1. Information We Collect
Boston Lens is designed with privacy first. We collect only what is strictly necessary to provide the Service.
🔒 Your startup idea is never stored.
Your project description, analysis text, and any uploaded files go directly from your browser to Anthropic's API — they are never written to our servers or databases. Once the analysis is complete, that content is discarded.
What IS saved to our database (Supabase):
• Your project name — to power your history view
• Your scores (overall + 5 sub-scores) — to enable the verification system
• A one-line summary of your project — auto-generated by the AI for your history view
• Your email address — to authenticate your account and enforce the free trial limit
• Your report ID and timestamp — to power the public verification link
What is NOT saved:
• Your full project description
• The complete analysis text
• Any uploaded files (PDFs, images)
• Your Anthropic API key, if provided (stored in browser session memory only, never transmitted to our servers)
2. How Your Data Is Used
Your email address and account information are used solely to authenticate you and enforce the free trial limit. Your project content is submitted to the Anthropic Claude API solely to generate analysis results. This transmission is governed by Anthropic's Privacy Policy (anthropic.com/privacy). We do not use your data for advertising or sell it to third parties.
3. Data We Do NOT Collect
We do not collect, store, or process: payment information, detailed usage analytics, or the full text of your project submissions on our servers. We do not sell your data to third parties.
4. Third-Party Services
• Anthropic API: Your project text is sent to Anthropic for AI analysis. Please review Anthropic's privacy policy.
• Supabase: Used for authentication and usage tracking. Your email address and account data are stored in Supabase's infrastructure. Please review Supabase's privacy policy (supabase.com/privacy).
• Google OAuth: Used for sign-in. Google transmits your basic profile information to us upon authentication. Please review Google's privacy policy.
• Netlify: Used for hosting. Netlify may collect standard web server logs (IP address, access times). Please review Netlify's privacy policy.
5. Data Security
If you provide your own API key (free trial), it never leaves your browser. For paid plans, Boston Lens uses its own API access — your key is not required. All communication with the Anthropic API is encrypted via HTTPS.
6. Children's Privacy
Boston Lens is not directed at children under 13. We do not knowingly collect data from children.
7. Changes to This Policy
We may update this Privacy Policy as the Service evolves. We will notify users of significant changes via the website.
8. Contact
For privacy-related questions: bostonlens.app