Privacy policy

Undumb

Undumb is a short daily cognitive workout for reading, reasoning, decision-making, writing, and recall. This policy covers the native iPhone app.

Provider
FigLantern LLC
Effective
September 1, 2026
Contact
hello@figlantern.com

The short version

Undumb creates a pseudonymous player so you can save workout progress. You can use the core product without giving FigLantern your name or email. If you choose an account, an email reminder, a purchase, feedback, or a friend challenge, the app handles the additional data needed for that feature.

Free-text responses may be evaluated by an AI service. Workout data is linked to an opaque player or, when you sign in, to an account-provider identifier. Native product analytics are disabled. The iPhone app does not contain advertising SDKs and does not use your data for advertising, marketing, cross-app tracking, or sale to data brokers.

Data Undumb handles

Player and workout data

Undumb may collect and retain:

  • an app-generated player credential, credential hash, player identifier, and activity timestamps;
  • workout assignments, progress, completion history, recall items, and capability summaries;
  • answers, explanations, writing, selections, confidence ratings, revisions, and attempt history;
  • evaluation results, controlled feedback, evaluator version, and provider/model provenance;
  • coarse timing buckets and bounded interaction records needed for workout behavior and reliability;
  • helpfulness ratings, problem categories, and optional feedback notes you deliberately submit; and
  • opaque friend-challenge, referral, and share-link records when you use those features.

Optional account and contact data

  • If you sign in, Clerk handles your email address, password or email-code flow, Sign in with Apple information, session, and provider account. FigLantern stores a Clerk subject identifier and the link between that identity and your Undumb player. Apple may provide a private relay email if you choose it.
  • If you choose an email reminder, FigLantern stores the email address, reminder time and status, and a protected one-time resume-token hash. Resend receives the email address and reminder message for delivery.
  • If you purchase a membership, Undumb sends an Apple-signed transaction to the backend for verification and stores transaction and original-transaction identifiers, product, expiration or revocation status, and entitlement state linked to your player.

Device-local data

The iPhone app keeps the player credential and encryption key in iOS secure storage. It uses an encrypted local database for prepared workouts, pending submissions, responses, local evaluations, retry state, and server acknowledgements so a lost connection does not discard your work. Local notification preferences and scheduled workout reminders also remain on the device.

Diagnostics

Release builds use Sentry for privacy-bounded error monitoring. Diagnostic events may include stack frames, app release, build number, source revision, controlled error type, and ordinary device or OS context. Before an event is sent, Undumb removes request data, user identity, breadcrumbs, arbitrary messages, answer text, feedback notes, URLs, and other fields that could absorb customer content.

How we use data

We use Undumb data to:

  • create and authenticate a player, save progress, resume work, and synchronize across linked devices;
  • assign workouts, preserve revisions, schedule recall, evaluate answers, and show feedback and history;
  • operate optional accounts, reminders, friend challenges, purchases, restore, and membership access;
  • receive the ratings or problem reports you choose to submit and notify the FigLantern team that a report exists;
  • protect the product from replay, unauthorized access, abuse, and service failure; and
  • diagnose crashes and product invariants using minimized technical events.

Some free-text or explanation exercises require semantic evaluation. For those exercises, the task, your submitted response, and a bounded evaluation instruction are sent through the AI providers described below. Deterministic exercises are evaluated without that provider call.

Native product analytics are currently disabled. Operational API logs record controlled request boundary, route, status, duration, and an opaque request ID; they are designed not to include answers, feedback notes, email addresses, purchase payloads, credentials, or raw request bodies.

Service providers

These providers support app functionality. They are not Undumb advertising or tracking partners. We require providers handling app data for us to protect it consistently with this policy, our agreements, and applicable law.

