Privacy Notice

Last updated: 2 July 2026 · Version 2.7.0

ICO registered data controller · Registration: C1896585

1. Who we are

EverythingThreads is operated by Kariem A., trading as EverythingThreads, as a sole trader registered in the United Kingdom. We are registered with the Information Commissioner's Office (ICO) as a data controller, registration number C1896585.

This notice explains what personal data we collect, why we collect it, how we use it, and your rights under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

Contact: hello@everythingthreads.com

2. What data we collect and why

Newsletter subscribers (Substack / Beehiiv)

  • Email address — to send you the newsletter you subscribed to
  • Subscription date and preferences — to manage your subscription
  • Lawful basis: Consent (UK GDPR Article 6(1)(a))
  • You can unsubscribe at any time using the link in any email

The Playground (the arcade at /playground)

  • The Playground is an interactive arcade of client-side diagnostic games: Pattern Hunt, Compound Catcher, Drift Scope, Cross-Examine, Contradiction Catcher, Your AI Style, The Anchor, Sector Selector, Pattern Break, Session Bridge, Handover Generator, Multi-Model Compare, plus the Surprise Me slot machine, Today's Catch, and the Prize Ladder
  • All game state (answers you submit, tokens earned, streak counter, your Vulnerability Profile result, session anchor preferences) runs entirely in your browser and is held in memory only. Nothing you do in the Playground is transmitted to our servers, and nothing survives a tab close unless you opt into an email redemption (below)
  • Generated artefacts (the Session Anchor Card, Session Bridge fresh-session prompt, Handover Generator document, Field Guide cheat sheet PDF, Blind-Spot Report) are produced client-side; on user action they either copy to your clipboard or open in a new browser tab for you to print or save as PDF locally
  • Prize Ladder redemption (Course discount, Free month of LiveScope Pro, Master Reader status): clicking redeem opens your default mail app with a pre-filled request addressed to hello@everythingthreads.com. Your mail client sends the email; we receive it, verify eligibility, and issue the reward manually (a real Stripe coupon or scope key, not a token). We do not run a hidden form submission or a background POST — the mailto handoff is the mechanism. The email body includes: the prize name and threshold, your email address, an optional name if you provided one, the tokens you had earned in that session, an ISO timestamp, and the source URL (/playground). It does not include your Vulnerability Profile result, per-question answers, or any other engagement data beyond the token total
  • Lower-tier redemptions (Field Guide PDF, Blind-Spot Report) do not require any email and never touch a server. The Blind-Spot Report reads your Vulnerability Profile result from the current-tab DOM only
  • Lawful basis: Legitimate interests (UK GDPR Article 6(1)(f)) for the client-side games; Consent for any email you send us via the mailto redemption

AI Clarity courses (Foundation at /foundation, Professional at /professional)

  • Before the first course slide, each course presents a setup screen: (a) Generic vs Sector-specific mode, with a 23-sector picker if sector-specific is chosen (b) Voice tutoring on vs Text only
  • Your choices are stored in your browser's localStorage under aicoach_mode, aicoach_voice_enabled, and aicoach_sector. They stay on your device and are never transmitted to us
  • The language-gate step also offers an optional email field to save your course progress; if you provide one it is handled per the newsletter / Beehiiv path above (Consent)
  • Voice tutoring uses your browser's Web Speech API — audio is generated and played back locally; nothing leaves your device
  • Lawful basis: Legitimate interests for the client-side course delivery; Consent for any optional email

LiveScope landing page (/livescope)

  • The landing page detects your browser and shows the correct install path: Chrome / Chromium (Edge, Brave, Arc, Opera) → the Chrome Web Store; Firefox → the Firefox add-on; Safari → an honest “works in Chrome, Firefox & Edge on Mac” notice; unknown desktop → the safe default with all install options visible
  • Mobile visitors (LiveScope is a desktop tool today) see a purpose-built mobile view: an email-notify form for the mobile-launch announcement, plus links to the Playground and Courses that work great on a phone. The email form uses the same mailto handoff pattern as the Prize Ladder — your mail client sends the request to hello@everythingthreads.com. We do not run a form submission for this
  • The optional “Send me the desktop install link” also uses mailto
  • Anonymous CTA-click events ( livescope_click — the browser detected and which store was chosen) are recorded via Plausible Analytics (cookieless, EU-based) so we can measure the browser split and drop-off. No personal identifier is captured
  • Lawful basis: Legitimate interests (UK GDPR Article 6(1)(f)) for CTA measurement; Consent for any email you send us via the mailto handoff

