Privacy

Last updated: September 10, 2026

No accounts, no identity

Ain't Saint does not require accounts, login, profiles, usernames, or any form of identification. You visit, you read or write, you leave. No email, no password, no tracking of who you are.

What we process

When you submit an experience, it passes through automated systems that:

  • Detect and remove personally identifiable information (names, locations, contact details, social handles, etc.)
  • Classify content for safety (self-harm, violence, abuse, spam, etc.)
  • Anonymize identifying details while preserving emotional truth
  • Score quality and generate semantic embeddings for retrieval

The raw text exists only in memory during processing and is never permanently stored. Only the final approved, anonymized version is saved to the database.

What we do NOT collect

  • Email addresses, phone numbers, or contact information
  • IP addresses (except temporarily for rate limiting, stored separately from content)
  • Device fingerprints, browser fingerprints, or tracking cookies
  • Analytics events, behavioral data, or engagement metrics
  • User profiles, session histories, or personalization data

Rate limiting & abuse prevention

To prevent automated abuse, we apply temporary rate limits per IP address:

  • Search queries: 30 per hour
  • Submissions: 5 per hour

IP addresses are stored only in a temporary rate-limit table with a 1-hour expiry. They are never associated with your submissions in the experiences database.

Third-party infrastructure

Ain't Saint runs on third-party services:

  • Supabase (PostgreSQL + pgvector) — stores approved anonymized experiences and embeddings
  • NVIDIA NIM — provides AI models for embedding, moderation, and understanding
  • Vercel — hosts the application

Each has its own privacy policy. We do not control their data practices.

No absolute anonymity

We make strong technical efforts to protect privacy, but we cannot promise absolute anonymity. Determined actors with access to infrastructure, legal process, or advanced correlation techniques could potentially re-identify submissions. Do not submit information that could put you or others at risk if it were ever linked back to you.

Data retention & deletion

Approved experiences remain in the archive indefinitely unless:

  • They are flagged and confirmed as unsafe
  • They violate privacy policies (PII that slipped through)
  • Database capacity limits require removal of lowest-quality entries

There is no user-initiated deletion because there are no user accounts. If you believe something in the archive violates this policy, contact us.

Your responsibility

Do not intentionally submit personal information — yours or anyone else's. Our automated systems catch most PII, but they are not perfect. If you include names, addresses, phone numbers, social handles, or other identifiers, they may not be fully removed.