Privacy Policy

Last updated: 1 May 2026

1. Who we are

My Aphantasia (“we”, “us”, “our”) operates the websites myaphantasia.com and app.myaphantasia.com.nOur registered address is Unit B, 11/F, Yam Tze Commercial Building, 23 Thomson Road, Wan Chai, Hong Kong. Our contact email for privacy enquiries, is Alex@myaphantasia.com.

2. Data we collect

Account data: your email address and display name, collected when you purchase access or log in via magic link.

Assessment data: your responses to the 15-question aphantasia assessment, severity score, and cognitive profile type.

Training data: exercise completion records, signal capture responses, XP totals, streak counts, badges earned, and Vividness Index scores.

Payment data: Stripe processes all payment information. We store your Stripe customer ID and purchase record but never see or store your card number, CVV, or billing address.

Analytics data: page views, session duration, and anonymised interaction events collected via PostHog on the blog, assessment, and training app. Google Ads also measures whether ad clicks lead to purchases, including a Stripe Checkout Session ID as the purchase transaction ID. Session replay is enabled on the training app and masks all form inputs.

3. How we use your data

  • To deliver the aphantasia assessment and generate your results.
  • To provide and personalise the 30-day training protocol.
  • To track your progress (XP, streaks, Vividness Index) and unlock exercises.
  • To process payments and manage your account.
  • To send transactional emails (magic link login, abandon-recovery emails).
  • To improve our service through aggregated, anonymised analytics.

4. Third-party services

We use the following third-party services that process personal data on our behalf:

  • Supabase for database hosting and authentication (EU/US servers).
  • Stripe for payment processing. Subject to Stripe's Privacy Policy.
  • PostHog for product analytics and session replay (US servers). No data is shared with advertisers.
  • Google Ads for ad attribution and purchase conversion measurement.
  • Resend for transactional email delivery.
  • Vercel for website hosting and edge delivery.

We do not sell or rent your personal data. Google Ads conversion measurement is limited to ad attribution and purchase conversion reporting.

5. Cookies

We use a small number of cookies for authentication and analytics. See our Cookie Policy for a full list, their purpose, and how to manage them.

6. Data retention

Active accounts: we retain your data for as long as you have lifetime access and for 12 months after you request account closure, so you can return without losing progress.

Assessment-only users: quiz session data (responses, scores) is retained for 90 days after completion, then permanently deleted.

Deletion requests: you may request complete deletion of your data at any time by emailing alex@myaphantasia.com. We will process your request within 30 days.

7. Your rights

Depending on your location, you may have the right to:

  • Access a copy of the personal data we hold about you.
  • Correct inaccurate data.
  • Request deletion of your data.
  • Object to or restrict processing of your data.
  • Export your data in a portable format.
  • Withdraw consent at any time where processing is based on consent.

To exercise any of these rights, email alex@myaphantasia.com. We will respond within 30 days.

8. Security

All data is transmitted over HTTPS. Database access is protected by row-level security policies ensuring users can only access their own data. Payment information is handled entirely by Stripe and never touches our servers. Authentication uses secure, time-limited magic links rather than passwords.

9. Children

Our service is not directed at children under 16. We do not knowingly collect personal data from anyone under 16. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

10. Changes to this policy

We may update this policy from time to time. If we make material changes, we will notify you by email or by posting a notice on the site. Your continued use of the service after changes take effect constitutes acceptance.

11. Contact

For privacy-related questions or requests, email alex@myaphantasia.com.