Legal

Privacy Policy

Last updated:

1. What We Collect

We collect only what the service needs to run:

  • Your email address, to confirm your account, send sign-in codes and send service notices.
  • The username you choose at sign-up.
  • Your password, stored only as an Argon2id hash. We never store or see the password itself.
  • Your two-factor secret (encrypted) and your recovery secret (stored only as an Argon2id hash).
  • The result of your identity check: whether it passed or failed and when. See section 6 for how the check works.
  • Your orders: tier, length, amount, payment method and the payment references we need to deliver your licence, process refunds and keep your wallet balance correct. These are linked to your account.
  • Your licence key, stored only as a hash. It is shown to you once and cannot be recovered from our records.

2. What We Do Not Collect

PEEK does not collect your real name, postal address, phone number, or any copy of an identity document or selfie. We do not store your IP address: our API derives a one-way keyed hash of it for rate limiting, held in memory only and never written to disk or logs. We do not sell data, share it for advertising, or run advertising networks.

3. How We Use Your Data

Your data is used only to run your account: to sign you in, confirm you are eligible to buy, take payments, deliver and renew your licence, process refunds and credits, and send essential service notices such as security alerts. We do not send marketing.

4. Data Storage

Account data is kept in a PostgreSQL database on our own servers. Your email address is stored encrypted, with a keyed hash used only to look it up at sign-in. Secrets are encrypted or hashed as described in section 1. Database backups are encrypted before they leave the server.

5. Retention

Account data is kept while your account is active. You can delete your account yourself at any time under Settings, Delete account. Deleting erases your username, email address, password and recovery hashes, two-factor setup, passkeys and identity-check result, ends your licences and signs you out everywhere. Records of orders, payments and wallet movements are kept with no personal detail attached, because we must account for money received. Encrypted backups expire after 30 days, so deleted data leaves them within that window.

6. Third Parties

We use the following services to run PEEK:

  • Didit: identity verification. You give your ID document and selfie to Didit directly, under its own privacy policy. Didit tells us only whether the check passed; we keep a keyed hash of the session reference so the same check cannot be reused, and the time it passed or failed.
  • Resend: email delivery. Receives your email address only to send you sign-in codes and service notices.
  • Cloudflare: hosting, network proxy and DDoS protection. Cloudflare processes connection metadata, including your IP address, under its privacy policy.
  • Sentry: error reports from our servers, with personal data excluded.
  • Payment networks: checkout runs on our own BTCPay Server. Payments themselves are recorded on public blockchains, and Solana and Tron payments are checked through public network nodes, which see wallet addresses and transaction references but not your account.

7. Cookies and Local Storage

We set one session cookie (peek_session) when you sign in. It is HttpOnly, Secure and SameSite=Lax, is used only to keep you signed in, and expires after 12 hours or when you sign out. Your motion setting (Calm, Smooth or Cinematic) is saved in your browser's local storage and never sent to us.

8. Warrant Canary

We publish a warrant canary, renewed every week. If we receive compulsory legal process that prevents disclosure, we will let the canary lapse rather than lie.

9. Changes

Material changes to this policy are announced to members at least 7 days before they take effect, and the date at the top of this page changes with them.

10. Contact

Privacy questions go through support in your member portal, which opens once your account is verified. To delete your account, use Settings, Delete account.