How Informon handles data for personalized learning.

Privacy Policy

How Informon handles data for personalized learning.

Informon depends on profile-aware recommendations, so the privacy model needs to be clear about what is collected, why it is used, where it goes, and how users can control it.

Last updated July 19, 2026

1. Scope and controller

This Privacy Policy explains how Informon handles personal data when people visit the website, sign in, use Scout Loops, submit topic requests, update profile settings, send feedback, or contact us. Informon is operated by DeepDive Solna AB, a company registered in Sweden, which acts as the data controller for personal data processed at informon.com and decides why and how application data is used. Privacy questions can be sent to contact@informon.com.

The service is currently designed for invited professional and adult users. It is not intended for children, and users should not submit sensitive personal data, secrets, regulated client data, or confidential company material unless Informon explicitly supports that use in a later plan or agreement.

2. Data we collect

Informon may collect account and access data such as email address, authentication identifiers, invitation status, workspace membership, role, sign-in events, and session metadata. If profile features are used, Informon may also store preferences such as professional role, goals, interests, platforms, tools, skill level, preferred time commitment, and learning context.

Product data may include submitted topics, saved Scout Loops, notes, outcome choices, feedback signals, generation request status, generated learning content, page context connected to feedback, and contact messages. Technical data may include device, browser, IP-derived network information, log entries, diagnostic data, and security events needed to operate and protect the service.

If paid plans are introduced, Informon or its payment processor may collect billing contact details, plan information, tax information, transaction metadata, and payment status. Informon does not store full card numbers directly.

3. How we use data

Informon uses data to provide the product, authenticate users, enforce invite-only access, maintain workspaces, display Scout Loops, store topic requests, remember outcomes, respond to support messages, and keep the service secure.

Informon also uses profile settings, selected topics, learning preferences, and feedback signals to personalize Scout Loops and recommendations. This personalization is meant to make a first pass more relevant to the user's role, tools, current skill level, platform, and available time.

Aggregated or de-identified product signals may be used to understand which loops are useful, improve product quality, prioritize features, debug failures, and measure whether the service is working as intended.

5. AI-assisted personalization

Scout Loops and recommendations may be generated or assisted by AI systems. Informon is designed to use only the information needed to shape a useful learning session, such as the requested topic, relevant profile preferences, and practical constraints. Informon reduces unnecessary identifiers in generation workflows.

Two AI providers process specific user inputs on Informon's behalf: if voice onboarding is used, the audio recording is sent to OpenAI (USA) for transcription, and free-text onboarding answers may be sent to Anthropic (USA) to draft a structured profile that the user reviews before saving. Neither provider is permitted to use this data for its own purposes beyond providing the service.

Users should not put secrets, credentials, private client data, regulated data, or highly sensitive personal information into topic requests, notes, feedback, or prompts. AI-assisted content can be incorrect or incomplete, so users should verify commands, code, claims, and sources before relying on them.

6. Processors and infrastructure

Informon uses the following third-party providers (processors) to run the service:

  • Vercel (USA) — website hosting and deployment. All request traffic passes through Vercel's infrastructure.
  • Supabase (Supabase Pte. Ltd; project hosted in the EU, Stockholm region) — authentication and the application database where account, profile, and product data are stored.
  • PostHog (EU cloud, Frankfurt) — product analytics. Configured cookieless; see the cookies section below.
  • OpenAI (USA) — voice transcription during optional voice onboarding.
  • Anthropic (USA) — AI-assisted profile drafting during onboarding.
  • Purelymail — transactional email delivery (sign-in links are sent by Supabase; product notifications by Informon).
  • Web3Forms — delivery of contact-form messages to the Informon team.

Some of these providers process data outside the EU/EEA. Where that happens, transfers are protected by the European Commission's Standard Contractual Clauses in each provider's data processing agreement and, where the provider is certified, the EU-US Data Privacy Framework. This provider list is updated as the product changes.

7. Cookies, logs, and analytics

Informon sets only essential cookies: the authentication session cookies required for sign-in, invite-only access, and security. There are no advertising cookies and no third-party tracking cookies, which is why the site shows no cookie banner.

Product analytics (PostHog, EU) runs in a cookieless configuration: it stores nothing on the device, and anonymous visits are not linked across sessions. Analytics events for signed-in users are associated with their account to understand product usage, on the basis of Informon's legitimate interest in improving the service. Server logs and diagnostic error reports are kept for security and reliability.

8. When data is shared

Informon does not sell personal data. Data may be shared with service providers that help operate the product, process authentication, host data, deliver email, analyze reliability, generate content, or provide support. These providers are expected to process data only for agreed service purposes.

Data may also be shared if required to comply with law, protect users or the service, investigate abuse or security issues, enforce terms, or complete a business transfer such as a merger, acquisition, financing, or sale of assets.

9. Retention

Informon keeps account, workspace, profile, learning, request, feedback, billing, and security records for as long as needed to provide the service, preserve user history, maintain security, resolve disputes, meet legal obligations, and support legitimate product operations.

Retention periods vary by data type. Some data can be deleted when an account or workspace is closed, while logs, billing records, security records, backups, and legal records may be retained for longer where necessary.

10. Security

Informon uses safeguards appropriate for a profile-aware learning product, including encrypted transport, hosted authentication, access-controlled databases, row-level data policies, deployment controls, operational logs, and least-privilege handling of production secrets.

No internet service can guarantee perfect security. Users should keep their email accounts secure, avoid sharing sign-in links or codes, and avoid submitting secrets or confidential material that the product is not designed to protect.

11. User rights

Depending on location, users may have rights to access, correct, delete, export, restrict, or object to certain processing of their personal data. Users may also have the right to withdraw consent where processing is based on consent.

Requests can be sent to contact@informon.com or submitted through the Contact page, and are handled manually within 30 days. Informon may need to verify the requester's identity and may keep limited records of requests to meet legal, security, and audit obligations. Users in the European Economic Area or similar jurisdictions may also complain to a local data protection authority (in Sweden, Integritetsskydds­myndigheten, IMY).

12. Changes to this policy

Informon may update this Privacy Policy as the product, providers, features, or legal requirements change. Material changes will be reflected by updating this page and, where appropriate, notifying users through the product or by email.

13. Contact

Privacy questions, data requests, and security concerns can be sent to contact@informon.com or submitted through the Contact page. The data controller is DeepDive Solna AB, Sweden.