What is kept, and where
Updated October 3, 2026
ConvergerLab (convergerlab.com) is run by Pablo Miranda, who is responsible for the personal data described here. Questions and requests: support@pablin.me.
In short
- Signed out, your progress stays in your browser and isn't sent to us.
- With an account, we keep your email address, your sessions, your progress and whether you bought Pro, to run the service. Nothing else.
- Payments are handled by Paddle, which sees your payment details. We never do.
- Your data isn't sold, and you aren't tracked across other sites.
When you're signed out
- Your progress (steps reached, answers' results, review dates) is stored in your browser, in IndexedDB. It isn't sent anywhere. You can export it, import it or clear it on the progress page.
- Page views are counted with Cloudflare Web Analytics, to see which pages and lessons are used. It sets no cookies, stores nothing in your browser and doesn't follow you across sites. Each count holds the page, the site that linked to it, the kind of browser and device, the country and how fast the page loaded; your progress is never part of it.
With an account
When you sign in or create an account, we keep:
- Your email address, when the account was made and confirmed, and when you confirmed you are 13 or older. We email you only what the account needs: sign-in codes, a code to confirm a new address, and notice of changes to these terms or this policy.
- Sign-in codes and links, stored only in a scrambled form that can't be read back, and deleted a day after they expire.
- Your sessions: a cookie in your browser and, on our side, a scrambled copy of it with the browser's name and when it was used. A session lasts 30 days, renewed while you use it, until you sign out.
- Your progress, copied to your account so it follows you to every browser where you sign in.
- Your Pro purchase, as Paddle reports it: Paddle's references for you and the purchase, when you bought it, and whether it was refunded. Never your card or bank details.
We use this to provide the service you signed up for (under the GDPR, to perform our contract with you), and to keep it secure and stop abuse, such as someone flooding an inbox with sign-in emails (our legitimate interest).
Payments
Pro is sold by Paddle, our reseller and merchant of record. Paddle collects your payment details, billing address and tax information, and handles them under its own privacy notice. Paddle tells us that you bought Pro, and if it was refunded; we never receive your payment details.
Who else handles data for us
- Cloudflare hosts the site and its database and storage, sends the sign-in emails, runs Turnstile (the check that you're not a bot, on the forms that send email) and counts page views. Its servers keep request logs, including IP addresses, for a few days, which we use only to fix problems and stop abuse. Cloudflare's privacy policy covers its part.
- Paddle, for payments, as above.
They may process data in countries other than yours, relying on recognised safeguards such as the European Commission's standard contractual clauses.
Cookies
One, and only when you're signed in: __Host-session, which keeps you signed in. It is needed for the account to work, so it is set without a banner. Turnstile on the sign-in pages and Paddle's checkout on the plans page run in their own frames and may use their own storage there. ConvergerLab sets no other cookies.
How long
- Your account and everything with it: until you delete the account.
- Sign-in codes: a day after they expire. Sessions: until you sign out, or 30 days without use.
- Server logs: a few days.
- Paddle keeps records of payments as tax and accounting law requires.
What you can do
- See and take a copy of what's stored: Download my data on the account page.
- Correct your email address there too.
- Delete your account there, with everything stored with it, at once. Deleting the account also ends its Pro purchase.
- Ask us anything else, or object to how your data is used, at support@pablin.me. You can also complain to the data protection authority where you live.
Children
Children under 13 can't create an account; we ask for the age at sign-up. Signed out, a child's progress stays in their browser, and the page-view counts identify no one, at any age. If you believe a child under 13 has made an account, write to us and we'll delete it.
Changes
If this policy changes, the new version appears here with its date, and account holders are emailed about any change that matters.