Privacy policy — Rembrandt Editor
Last updated: 29 July 2026
This policy covers Rembrandt Editor at rembrandteditor.com. It explains what data we collect, what we do with it, and the rights you have over it.
The Trauma-Informed Content Consulting website and consultancy work are covered by a separate policy.
If you’re an organisation putting other people’s personal data through Rembrandt Editor — a letter naming a customer, a claimant, a patient — you are the controller for that data and we are your processor. Our data processing agreement governs that relationship. This policy is about the data we hold about you as a user.
Who we are
Rembrandt Editor is operated by Bankside Communications Limited, a limited company registered in England and Wales, company number 14193570, registered office Pearce & Co, Ground Floor, 11 Pierrepont Street, Bath, England, BA1 1LA, trading as Trauma-Informed Content Consulting.
For UK GDPR and the Data Protection Act 2018, Bankside Communications Limited is the data controller for the data described in this policy.
Contact: privacy@rembrandteditor.com
What we collect
When you create an account, your email address. That’s how we sign you in — a single-use link sent to your inbox — and how we identify the account. There’s no password.
When you submit content for review, we send what you paste or upload, plus any role and notes you’ve added, to Anthropic to generate the review. What happens next depends on your plan:
- Free — nothing is stored. The review is returned to your browser and written nowhere.
- Professional and Team — the review is stored: content type, calculated readability scores, the structural assessment, the summary, framework flags, the suggested rewrite, and every issue raised. Each issue quotes a phrase from your content verbatim. A review that can’t quote your writing isn’t a review, so fragments of your content are stored on every saved review.
- The full document is stored only if you tick “Keep the full text with this review” before running it. Off by default.
- Uploaded PDFs are never stored, on any plan. We keep the filename; the file itself is discarded after the review.
We also store, against each saved review: a one-way hash of the content (which lets us recognise a document you’ve reviewed before without holding it), the character count, the jurisdiction, the role and notes you supplied, the drafting context settings you chose, the app version, the model used, and a link to the earlier review if this one is a revision.
When you send feedback through the in-app form, we store your message, the category and severity you chose, your email address if you gave one, your browser’s user-agent string, the jurisdiction selected, and the first 500 characters of whatever you were reviewing at the time. That last item is there so we can reproduce problems you report. If you’d rather it wasn’t included, clear the content box before opening the feedback form.
When you subscribe, Stripe collects your name, billing address and payment details. We never see or store card details. Stripe tells us the payment succeeded, the amount, the subscription reference and the customer reference, and we store those against your account. Your billing address is collected for tax compliance — a legal obligation under Article 6(1)(c) — and held by Stripe.
When you use the service, Vercel records standard server logs: IP address, browser type, and the endpoints requested. Used for security, abuse detection and diagnosing faults.
Usage counters. We store the number of reviews you’ve run in the current period and when that period started, so we can apply your plan’s allowance.
Our lawful bases
- Contract — running the service, signing you in, applying plan limits, billing you
- Legal obligation — VAT and accounting records, responding to lawful requests
- Legitimate interests — security, abuse detection, diagnosing faults, and improving the service, balanced against your interests
- Consent — storing the full text of a document, which is off unless you turn it on; and product update emails, if you’ve opted in
You can withdraw consent to full-text storage at any time by unticking the box; existing reviews keep whatever was stored when they were run, and you can delete any of them.
What we don’t do
We don’t sell your data. We don’t share it with advertisers. We don’t use your content to train AI models, and neither does Anthropic under the commercial terms we’re on. We set no analytics, advertising or tracking cookies.
Who processes your data
Anthropic, PBC (United States) — provides the AI model that generates reviews. Content you submit is sent to Anthropic’s API. Under Anthropic’s commercial terms your content is not used to train their models. Anthropic retains API inputs and outputs for a limited period for trust and safety purposes, after which they are deleted; the current period is stated in Anthropic’s commercial documentation. Privacy policy: https://www.anthropic.com/legal/privacy. Transfers under the UK Addendum to the EU Standard Contractual Clauses.
Supabase, Inc. (United States; data hosted in London) — database and authentication. Your account, stored reviews, usage counters and feedback are held in Supabase’s London region, on AWS eu-west-2. Privacy policy: https://supabase.com/privacy.
Vercel, Inc. (United States) — hosts the application and runs the server functions. Holds server logs and function execution records. Privacy policy: https://vercel.com/legal/privacy-policy. Transfers under the UK Addendum to the SCCs.
