Privacy policy
ThickerPeek · Last updated: May 8, 2026
ThickerPeek ("we") collects the minimum data needed to give you the product. This page lists what we store, why, who sees it, and how you control it.
What we store
Account data: username, email, hashed password, your full name if you provided one, locale preference, timezone.
Subscription data: plan tier, payment status, Mollie customer reference (Mollie holds the actual card data — we never see it).
Usage data: watchlists, alerts, theses, notes, audit log of admin actions if applicable.
Anonymous analytics: a rotating per-week anonymous ID stored in a session cookie. No third-party trackers, no Google Analytics, no Facebook Pixel.
Why we store it
To run the product (Article 6(1)(b) GDPR — necessary for the contract).
To bill you (Article 6(1)(b) — same).
To improve the product based on aggregate, anonymised usage patterns (Article 6(1)(f) — legitimate interest).
To send transactional + drip emails about your account and product updates (Article 6(1)(b) and (a) — opt-in for marketing-tone messages, configurable at /settings/notifications).
Who sees it
Subprocessors: Hetzner (server hosting, Germany), Resend (transactional + marketing email, EU/US), Mollie (payments, EU). All are bound by data-processing agreements.
AI providers: when you use AI features (digests, research agent, stock Q&A) the relevant inputs go to Anthropic. We don't share your account data with them — only the question + structured stock context.
We don't sell or share your data with advertisers or data brokers.
Your rights (GDPR)
Access — see the data we hold about you (request via email).
Erase — delete your account from /settings/profile (Danger zone). All personal data + watchlists + theses + notes go. Aggregated anonymous analytics may remain.
Export — request a JSON dump of your data via email.
Object / restrict — turn off email + push notifications at /settings/notifications, or contact us.
Lodge a complaint with the Autoriteit Persoonsgegevens (NL data-protection authority) if you think we mishandled your data.
Retention
Active accounts: data is kept while you use the product.
Closed accounts: personal data deleted within 30 days. Billing records retained 7 years (Dutch tax law).
Anonymous analytics: 24 months rolling.
Contact
For privacy questions email support@thickerpeek.com. Data controller: ThickerPeek, operating thickerpeek.com.