LiveScope web tools

  • When you paste AI-generated text into a tool and submit it, that text is sent to our Cloudflare Worker or Netlify serverless function
  • Before the text is passed to the scoring model, our server applies automated PII detection and removes recognisable personal data patterns
  • The anonymised text is then sent to Claude on AWS Bedrock under the EU cross-region inference profile (inference is restricted to AWS regions in the EU and the UK — Ireland, London, Paris, Frankfurt, Stockholm, Milan, and Spain) to generate a risk score. AWS hosts the model weights; prompts and completions are not shared with Anthropic, and AWS does not retain them under our terms
  • The anonymised text is not retained after scoring. Scores may be cached for up to one hour using Upstash Redis
  • Evaluation scores and metadata (not raw text) are stored in Neon PostgreSQL for research
  • Lawful basis: Legitimate interests (UK GDPR Article 6(1)(f))

LiveScope browser extension

LiveScope is published to the Chrome Web Store as the canonical build. Builds for Microsoft Edge Add-ons, Firefox AMO, and Safari are also available. The data flow described below applies identically across all four browser builds, with one privacy-positive difference noted under “On-device scoring path” below.

  • The extension operates on supported AI chat platforms only: ChatGPT (chat.openai.com, chatgpt.com), Claude (claude.ai), Google Gemini (gemini.google.com), Mistral Le Chat (chat.mistral.ai), and Microsoft Copilot (copilot.microsoft.com). These are the AI services you already use directly; the extension simply reads the AI response rendered on the page in your own browser session. We do not call those providers' APIs on your behalf from this extension.
  • The AI response text visible on the page is the only content ever sent for scoring. The extension does not capture your prompts, only the AI-generated response
  • PII detection and anonymisation applies before any processing
  • Extension settings (enabled state, sensitivity mode, evaluation counts, locale preference, opt-in flag for the on-device path, and — for paid-tier subscribers — an API key used solely to validate tier access) are stored in the browser's sync and local storage on your device. The API key is sent only to our own Cloudflare Worker and is never shared with any third party.
  • Local reliability-score history (the last 50 scores, used to render the trend sparkline in the popup) is stored in your browser's local storage and never transmitted
  • Page metadata captured alongside each evaluation: the AI platform domain (e.g. chatgpt.com), and the visible name of the model selector on that page (e.g. “GPT-5”, “Claude Sonnet 4.6”). This is not personal data; it is used to populate the per-model breakdown on the public model comparison page.
  • Optional “Image Check” (opt-in, off by default): if you turn the Image Check toggle on in the popup, the extension will extract image URLs from the AI response on the page (skipping any URL that carries a signature, presigned token, or basic-auth credentials) and forward only those clearly-public image URLs to our own c2pa-checker.kariem.workers.dev worker. That worker fetches the first 10 MB of each asset to look for C2PA / JUMBF / known AI-generator markers and returns a small provenance badge so you can see whether an image came from a real camera or an AI tool. No prompt text, no response text, and no identifier of yours is sent on this path. The feature is off by default; you control it from the popup.
  • Lawful basis: Consent — you installed the extension and accepted the consent gate on first run; for the optional Image Check toggle, your explicit opt-in

On-device scoring path (privacy-positive option)

  • On Chrome and Edge builds (v1.2.13+), an opt-in on-device scoring path is available. When enabled, AI response text is scored locally in your browser and never transmitted to our Cloudflare Worker
  • The on-device path runs in cascade: first Chrome's built-in Prompt API (Gemini Nano), then a self-hosted WebLLM model (Gemma 2-2B-it, ~1.4 GB downloaded once from Hugging Face and cached in your browser's IndexedDB)
  • Model weights are static binary tensors. They are downloaded once on first activation of the on-device path and never contacted again unless you clear browser storage
  • The on-device path is unavailable on Firefox and Safari (the offscreen document API required by WebLLM is not implemented in those browsers). On those builds the extension uses the Cloudflare Worker scoring path described above
  • When the on-device path is active, no network request is made for scoring. Privacy maximised for users who can afford the local-storage and compute cost
  • On-device scores are presented as a coarse approximation and labelled as such; the published reliability-index methodology and any agreement statistics apply to the cloud-scored path only

LiveScope mobile app (in development — the following is the expected data flow when released, subject to change before ship)

