Privacy Policy

Effective Date: September 11, 2026

What changed
  • September 11, 2026: Data Retention now says that an account that never starts a trial is deleted after 60 days without a sign-in, with an email a week before.
  • September 2, 2026: Added the Querent Web Clipper (browser extension) section; the Changes section now describes what actually happens instead of promising an email. Later the same day: added answer feedback to Information We Collect, a new Who Can Read Your Documents section, and the offline-snapshot sentence now says "may", since none has been taken yet.
  • September 1, 2026: Added the Importing from Google Drive section.
  • August 30, 2026: Added the cookies and browser storage section; effective date brought up to date with edits made since August 18.

AA & X Family Brands ("we," "us," or "our") operates Querent. This Privacy Policy explains what information we collect, how we use it, and your rights regarding your data. We take privacy seriously, especially given the nature of the documents you may upload.

Information We Collect

Account Information: When you create an account, we collect your email address, to authenticate your identity and communicate with you about the Service, and the name you sign up with, which is used to address you in the app and in answers.

Document Content: When you upload files, we extract and store the text content of those documents to enable search and query functionality. We do not store your original files; we store only the extracted text broken into searchable chunks, encrypted at rest.

Conversation History: Your questions and the AI's answers are stored, encrypted, so you can revisit and search past conversations. You can delete any conversation at any time, and all conversations are deleted with your account.

Folders and Study Materials: The names of folders you create and the study sets Querent generates for you (flashcards, quizzes, mind maps, practice problems) are stored encrypted. Both are included in your data export and deleted with your account.

Technical and Security Data: We record IP addresses and basic device information in security audit logs and session records, so you can review your account activity and manage active sessions. If you use email-in, we also keep a record of each received email (sender, subject, and attachment outcomes) so you can see what arrived.

Answer Feedback: If you rate an answer with a thumbs up or down, we store the rating, which mode you were using, and any comment you type, encrypted. We do not store the question or the answer with it. Comments are read by a human to find and fix bad answers, so keep personal details out of them. Feedback is deleted with your account.

Usage Data: We may collect basic usage information such as the number of documents uploaded and queries made, to help us improve the Service.

How We Use Your Information

We use your information solely to provide and improve Querent. Specifically: to authenticate your identity and secure your account; to store your document chunks for search and retrieval; to process your queries against your documents; and to communicate with you about the Service. We do not use your documents to train AI models, and neither do the third-party AI providers we rely on. See "Third-Party AI Processing" below for details.

Third-Party AI Processing: Important Disclosure

Querent uses two third-party AI services to power its features. We are transparent about both, and neither uses your content to train their AI models.

Anthropic Claude API: Anthropic processes your document content at two points, and we want to be precise about both. At upload, a short excerpt of each document (its opening and closing text) is processed to generate the document's tags and summary, and photos or scanned pages, which have no text layer to extract, are processed in full by Anthropic's vision models to read their text and screen for prohibited content. When you submit a question, we send your question, the first name on your account, and only the stored passages most relevant to that question, not your entire document and never your whole library; each passage is labeled with the name of the document it came from, which is how an answer can cite its sources, and a report or a study set is built from the same labeled passages. Inside a conversation we also re-send its most recent turns, so follow-ups make sense; because those earlier answers quoted your documents, a turn may carry text from a document your latest question did not match. If you ask for folder suggestions, your documents' names, tags, and summaries are processed to propose an organization, together with the names of the folders you already have, so an existing folder can be suggested when one fits. Anthropic does not use API data to train its models. Anthropic retains API inputs and outputs for a limited period for safety and abuse monitoring, governed by its own data retention policy. Anthropic's Privacy Policy is available at anthropic.com/privacy.

Voyage AI: When you upload a document, each text chunk is sent to Voyage AI's servers to generate a semantic embedding, a mathematical representation that enables intelligent search. These embeddings allow Querent to find relevant content based on meaning, not just keywords. The text of each question you ask is also sent to Voyage AI, to compute the embedding used to find the passages that match it; in report and compare mode your question is sent once per document you selected; when you generate a study set with a focus, that focus text is embedded the same way, once per selected document. Querent has opted out of Voyage AI's data-training program, so your content is never used to train their models; retention of processed content is governed by Voyage AI's own policy. Voyage AI's Privacy Policy is available at voyageai.com.

