Privacy Notice
Last updated August 27, 2026
Who operates this service
Operator: Mike Sheehan
Privacy contact: support@soulorslop.com
How content is processed
- Image, text, and music content is analyzed by open models in your browser. The content itself is not sent to our server for detection, but the app contacts our server to enforce the daily limit.
- Website checks send the public URL you enter to our server. We fetch a limited portion of the public page and up to three same-origin stylesheets to inspect blocklist, HTML, CSS, framework, hosting, and copy signals. Fetched page content is processed transiently and is not stored.
- Paid and premium checks are coming soon and are unavailable during the free-only launch. Billing is disabled.
- Video checks are not available in this launch.
Account and usage data
If you create an account, Supabase Auth processes your email. We store account identifiers, category usage, and API key metadata needed to provide the account features.
For signed-in website checks, scan history may retain a hash of the requested URL and the resulting evidence report, including the normalized public URL and detected technical signals. It does not retain the fetched HTML or stylesheets.
Requests may also produce ordinary security and diagnostic data, such as IP address, request time, route, response status, and error details. This data is used to operate, secure, rate-limit, and troubleshoot the service.
Cookies
Soul or Slop is not cookie-free. Anonymous daily limits use an HTTP-only quota cookie that expires after about one day. Signed-in sessions use authentication cookies. Supabase or other active infrastructure providers may use their own cookies when you interact with their hosted services.
Availability waitlists
If you join the waitlist, we store your email address and the timestamps recording your consent and submission source. We use this information only to send the availability notice you requested, such as for paid plans or video detection. Waitlist storage is protected so it is accessible only through the service role.
To withdraw or request removal, contact support@soulorslop.com. We retain a waitlist record only until the availability notice is sent or you withdraw, whichever occurs first.
Service providers
Data is shared only as needed to run the service with providers that supply authentication and database hosting (Supabase), hosting, and infrastructure. A website you ask us to check also receives the scanner's network request and may process it under that website's own privacy terms.
Retention and deletion
Operational cleanup is configured to remove scan results after 90 days, revoked API-key metadata after 30 days, and daily usage records after 400 days. Active account data remains while the account is open. Account deletion removes user-owned product data. Waitlist data is retained only until the availability notice is sent or consent is withdrawn. These periods may be shortened or extended where applicable law requires it.
Your choices
You may use the anonymous free allowance without creating an account. You may sign out, request account deletion, or withdraw from an availability waitlist using the privacy contact above.
Security and changes
We use technical and organizational safeguards appropriate to the service, but no online system is completely secure. We may update this notice as the product, providers, or legal requirements change. The updated date above will identify the current version.