Privacy

The free analyzer stays in your browser

ViewPulse parses the history file you select and computes the free analysis in your browser. The free path does not upload your filename, raw export, watched URLs, titles, channels, keywords, or history-derived values. Games are optional. Account AI is a separate, explicit signed-in action. An account is not required for the free analyzer.

Premium workflows are separate and explicit

AI Chat + MCP, Brainrot Control, Knowledge Map, Custom Recommendations, and Psychological Review are distinct hosted workflows. Checkout sends no watch history. After a verified purchase, ViewPulse asks for separate, versioned consent before you manually submit normalized history. ViewPulse does not connect to or automatically synchronize your YouTube account, and does not store a raw Google Takeout archive for these workflows.

A paid submission contains normalized titles, channels, timestamps, source type, and recoverable public video IDs when present. It is encrypted with an owner- and order-bound key and isolated by account. Every valid normalized event may participate in deterministic aggregation. Any content-level AI review is bounded representative evidence: ViewPulse does not claim that a history entry proves watch completion, attention, intent, or effect, or that every video was transcribed.

Premium checkout remains disabled unless authentication, exact Stripe pricing, signed webhooks, encrypted storage, worker execution, provider cost controls, artifact delivery, retention, and deletion gates pass for that product. Account AI uses the separately described, credit-bounded OpenRouter route; each paid workflow remains independently gated until its model and discovery checks pass. ViewPulse will not silently send history to an unlisted fallback provider.

Retention, recovery, and deletion

Each paid submission carries a deletion deadline; the current workflow contract limits submitted normalized history to 30 days. Activation also requires an executable process that deletes expired source material and handles artifact recovery according to the terms shown before submission. Billing, entitlement, revocation, and bounded audit records may be retained as needed for purchase recovery, disputes, fraud prevention, and legal record-keeping, but they do not contain watch-history content.

Whole-account deletion and key retirement must prevent future access to encrypted customer content. Backups may retain already encrypted, cryptographically erased ciphertext only for a separately bounded backup window; ViewPulse does not claim physical per-user removal from a monolithic backup. Send a deletion request to the address below and never include watch-history content in the request.

Service providers

Clerk provides account authentication for premium checkout, workspace access, entitlement recovery, and named MCP connections. Stripe handles one-time and subscription payments. Stripe receives product, price, customer, and bounded transaction identifiers, but not watch-history or artifact content.

PostHog is optional and loads only after explicit analytics consent. It uses a random anonymous ID and bounded funnel events. Profiles, autocapture, session replay, query strings, click IDs, and history-derived text are disabled or rejected. Withdrawing consent stops the current analytics generation.

Google Ads conversion code is optional. When configured and consented, it fires only after the server verifies the exact paid session and uses that session as a replay-safe transaction ID. Purchase conversions require browser Web Locksfor cross-tab coordination. If Web Locks are unsupported or unavailable, ViewPulse does not send the conversion.

Account AI and provider credentials

ViewPulse does not request or store your OpenAI, Gemini, or OpenRouter API key. Account AI calls use a deployment-managed OpenRouter credential on the server and are bounded by your authenticated credit allowance. Provider usage is measured for cost control.

Chat sends only the bounded title, channel, and date rows selected in your browser for that question. One-click tools send aggregate analytics rather than the complete raw archive. The public analyzer remains local unless you deliberately continue to an account workflow.

Legacy Full Story purchases

A verified legacy Full Story Pack purchase maps to Knowledge Map without repurchase. A URL parameter alone is not ownership proof. Previously submitted Full Story material remains governed by the bounded recovery, deletion, key-retirement, and backup-erasure terms presented for that service; the catalog migration does not expand its retention or authorize a new history upload.

Browser records and contact

This browser may retain analytics consent, a random anonymous ID, first-touch attribution for up to 90 days, game progress, conversion markers, and short-lived opaque analysis handoff handles. ViewPulse does not put provider API keys in browser storage. Clear site data to remove browser records sooner.

The operator is Self-Degree, a Dubai company. Send privacy and deletion requests to Yev@self-degree.com. Deleting entitlement records may end purchase recovery. Never send watch history, exports, or artifact content with a request.