By using Querent, you consent to this processing by both services. We encourage you to review their respective privacy policies.

Third-Party Email Processing

Querent uses one third-party email service: SendGrid (a Twilio company). SendGrid sends our account emails, such as billing notifications, upload notifications, and the confirmations you receive after emailing in a document, and receives documents sent to your personal Querent email address.

When you send a document by email, SendGrid delivers the message and its attachments directly to Querent for processing; SendGrid holds inbound messages only long enough to deliver them (if delivery to Querent fails, it retries for up to about 72 hours before dropping the message). Querent does not store the original email or attachment file itself - only the extracted, encrypted text is added to your library, the same as with a regular upload. We keep an encrypted activity record of each received email (sender, subject, and attachment outcomes) so you can see what arrived; these records are automatically deleted after 90 days. SendGrid's privacy policy is available at twilio.com/legal/privacy.

Importing from Google Drive

If you choose to import files from Google Drive, Querent asks Google for permission to read only the files you pick in Google's own file chooser (the drive.file permission, the narrowest Google offers). Everything happens in your browser: after you pick, your browser fetches those files from Google and uploads them to Querent exactly like a regular upload. Querent's servers never receive or store your Google sign-in, never contact Google on your behalf, and cannot see any other file in your Drive. Google Docs, Sheets and Slides are converted by Google into Word, Excel and PowerPoint files on the way in. Nothing is written back to your Drive and nothing is deleted there. As with any upload, Querent does not keep the imported file itself, only its extracted, encrypted text.

The access token your browser receives expires within about an hour and is never stored by Querent. The permission itself stays listed under your Google account's third-party access until you remove it, which you can do at any time at myaccount.google.com/permissions. Querent's use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. Google's handling of your data is governed by Google's Privacy Policy at policies.google.com/privacy.

Querent Web Clipper (browser extension)

The Querent Web Clipper is an optional browser extension (Chrome, Edge, Firefox, and browsers built on them) that saves the readable text of a web page into your library. It runs only when you click it. When you press Save, the extension reads the page in the tab you are looking at, extracts the article text, and uploads that text to Querent exactly like a regular upload, so it becomes an encrypted document in your library. The saved document takes the page's title as its own and begins with a line recording the page's address, so you can find your way back to the source; that address is the only record of the page Querent keeps, and it is stored encrypted as part of the document like the rest of the text. The extension does not read your browsing history, does not watch which pages you visit, does not run on pages you have not asked it to save, and sends nothing to anyone other than Querent's own servers and our sign-in provider.

To act on your behalf, the extension keeps your Querent sign-in session in the browser's extension storage on your device, either from signing in with your email and password in the extension itself or from the one-time "Connect with querentapp.com" link, which hands the extension its own session without exposing the one your browser tab holds. Signing out in the extension removes that session; removing the extension removes everything it stored. The extension collects no analytics and no telemetry of any kind, and we publish the same disclosures in each browser store's listing.

Cookies and Browser Storage

Querent's own pages set no advertising, analytics, or cross-site tracking cookies. Signing in stores your session in your browser's local storage (not a cookie), and the app keeps a few small conveniences there too, like which notices you have dismissed; signing out clears the sensitive entries. The Querent Web Clipper keeps its own session in extension storage, described in its section above. The one exception to be aware of: the Senja testimonials widget on our homepage is third-party content and may set its own cookies in your browser, governed by Senja's policy linked below. It loads only on the public homepage, never inside the app.

Website Widgets

Our public marketing pages load a customer-testimonials widget from Senja. When those pages load, Senja may receive your IP address and basic browser information, like any embedded third-party content. The widget does not appear inside the app itself and has no access to your documents or account data. Senja's Privacy Policy is available at senja.io/privacy.

The help page includes a question widget available to anyone, signed in or not. Questions you type there are sent to Anthropic to generate an answer from our documentation, and the question and answer (without your IP address) are forwarded to our support inbox so a human can improve the docs. If that email fails to send, the question is written to our server error log instead so it is not lost; those logs are kept about 30 days. Don't include personal or account details in widget questions; for account-specific help, email support@querentapp.com instead.

