Legal
Privacy Policy
Effective July 27, 2026
Deep Dive Analytics operates DDRA. We sell analysis to readers, not data to advertisers — so this policy is short, and most of it is about the small amount of information the service genuinely needs to work.
1.What we collect
Your account. An email address, which is the only thing required to sign in. If you sign in with Google we also receive the name and profile picture on your Google account.
Sign-in records. Each sign-in, sign-in attempt, and account creation is written to a security log with the time, the email involved, the IP address, and which method was used.
Activity details. While you browse, we record when you were last active, your IP address, an approximate location derived from it (city, region, and country — never a precise position), and a short description of your browser and operating system. Only the most recent values are stored; each visit overwrites the last, so this is not a browsing history.
Purchases. Which reports you bought, what you paid, when, and the version of the terms you accepted. Card numbers never reach our servers — Stripe collects them directly, and we only receive confirmation that a payment succeeded.
Messages. Anything you send through the contact form, along with your name and email, so we can reply.
Preferences. Small settings like which columns and filters you last used in the carrier directory.
Audience measurement. We count page views using Vercel Web Analytics so we know which pages people actually read. It records the page visited, the referring site, the country, and the general device type. It does not use cookies, does not store an identifier on your device, and cannot follow you to other websites. Repeat visits within a day are recognised by a hash that is discarded daily and never linked to your account.
2.What we don't do
There is no advertising, no ad tracking, no session-recording or heatmap tooling, and no cross-site profiling on this site. The only measurement we do is the aggregate page counting described above, and it is never joined to your account or your purchases. We have never sold or rented personal information and don't intend to. Nothing you do here is used to build a profile of you for anyone else's purposes.
3.Cookies
One cookie, and it exists so that you stay signed in. There are no advertising cookies, and our page counting is deliberately cookieless — which is why the site has no cookie banner, since a sign-in cookie is strictly necessary for a service you asked to use. Clearing it signs you out.
4.Why we hold it
Your email, purchases, and preferences exist so we can deliver what you bought and let you back into your account. Sign-in records, IP addresses, and device details exist to keep accounts secure and detect abuse — they are what let us tell a legitimate sign-in from someone else's attempt on your account. Messages exist so we can answer you. That's the entire list.
5.Who else sees it
We use a small number of service providers, each handling data only to run part of this service and not for their own purposes:
- Vercel — hosts the site, serves every page request, and provides the cookieless page counting described above.
- Neon — hosts the database where accounts, orders, and messages are stored.
- Resend — delivers sign-in links, receipts, and contact-form notifications.
- Stripe — processes payments and handles card details, which we never see.
- Google — only if you choose to sign in with a Google account.
Beyond these, we disclose personal information only when the law requires it, or to establish or defend legal claims. If the business is ever sold or merged, account records may transfer to the buyer, who would remain bound by this policy.
We are based in the United States and the providers above process data there. If you use the service from outside the US, your information is transferred to and stored in the US.
6.How long we keep it
Account and order records are kept while your account is open and for as long as needed afterwards to meet tax and accounting obligations, which in practice means several years for anything tied to a payment. Security and sign-in logs are kept for a limited period for fraud and abuse investigation. Contact threads are kept so there is a record of what was asked and answered.
7.Your choices
You can ask us to:
- tell you what we hold about you, and give you a copy;
- correct anything inaccurate;
- delete your account and personal information, subject to records we're legally required to keep, such as completed transactions; or
- stop using Google sign-in — switch back to email links at any time, and we'll unlink the Google account on request.
Depending on where you live, you may have additional rights under laws such as the GDPR or the CCPA, including the right to object to certain processing and to complain to your data protection regulator. We apply the same approach to everyone regardless of location. Just get in touch and we'll deal with it.
8.Security
Sign-in is passwordless, so there is no password of yours for us to store or leak. Traffic is encrypted in transit, access to reports is checked on the server for every request rather than hidden in the interface, and administrative actions are logged. No system is perfect, but we don't hold card data, and we hold as little else as the service allows.
9.Children
This is a professional research service and isn't intended for anyone under 18. We don't knowingly collect information from children, and will delete it if we discover we have.
10.Changes and contact
If this policy changes materially we'll update the effective date above and, where the change matters to you, say so by email. Questions about privacy, or a request about your own data: contact us. See also our Terms of Sale.