Privacy — last updated 2026-08-04
How Storgy handles your data
Storgy doesn’t run advertising. The personal data the site touches is the email address you give us if you sign up, what Google Analytics records on every page, what gets stored when you submit a poem to the Analyzer, and billing references when you subscribe. The sections below cover each in plain terms, and the sub-processor list below names every third party that ever sees that data.
Sub-processors
Seven external services process Storgy customer data. Each is listed below with its specific purpose. The same list with direct privacy-policy links lives on the Trust & compliance page. If we add or remove a sub-processor, this list is updated and the date band above is bumped.
- Anthropic — AI model inference for editorial drafts
- OpenAI — Editorial phrasing pass — no customer-submitted text
- Resend — Transactional email (magic-link auth, digests)
- Paddle — Payment processing (merchant of record, pre-Stripe subscriptions)
- Stripe — Payment processing and tax calculation (current subscriptions)
- Hetzner — Application + database hosting (EU)
- Cloudflare — Authoritative DNS
Analytics — Google Analytics 4
Storgy runs Google Analytics 4 (GA4). GA4 sets cookies, records the pages you view, and reports an IP-derived approximate location to us in aggregate. Google also processes your IP address as a transit-only signal — they truncate it before it reaches our reports. We use this only to see which pages people read and where readers come from; we don’t sell or share this data.
You can opt out by installing the Google Analytics Opt-out Browser Add-on, by blocking analytics cookies in your browser, or by using any standard tracker-blocking extension. Storgy works fine without GA4.
The Poem Analyzer — what we store
When you submit a poem to the Poem Analyzer, we store four things in our database:
- The poem text you pasted (plus the title and author you optionally provided), so the analysis lives at a permanent shareable URL.
- The Claude-generated analysis, so we don’t pay to regenerate it every time the URL is opened.
- A salted SHA-256 hash of your IP address, kept only for rate-limiting. We never store your raw IP, and the salt means the hash can’t be reversed against a precomputed table.
- A short ID (the part in the URL after
/tools/poem-analyzer/) so the result is reachable.
If you are signed in, the submission is also linked to your account id, so it appears in your own archive and in the data export at /settings/. A submission made while signed out carries no account identifier at all.
Result pages are public — anyone with the URL can see them — so don’t paste anything into a tool that you wouldn’t want read. Saved runs stay private to your profile unless you tick “Share on profile”.
Rate limits
The AI tools enforce four limits, all keyed off the salted IP hash described above: a burst limit of ten runs per five minutes, your plan’s credit allowance, a per-IP daily ceiling that applies to anonymous and free accounts only, and a site-wide daily cap that protects us from runaway model costs. The IP hash is held in our cache for the rate-limit window only.
Reading is never rate-limited, and the deterministic tools — the syllable counter, rhyme-scheme finder, citation generator and the rest — carry only a flood guard, since they make no model call.
Third parties that see your data
One external service receives the text you submit to a tool: Anthropic, which runs Claude, the model that produces the analysis. Their privacy policy applies, and their API terms state they don’t train on inputs from API customers by default.
We also use OpenAI, but not on anything you write. It runs a phrasing pass over our own editorial content before we publish it — poem-page study scaffolds, reading guides, and similar. Nothing you paste into a tool, and nothing you write at the Writing Desk, is sent to it.
Anthropic receives only the text of that one request — never your IP, your hash, your email, or any other metadata.
Retention and deletion
Submissions to the analyzer are kept indefinitely so the permalinks keep working. If you want a specific submission deleted, email hello@storgy.com with the URL — we’ll remove it. GA4 data is retained per Google’s defaults; you can request its deletion at the same address.
Contact
For any privacy or data-protection question — including GDPR access requests from EU readers — email hello@storgy.com. The site is operated by the Storgy editorial team.
Privacy contact
Questions?
hello@storgy.com →