Data Storage and Security

Your document chunks and account data are stored using Supabase, a secure database platform with industry-standard protections. We implement the following security measures: HTTPS encryption for all data in transit; per-user data isolation (you cannot access other users' documents); authenticated access controls requiring login for all document operations; and rate limiting to prevent abuse. However, no method of storage or transmission is 100% secure, and we cannot guarantee absolute security.

Who Can Read Your Documents

Plainly: encryption at rest protects your documents from the database host, from backups, and from anyone who obtained a copy of the database. It does not protect them from Querent itself. The key that decrypts your text is held by Querent, so the person who runs the service could technically read it. What we can tell you is what actually happens: no screen in our administration tools shows document text, questions, or answers, and we do not read them. What we do see is activity records (that a document was uploaded or a question was asked, and when), file sizes and counts, and any feedback comment you send us. We would decrypt a specific document only at your request while helping you with it, or if legally required to, and in that case we would tell you unless the law prevented it.

Payment Processing

Subscription payments are handled entirely by Stripe, our payment processor. When you add a payment method, your card details are sent directly to Stripe and never pass through or get stored on Querent's own servers. We store only what Stripe tells us about your subscription status, such as whether your trial is active or a payment succeeded or failed, not your card number or other payment credentials. Stripe's Privacy Policy is available at stripe.com/privacy.

Data Retention

We retain your account information and document data until you explicitly delete them. Deletion is immediate in our live systems. Encrypted database backups are kept on a rolling 7-day cycle for disaster recovery, so deleted data ages out of the hosted backups within 7 days. We may also keep a small number of encrypted offline snapshots, taken against the loss of the hosting account itself, retaining at most the two most recent; when one exists, deleted data can persist in it for up to about 60 days. Backups and snapshots are only ever used to restore the service, never to resurrect deleted content. Activity logs, the security and usage records of actions like uploads and questions that power daily limits, abuse protection, and your account-activity view, are automatically deleted after about 13 months; deleting your account deletes them immediately. You can delete individual documents at any time through the Querent interface. You can download all data we hold about you at any time via the profile page. To delete your entire account and all associated data, use the profile page or contact us at support@querentapp.com and we will process your request within 30 days. If your trial or subscription ends and is not renewed, whether through cancellation or an unresolved failed payment, your account and data will be removed following that same 30-day window unless you resubscribe first. An account that confirms its email but never starts a trial is deleted, with its documents, after 60 days without a sign-in; we email you a week before that happens.

When your account is deleted, we also delete the customer record held with Stripe, our payment processor. Stripe independently retains records of past transactions where financial regulations require it; that retention is governed by Stripe's own policies, not ours.

We Do Not Sell Your Data

We do not sell, rent, trade, or share your personal information or document content with third parties for their own commercial purposes. Period.

A Few Things to Leave Out

Querent is built to hold sensitive material: medical records, legal documents, financial statements, and more. That's exactly what it's for. A few things carry risk without adding anything worth asking questions about, though: Social Security numbers or other government ID numbers, full financial account or credit card numbers, and passwords or authentication credentials. If a document happens to include one of these, it's worth redacting before you upload it, the same way you'd treat it anywhere else.

Your Rights

You have the right to: access your stored documents through the Querent interface; delete any or all of your documents at any time; download all data we hold about you via the profile page; request deletion of your account and all associated data; and request information about what data we hold about you. To exercise these rights, contact us at support@querentapp.com.

Children's Privacy

Querent is not intended for use by anyone under 18 years of age. We do not knowingly collect personal information from minors. If you believe a minor has provided us with personal information, contact us at support@querentapp.com.

Governing Law

This Privacy Policy is governed by the laws of the State of Georgia, United States.

Changes to This Policy

We may update this Privacy Policy from time to time. When we do, the effective date at the top of this page changes and the change is listed underneath it, so you can see what is different without re-reading the whole document. We do not send email about policy changes, so if a change would matter to you, this page is the place to check. Continued use of Querent after a change constitutes acceptance of the updated policy.

Contact Us

For privacy questions, data requests, or concerns, contact us at support@querentapp.com. We aim to respond to all privacy inquiries within 5 business days.