Privacy Policy

Last updated: March 2026

What We Collect

  • Account information: Your name and email address from Microsoft OAuth sign-in.
  • OAuth tokens: Microsoft access and refresh tokens to interact with your OneDrive on your behalf.
  • Session text: The text you paste for drip sessions. This is stored temporarily while your session is active.
  • Document references: OneDrive item IDs and file URLs for your target documents.
  • Usage data: Session history, word counts, and duration preferences.
  • Payment information: Processed securely by Stripe. We do not store your credit card details.

How We Store and Secure Your Data

  • Microsoft OAuth tokens are encrypted at rest using AES-256-GCM.
  • Session text is stored in our database only while a session is active or recently completed.
  • All data is transmitted over HTTPS.
  • We use PostgreSQL for data storage with encrypted connections.

Third-Party Services

  • Microsoft: We use Microsoft OAuth for authentication and Microsoft Graph API to access your OneDrive files.
  • Stripe: Payment processing for Pro subscriptions and pay-per-use purchases.
  • Vercel: Application hosting.

Your Rights

  • Data deletion: You can request deletion of your account and all associated data by contacting us.
  • Data export: You can request an export of your data.
  • Access control: You can revoke WriteSim's access to your Microsoft account at any time through your Microsoft account settings.

Contact

For privacy-related questions or requests, contact us at privacy@writesim.app