Resend, Inc. (United States) — sends the sign-in emails. Processes your email address and the content of those emails. Privacy policy: https://resend.com/legal/privacy-policy. Transfers under the UK Addendum to the SCCs.
Stripe Payments Europe Ltd (Ireland) and Stripe, Inc. (United States) — payments. Collects and stores your billing and card details directly. Privacy policy: https://stripe.com/privacy.
Cloudflare, Inc. (United States) — DNS and denial-of-service protection. Briefly processes IP addresses and request metadata. Privacy policy: https://www.cloudflare.com/privacypolicy/.
We’ll update this list when processors change. Team customers receive advance notice of changes under the data processing agreement.
Where your data is
Account data, stored reviews, usage counters and feedback are held in London (AWS eu-west-2), in the United Kingdom.
Content sent for review is processed by Anthropic in the United States. Server logs sit with Vercel, sign-in emails with Resend, both in the United States. Those transfers are made under the UK Addendum to the EU Standard Contractual Clauses.
How long we keep it
| What | How long |
|---|---|
| Account data (email, plan, dates) | While your account is active, then permanently deleted within 30 days of deletion request |
| Stored reviews, including quoted excerpts | 90 days from the date of the review, then automatically and permanently deleted. Team agreements may set a different period. You can delete any review yourself at any time |
| Full document text (opt-in only) | Same 90 days as the review it belongs to |
| Content submitted for review | Not stored by us on the free plan. Held briefly by Anthropic for trust and safety, then deleted |
| Uploaded PDFs | Not stored |
| Usage counters | While your account is active |
| Feedback submissions, including the 500-character snapshot | 24 months |
| Billing records | 6 years, to meet HMRC requirements |
| Server logs | Typically 7–30 days, per each provider’s standard retention |
Deletion is deletion. We don’t flag records as hidden and keep them.
Your rights
Under UK GDPR you can:
- Get a copy of what we hold. Email us.
- Correct anything inaccurate. Email us.
- Delete your data. Delete individual reviews yourself at any time, from your review history. To delete your whole account, email us from the address it uses; we’ll remove it within 30 days, apart from billing records we’re required to keep.
- Restrict or object to processing. Email us.
- Take your data elsewhere. Email us and we’ll export it in a standard format.
- Withdraw consent to anything you’ve consented to.
- Complain to the ICO at https://ico.org.uk/concerns/ if you think we’ve handled your data unlawfully.
Email privacy@rembrandteditor.com. We aim to respond within 14 days and will always respond within the statutory month.
Cookies and local storage
All functional, none requiring consent:
- Authentication tokens (Supabase) — keep you signed in between visits. Cleared when you sign out.
- Dismissal preferences (browser local storage) — remember which welcome notices you’ve dismissed.
No analytics cookies, no advertising cookies, no third-party tracking pixels. There’s no cookie banner because we set nothing that requires consent under UK GDPR or PECR.
Security
- All connections use HTTPS.
- Authentication is handled by Supabase using single-use email links; we store no passwords.
- Database access is restricted by row-level security. Signed-in users can read only their own account and their own reviews, and can write nothing directly — all writes go through our server functions.
- Stored reviews can be created only by our server, not by a browser, so a record cannot be forged or altered by a user.
- Payment card details never reach our systems.
- Data is encrypted in transit and at rest by our infrastructure providers.
- Access to production systems is limited to Adrie van der Luijt.
We’re a very small operation. We hold no ISO 27001 or SOC 2 certification, and we’d rather say so than imply otherwise.
If a breach affects your personal data we’ll notify the ICO within 72 hours of becoming aware, and notify you without undue delay where the risk to you is high.
Children
Rembrandt Editor is for adults working professionally with content. We don’t knowingly collect data from anyone under 18. If you become aware that a child has given us personal data, contact us and we’ll delete it.
Automated decision-making
Rembrandt Editor produces AI-generated analysis of text you submit. It makes no automated decisions about you that produce legal or similarly significant effects, and it doesn’t profile you.
Changes
We’ll update this policy when the service changes, when processors change, or when the law does, and update the date at the top. If changes are material we’ll email registered users in advance.
Contact
Email: privacy@rembrandteditor.com
Post: Bankside Communications Limited, Pearce & Co, Ground Floor, 11 Pierrepont Street, Bath, England, BA1 1LA.
Complaints about our handling of personal data can also go to the Information Commissioner’s Office: https://ico.org.uk/concerns/