  • The mobile app is a React Native build with an embedded browser view. You will sign into your own ChatGPT, Claude, Gemini, Mistral, or Microsoft Copilot account inside the app; we do not see your platform credentials
  • When the LiveScope toggle is ON, the AI response text rendered in the embedded browser will be sent to our Cloudflare Worker for scoring (same EU/UK-restricted Bedrock flow as the web tools and browser extension; PII anonymisation applies before any processing)
  • Subscription billing will be processed through Apple In-App Purchase (iOS), Google Play Billing (Android), or Stripe (web). We will receive transaction confirmations and a subscription status flag — we will not receive your card number, billing address, or full purchase history. Apple, Google, and Stripe are independent data controllers for the payment data they hold
  • RevenueCat will unify Apple and Google subscription state. Clerk will issue authentication JWTs for the mobile endpoints
  • Sentry will provide crash reporting once configured (currently the SENTRY_DSN environment variable is not set — the SDK ships in the build but emits nothing). When active, Sentry will receive stack traces, device model, OS version, and a non-identifying user hash; PII is scrubbed client-side before any report leaves the device
  • Lawful basis: Performance of contract (for paid users) and consent (for the LiveScope toggle and crash reporting)

Live model comparison (everythingthreads.com/model-comparison)

  • Once a day, our worker sends a fixed set of pre-published benchmark prompts to a roster of frontier AI models (Anthropic, OpenAI, Google, Groq, Mistral) to collect their responses for comparative analysis.
  • The prompts are written by us and contain no personal data. The visitor on the page does not send any data to any model provider — the page only reads cached aggregate scores from our database.
  • Each response is scored by a separate judge model (Anthropic Claude Haiku) and the aggregate is published on the public page with confidence intervals.
  • Lawful basis: Legitimate interests (UK GDPR Article 6(1)(f)) — independent research and transparency.

Browser-only tools

  • Self-Anchor, Session Bridge, Signal Check, and other client-side tools process text entirely in your browser
  • No text is transmitted to our servers
  • Voice recording uses your browser's Web Speech API — audio is processed locally

3. Supported AI platforms and sub-processors

Supported AI platforms (where LiveScope runs — not our sub-processors)

These are the AI services you sign into directly in your own browser session. LiveScope reads the rendered AI response on those pages; we do not call their APIs on your behalf and they do not process user data as our sub-processor. Your relationship with each provider is governed by the provider's own privacy policy.

Sub-processors (entities that process user data on our behalf)

  • Amazon Web Services (AWS Bedrock) — runs Anthropic's Claude model (Haiku 4.5 for Tier 1; Sonnet 4.6 for Tier 2 / Tier 3 / Deep Audit) as our scoring engine. We invoke Bedrock via its EU cross-region inference profile, which keeps inference within the EU and the UK (the profile routes across Ireland, London, Paris, Frankfurt, Stockholm, Milan, and Spain — geographies covered by UK–EU adequacy in both directions). AWS hosts the model weights; prompts and completions are not shared with Anthropic, and AWS does not retain them under our terms. Privacy policy
  • Cloudflare — runs our scoring API (the worker that receives your anonymised text before invoking Bedrock). Cloudflare also hosts the c2pa-checker.kariem.workers.dev worker described in the next bullet. Privacy policy
  • c2pa-checker (our own Cloudflare worker) — invoked only when the optional “Image Check” toggle is on. Receives image URLs extracted from the AI response on the page (signed / token-bearing URLs are filtered out before any URL leaves the device), fetches the first 10 MB of each public asset, and returns a small badge identifying who made the image (a real camera, a phone, or an AI tool such as Midjourney or DALL-E) using C2PA / JUMBF / AI-generator markers. Stateless; no logging of user-identifying data; CORS-open public service. Purpose: help users see whether pictures in an AI response are real or AI-made. Lawful basis: explicit opt-in via the popup toggle. Off by default.
  • Netlify — hosts this website and the legacy web-tools serverless functions. Privacy policy
  • Neon — PostgreSQL database for evaluation metadata (EU region). Privacy policy
  • Upstash — Redis cache for one-hour score caching (EU region). Privacy policy
  • Langfuse — LLM observability (EU-based, EU data residency). Privacy policy
  • Groq — Boardroom multi-model chat (zero data retention). Privacy policy
  • Stripe — payment processing for the LiveScope Pro and AI Clarity paid tiers (independent data controller for payment data). Privacy policy
  • RevenueCat — will unify Apple In-App Purchase and Google Play Billing subscription state for the mobile app (forthcoming). Privacy policy
  • Clerk — will issue authentication JWTs for the mobile-app endpoints (forthcoming). Privacy policy
  • Sentry — crash reporting for the mobile app (forthcoming; the SDK ships with the build but emits nothing until the SENTRY_DSN environment variable is configured). Privacy policy
  • Resend — transactional and operational email delivery. Privacy policy
  • Beehiiv — newsletter subscriptions. Privacy policy
  • Plausible Analytics — cookieless website analytics (EU-based). Privacy policy

We do not sell personal data. We do not share personal data with advertisers. We do not use your text, prompts, or AI responses to train any AI model, ours or anyone else's. Under our AWS Bedrock terms, prompts and completions from the scoring path are not retained by AWS and are never shared with Anthropic. Client-side tools (the Playground, the anchor generator, the session bridge, the handover generator) never transmit your text to us in the first place.

