WeTally

Privacy

Updated 1 October 2026 for Free and WeTally Plus.

Operated by Eden Ascent.

What we keep

Instructors sign in with an email address and password managed and hashed by Supabase Auth. Confirmation and recovery emails are sent through Resend from no-reply@wetally.app. We store account identity, teaching name and profession, optional profile photo stored privately with image metadata removed, timezone, reporting currency, onboarding progress, the selected Free client, subscription or authorized product-access grants, client labels, whole-session balances, package values and allocations, session requests, dated ledger entries and optional shared session times, titles and descriptions, including amendment history. A private developer notification is queued once when an instructor first exceeds ten client records; it contains the instructor display name, count and crossing time. Support mail is handled through Resend, the operator’s private inbox and a restricted read/reply workspace. We keep sender and reply addresses, subjects, bounded plain-text copies, delivery receipts and sent replies needed to handle the conversation. Attachments and HTML may be omitted from notifications and workspace copies. Do not include passwords, card links, payment details or sensitive lesson records. We do not request client contact details or attachments.

Private links

Anyone with a complete card link can view that card. We do not verify who the viewer is. Tokens are hashed for validation and separately encrypted for instructor re-sharing. Replacing or disabling a link removes the old credential’s access.

Providers and security

Supabase provides authentication, database storage and private profile-image storage. Stripe processes our annual software subscription. Resend delivers account and support emails. Credentials stay server-side. Private pages and the contact form contain no advertising, analytics or session replay. Public marketing and sample-demo pages use Vercel Web Analytics for page views, excluding private, sign-in and contact pages, URL query strings, fragments, session details and custom events. Providers process routine security and delivery logs.

Retention and deletion

When Plus access ends, existing records and valid private links are preserved. One client can remain writable under the Free allowance; the other clients remain readable. Account-wide raw JSON and all-record CSV downloads stay available from Earnings. No automated deletion schedule is enabled. Instructors may cancel subscription renewal in Settings. Account deletion is handled through support, subject to identity verification, lawful privacy obligations and necessary billing record retention; there is no self-service deletion control. No automated support-message deletion schedule is configured in WeTally. The operator’s inbox and email provider retain messages under their own settings.

Email support@wetally.app — no sign-in required. Contact details.