Your privacy at Candid
Written in plain English. No legal jargon.
What Candid stores
When you create an account, we store your email address and the structured output of your sessions — the debrief summary, your script card, and the outcome you log. We do not store the full transcript of your conversations.
What we never do
- Read your sessions or conversation content
- Sell your data to anyone, ever
- Share your information with advertisers
- Use your conversations to train any AI model
- Hold your data hostage if you want to leave
How the AI works
Candid uses Claude, an AI made by Anthropic, to power the roleplay and coaching. During a session, your messages are sent to Anthropic's API to generate responses. This is governed by Anthropic's privacy policy. Candid only saves your final debrief — we never store the conversation itself on our servers.
Third parties we use
- Anthropic (Claude API) — powers the AI. Their privacy policy applies during sessions.
- Supabase — stores your account and debrief history. Data is encrypted at rest.
- Stripe — handles payments. We never see or store your card details.
- Resend — sends transactional emails only (magic links, session recap if you opt in).
That's it. No ad networks. No tracking pixels. No analytics that leave our servers.
Your data controls
You are in full control of your data at all times:
- Export everything: download all your sessions as a JSON file from your settings page
- Delete a session: remove any individual session from your history at any time
- Delete your account: permanently wipe your account and all data in seconds — no waiting period, no email required
Contact
Questions? Email us at privacy@candid.app — a real person will respond within 48 hours.
Last updated: April 2026