  • Vercel hosts the Undumb API and routes configured AI evaluation requests through Vercel AI Gateway. Read Vercel's privacy notice.
  • Neon, a Databricks company hosts the product database. Read the Databricks privacy notice.
  • Anthropic provides the configured semantic evaluator, either through Vercel AI Gateway or a controlled direct fallback. Provider handling and retention are governed by the applicable commercial service settings and terms. Read Anthropic's privacy policy.
  • Clerk provides optional email, password, email-code, session, and Sign in with Apple identity services. Read Clerk's privacy policy.
  • Sentry receives minimized release-build crash and invariant diagnostics. Read Sentry's privacy policy.
  • Resend delivers optional workout reminders and a content-free notice to FigLantern when you deliberately report a problem. Problem-report email does not include your note, answer, identity, or report identifier. Read Resend's privacy policy.
  • Apple provides App Store distribution, StoreKit purchase and subscription processing, transaction verification, Sign in with Apple, local notifications, and iOS secure storage. Read Apple's privacy policy and App Store & Privacy.

Providers may process ordinary network and security information such as IP address, timestamps, and request metadata. Their own policies govern provider-side processing and legal retention.

Sharing and friend challenges

Undumb creates an opaque friend-challenge link only when you choose to share. A recipient with an active link can see and answer one eligible question and view controlled feedback after submitting. The link does not expose your identity, email, score, original response, workout history, or player credential. Challenge pages are kept out of search indexes and do not load product analytics or advertising pixels.

You can revoke a challenge link in Undumb. Revocation blocks normal access, but a recipient may retain material they already copied outside the product. Sharing an ordinary product link uses the iOS share sheet and sends the content to the people or apps you choose under their own privacy practices.

Retention and deletion

We retain product data while the associated player remains active so you can resume and review workouts. Specific provider records may remain for the shorter or longer period needed to deliver a pending email, verify a purchase, secure the service, resolve a dispute, comply with law, or age out under provider backup and log schedules. We do not promise immediate physical removal from every backup.

Delete player data

The in-app Delete account data control permanently deletes the current Undumb player from the active Neon database. Database relationships cascade that deletion to workouts, attempts and responses, recall items, feedback and notes, reminders and contact data, friend-challenge relationships, player credentials, StoreKit transaction records, and entitlement state tied to that player. The device then removes its local credential and local journal for that player.

If you signed in, deleting the player does not by itself guarantee deletion of the separate identity record held by Clerk or an orphaned FigLantern account-identity mapping. Email us to request deletion of those remaining account records. Signing out only disconnects the current device; it does not delete hosted progress or the identity-provider account.

Deleting Undumb data does not cancel an App Store subscription. Apple controls subscription cancellation and retains its own transaction records under Apple's policies and legal obligations.

Privacy Choices

  • Delete the current player: open Undumb → Settings → Data and privacy → Delete account data.
  • Delete remaining sign-in records: email hello@figlantern.com after using the in-app control if you also want the related Clerk and FigLantern identity records deleted.
  • Use Undumb without an account: skip optional sign-in. Your hosted progress remains linked to a pseudonymous player credential.
  • Control reminders: choose no reminder, a local push reminder, email, or both in Settings. Revoke notification access in iOS Settings.
  • Control feedback: ratings and problem reports are optional. Do not put sensitive or identifying information in a feedback note.
  • Revoke sharing: revoke an active friend-challenge link in the product.
  • Manage a subscription: use Apple Account subscription settings to cancel. Restoring purchases rechecks Apple-signed transaction history.
  • Get help: email hello@figlantern.com if you cannot access the in-app controls.

We may need to verify control of an active player or signed-in account before acting on a request. Never email a player credential, password, session token, full purchase payload, or private workout response.

Rights and other details

Your rights

Depending on where you live, you may have rights to access, correct, delete, or receive a portable copy of personal data, or to object to or restrict certain processing. We will not discriminate against you for making a privacy request. Undumb does not sell personal information or share it for cross-context behavioral advertising, so there is no sale or targeted-advertising opt-out to apply.

Security and international processing

We use scoped credentials, encryption in transit, encrypted device storage for pending work, controlled logging, data minimization, and provider safeguards designed for a small service. No system is perfectly secure. FigLantern and its providers operate in the United States and may process data in other locations described in their policies.

Children

Undumb is intended for people age 13 and older. It is not in Apple's Kids Category and is not intentionally designed or marketed to children under 13. The current release does not perform verified age assurance. If you believe a child under 13 provided data, contact us so we can investigate and delete it.

Changes

We may update this policy when the app, providers, or law changes. The current version and effective date will remain at this URL. Material changes will be communicated in the app or by another appropriate method before they take effect when required.