4. How long we keep your data

  • Newsletter data: until you unsubscribe
  • Cached scores (Redis): 1 hour auto-delete
  • Evaluation metadata (database): 12 months
  • Server logs (Netlify): 30 days
  • Commercial enquiries: 2 years
  • Prize Ladder redemption emails and LiveScope mobile-launch notify requests (received at hello@): 2 years, then deleted
  • Research data: 5 years from study completion
  • Playground game state (in-browser): the length of your browser tab. Nothing persists after tab close unless you email us via one of the redemption mailtos

5. Your rights

Under UK GDPR you have the right to: access your data, correct inaccuracies, request deletion, object to processing, withdraw consent, data portability, and lodge a complaint with the ICO.

Contact: hello@everythingthreads.com. We respond within one calendar month.

Data protection complaints: If you are unsatisfied with how we handle your data, please contact us first at hello@everythingthreads.com. We aim to resolve all complaints within 14 days. If you remain unsatisfied, you have the right to lodge a complaint with the ICO at ico.org.uk/make-a-complaint or call 0303 123 1113.

6. Cookies and local storage

This website does not use tracking or advertising cookies. We use Plausible Analytics, which is genuinely cookieless: it stores nothing on your device — no cookie, no localStorage, no fingerprint. Unique visits are counted server-side from a daily-rotated salted hash of your IP address and user agent that is never stored past the day (see plausible.io/data-policy). Because Plausible does not store or access anything on your device, PECR Regulation 6 is not engaged and prior consent is not required — but our consent banner still offers you an analytics toggle as a courtesy and honours the signal.

A cookie consent banner is displayed on first visit summarising the above and offering the analytics toggle. Your choice is stored in browser localStorage under et_cookie_consent for 12 months so the banner does not return.

Some tools use browser localStorage for settings only. The AI Clarity courses store your setup choices under aicoach_mode, aicoach_voice_enabled, and aicoach_sector. This data stays on your device and is never transmitted to our servers. The Playground itself uses in-memory state only — nothing persists after the tab closes. The Chrome extension uses chrome.storage for evaluation counts and preferences.

Change your choice. Prefer to update your cookie preferences? Click the button below to re-open the consent banner and toggle analytics on or off.

7. International transfers

Scoring path residency. The LiveScope scoring engine — Claude on AWS Bedrock — runs under Bedrock's EU cross-region inference profile. Inference is restricted to AWS regions in the EU and the UK (Ireland, London, Paris, Frankfurt, Stockholm, Milan, and Spain). For a UK controller, this path is fully lawful under UK–EU adequacy in both directions; no transfer outside the EU/UK perimeter occurs during model processing. Neon, Upstash, Langfuse, and Plausible also store data in EU regions. The Tier-1/2/3 scoring path is EU/UK end-to-end.

Other processors. Some sub-processors that handle parts of the service other than scoring are US-based: Cloudflare (edge worker compute), Netlify (website hosting), Groq (Boardroom multi-model chat), Stripe (payment processing), and the forthcoming mobile-app processors (RevenueCat, Clerk, Sentry once configured). Transfers to these are covered by the UK IDTA, Standard Contractual Clauses (SCCs) including the EU-US Data Privacy Framework where the processor self-attests, or the UK-US data bridge. None of these processors receive your scoring input — that path stays within the EU end-to-end.

8. Age and children

EverythingThreads is designed for professional and adult use. This service is not directed at children under 16 and we do not knowingly collect data from anyone under 16. If you believe a child under 16 has provided personal data to us, please contact hello@everythingthreads.com and we will delete it. Where consent is the lawful basis, we rely on the user affirming they are 16 or older when they enter an email or install the extension.

9. Changes

We update this notice when practices change. The date at the top shows the last update. Significant changes are communicated to newsletter subscribers.

Contact the data controllerEverythingThreads · Kariem A.
hello@everythingthreads.com
ICO registration: C1896585