT Hacker uses cookies and similar tracking technologies for the following purposes:

  • Session cookies: Required for authentication — these keep you logged in during your session and expire when you close your browser. These cannot be disabled without breaking the Service.
  • Persistent cookies: Remember your preferences (such as display settings) across sessions.
  • Analytics cookies: Help us understand how users navigate the platform so we can improve it. We use privacy-respecting analytics and do not fingerprint users.

You can control non-essential cookies through your browser settings. Disabling session cookies will prevent you from logging in.

9. Data Retention

We retain your data for as long as your account is active or as needed to provide the Service. Specifically:

  • Active accounts: Data is retained indefinitely while your account is active and your subscription is in good standing.
  • Cancelled subscriptions: Your account and data remain accessible in read-only mode for 90 days after cancellation. You may re-subscribe and resume where you left off.
  • Deleted accounts: When you request account deletion, your personally identifiable information is removed within 30 days. Anonymized performance data may be retained for internal analytics.
  • Legal holds: We may retain data longer if required by applicable law, regulation, or ongoing legal proceedings.

10. Contact

Questions, requests, or concerns about this Privacy Policy should be directed to:

SAT Hacker, Inc.

Privacy Team

privacy@sat-hacker.com