Privacy
Last updated August 2026
The short version.
Quotidia stores your email address, a name you choose, and your learning history. It has no advertising, no tracking pixels, no analytics service and no third party receiving your data for their own purposes. You can delete everything yourself, from Settings, at any time.
Who is responsible
Quotidia is operated by an individual based in the United Kingdom. For UK GDPR purposes that person is the data controller. Contact is through the support form in the app.
What is collected, and why
| Data | Why | Kept |
|---|---|---|
| Email address | Signing in, and password reset | Until you delete your account |
| Password | Stored only as a scrypt hash — the password itself is never saved and cannot be recovered | Until you delete your account |
| Display name | Shown on your own dashboard. Any name will do; it need not be real | Until you delete your account |
| Learning history | Which words you've seen, how you rated them, when, and how long you took to answer. This is what makes the scheduling work — and the timing is also what tells Quotidia whether it is showing you words you already know | Until you delete your account |
| Puzzle progress | So a finished puzzle stays finished across devices | Until you delete your account |
| Sign-in sessions | Keeping you signed in. Records a device description and the last time it was used | One year, or until you sign out |
| Notification subscription | Only if you switch reminders on. A token issued by your browser's push service | Until you turn reminders off |
| Support messages | So a reply is possible. Includes your email and browser description | Two years |
| Address confirmation | A one-time link proving the address reaches you, so that a forgotten password has a way back. Nothing is withheld before you use it | The link, 24 hours. The fact it was confirmed, until you delete your account |
| Failed sign-in attempts | To stop somebody guessing passwords against your account. Records the email address that was tried and a one-way hash of the network address it came from — never the address itself, which means it cannot be read back out or matched to you later | One hour |
The one judgement Quotidia makes about you
Roughly once a fortnight, Quotidia looks at your own review history and works out whether the words it is showing you are ones you already know. It uses four things, all of them already listed above: how often you get settled cards right, how often you mark a brand-new word as easy, how quickly you answer, and how much has settled so far.
If all four say the same thing, it offers to introduce more new words a day. That is the entire consequence — a suggestion, on the screen at the end of a session, which you can decline and which then stays quiet for a month. It never changes anything on its own, it is not a grade or a level, and it is not shared with anyone or used for anything else.
It is mentioned here because it is the only place the app forms an opinion about you rather than simply recording what you did, and that seems worth saying out loud even though nothing turns on it.
What is not collected
- No analytics or tracking service, of any kind
- No advertising, and no data sold or shared for marketing
- No location data
- No payment information — Quotidia takes no payments
- No microphone or camera access
Cookies
Quotidia sets four cookies. All are strictly necessary and none is used for tracking: one holds your sign-in session, one records which language profile you last used, one remembers that you have passed the access code while the app is in its pilot, and one lasts fifteen minutes during a Google or Apple sign-in to make sure the reply comes back to the browser that started it. There is no cookie banner because there is nothing to consent to.
Some preferences — sound on or off, your chosen voice, which homepage blocks you've hidden, and whether you've dismissed a suggestion — are stored in your browser's local storage and never sent to the server.
One thing kept there is not a preference. When a card is rated and the connection drops, the rating waits in local storage until it can be sent, rather than being lost. It is your own review, held on your own device, and it goes to the server as soon as there is a connection — which is the whole reason it is kept. Nothing else queued there, and the queue empties itself.
Who processes it
| Service | Role | Where |
|---|---|---|
| Vercel | Hosting the application | United States |
| Neon | Database | European Union (Frankfurt) |
| Resend | Sending password-reset and support emails, if configured | United States |
| Apple / Google push services | Delivering reminders, if you switch them on | Varies |
| Sentry | Error reports, so a crash can be found and fixed | European Union |
Lichess supplies the daily chess puzzle. That request is made by the server, and no information about you is sent with it.
Sentry is worth a sentence of its own, because an error reporter is usually where the promises above quietly stop being true. This one is configured not to send personal information, and then configured again to strip it: your email address, your network address, your cookies and the body of whatever request failed are all removed before anything leaves. Session recordings are off — the browser records nothing, so there is nothing to mask. What is left is the error and where in the code it happened.
Data sent outside the UK and EU
Two of the services above are in the United States: the hosting, and the email sender. Everything that is genuinely about you — your account, your words, your history — is in the database, which is in Frankfurt. The transfers that do happen are covered by the standard contractual clauses in those providers' data processing agreements, which is the safeguard UK and EU law asks for.
Legal basis
Your account and learning history are processed to perform the service you asked for — there is no account without them. Reminders are processed on your consent, which you give by switching them on and withdraw by switching them off.
The record of failed sign-in attempts, and the error reports, rest on legitimate interests — keeping accounts from being broken into, and keeping the app working. Both are kept to the minimum that does the job: an hour for the first, and no personal information at all in the second. You can object to processing carried out on that basis through the support form.
Your rights
Under UK and EU data protection law you can ask for a copy of your data, ask for it in a form another service could read, ask for it to be corrected, ask for it to be deleted, and object to anything being processed on the basis of legitimate interests.
Deletion is built in: Settings → Delete my account removes your account, profiles, learning history, puzzle progress and notification subscriptions immediately and permanently. There is no recovery, which is the point. For a copy of your data, ask through the support form.
If you think your data has been mishandled you can complain to the Information Commissioner's Office at ico.org.uk. If you are in the European Union, you can complain to the data protection authority in the country where you live instead.
Children
Quotidia isn't designed for or aimed at children, and accounts shouldn't be created for them. The age at which somebody can agree to a service like this for themselves is 13 in the UK and between 13 and 16 across the EU, depending on the country.
Changes
If this changes in a way that affects you, the date at the top will change and the difference will be noted here.
Quotidia is run by an individual in the United Kingdom, not a company. Questions about anything on this page can go through the support form inside the app.