Privacy Policy
Last updated: September 2026
1. What We Collect
When you create an account we collect:
- Email address and username
- Hashed password (plaintext is never stored)
- Optional: profile bio, avatar URL, favorite driver/team/circuit
- Login history: timestamp, IP address, and user agent for security purposes
If you sign in with Google, we receive your Google profile email and display name. We do not receive your Google password.
Community content you post (race comments) is stored and publicly visible.
2. How We Use Your Data
- To authenticate your account and keep sessions secure
- To send transactional emails (verification, password reset)
- To personalize your experience based on favorite selections
- To enforce rate limits and prevent abuse
- To improve the Service
We do not sell your personal data. We do not use your data for advertising.
3. AI Usage
When a Clutch answer requires a language model, your question and relevant conversation history are sent through OpenRouter to the configured model provider. Some data lookups and calculations are completed directly by Lapwise without sending them to a language model. OpenRouter’s privacy policy and the selected upstream model provider’s policy apply to model-backed processing. Clutch and generated session summaries use OpenRouter rather than a direct model-provider integration. We store your AI conversation history in our database so you can review past chats. You can delete your account to remove this data.
AI queries are counted against per-account limits. Counts are stored in your user record.
4. Cookies and Sessions
We use:
- Auth cookies — httpOnly session cookies used to keep you logged in. These are essential and cannot be opted out of while using the Service.
- No advertising cookies — we do not use third-party tracking or advertising cookies.
5. Analytics
We use error monitoring (Sentry) to capture application errors and performance data. Sentry may collect IP addresses and browser information as part of error reports. We use this solely to fix bugs. See Sentry’s privacy policy.
6. Data Retention
Account data is retained until you delete your account. Login history is retained for up to 90 days. AI conversation history is retained until you delete your account.
7. Your Rights
You can:
- Update your profile at any time from your account settings
- Request deletion of your account and associated data
- Contact us with questions about data we hold about you
8. Third-Party Services
Lapwise uses the following third-party services:
- Neon — database hosting
- Railway — backend hosting
- Netlify — frontend hosting
- Resend — transactional email
- OpenRouter — AI model routing for Clutch and generated session summaries; selected upstream inference providers also process model requests
- Sentry — error monitoring
- Google — OAuth login (optional)
9. Contact
For privacy questions or data deletion requests, email us at support@lapwise.dev.
