Privacy Policy
SafeRise Protocol
Operated by Kenor International B.V., Sint Maarten
Last updated: 23 October 2026
The short version
Your journal entries and session notes stay on your own device. We never receive them and cannot read them.
What we do hold is small: your email address, whether your subscription is active, and anonymous counts of which material is being opened. That last part tells us which protocols people find useful. It does not tell us anything about what you wrote or what you were feeling.
We do not sell data. We do not run advertising. We do not share your information with anyone except the small number of services listed below that are needed to run the platform.
The rest of this page explains all of that properly.
1. Who is responsible for your data
Kenor International B.V., registered in Sint Maarten, is the data controller.
Address: Union Road #144B, Cole Bay, Sint Maarten
Contact: contact@thesaferiseprotocol.com
2. What we collect
Your account
- Email address
- An encrypted form of your password — we never see the password itself
- The date you created the account
Your subscription
- Whether your subscription is active, past due or cancelled
- The date your current period ends
- Identifiers linking your account to your payment record at Paddle
We do not receive or store your card details. Those go directly to Paddle, our payment provider, and are held by them.
How the platform is used
When you open something, we record a short line: which account, what kind of event, which item, and when. For example: account 4f2b · protocol opened · t2-03 · 14 March, 09:12.
The events we record are: account created, session started, session completed, protocol opened, resource opened, journal entry saved.
"Journal entry saved" records that a save happened. It records nothing about what was written. We built it deliberately so that it cannot.
What you write
Your journal entries, session notes and personal record are stored on your device only. They are not uploaded, not backed up by us, and not readable by us.
The consequence is worth being clear about: if you clear your browser data, or lose the device, that record is gone and we cannot recover it. We think that trade is the right one, but it is your decision to make knowingly.
Technical information
Our host records standard server logs — IP address, browser type, pages requested — for security and for keeping the site running. These are kept briefly and are not used to build a profile of you.
We do not use advertising or tracking cookies. We use one small piece of local storage to remember whether you chose the light or dark theme, which stays in your browser.
3. What we do not collect
We want to be explicit, because of what this platform is about.
We do not collect health data. We do not ask about diagnoses, conditions, medication or treatment, and there is nowhere on the platform to enter them. We do not infer a health condition from which protocols you open, and we do not attempt to.
Which protocol you opened is, of course, suggestive. We treat that information as sensitive for exactly that reason, keep it aggregated, and never look at it person by person.
Your journal stays on your device. What you write in SafeRise is stored on the device you wrote it on. It is not sent to us. We cannot read it, we do not back it up, and we could not recover it for you. If you clear your browser data or change device, what you have written can be lost.
4. Why we hold it, and on what legal basis
| What | Why | Legal basis (GDPR) |
|---|---|---|
| Email and password | To let you log in and to reach you about your account | Performance of our contract with you |
| Subscription status | To give you access to what you have paid for | Performance of our contract |
| Usage events | To understand which material helps, and how many people return | Legitimate interests — improving the platform and running the business |
| Server logs | Security, fraud prevention, keeping the site up | Legitimate interests |
| Emails about your account | Billing notices, service changes | Performance of our contract |
| Marketing emails, if you ask for them | To send you what you asked for | Consent — withdrawable at any time |
Where we rely on legitimate interests, we have weighed that against your privacy. It is why usage data is aggregated, why no one drills into an individual record, and why nothing you write is ever transmitted.
5. Who else is involved
We use a small number of providers. Each one only receives what it needs.
| Provider | What it does | What it sees |
|---|---|---|
| Supabase (EU — Frankfurt) | Accounts, subscription status, usage events | Everything in section 2 except payment details and your journal |
| Paddle | Payments, invoicing, tax | Your name, email, billing address, card details |
| Netlify | Website hosting | Server logs |
| Wistia | Audio and video delivery | Playback requests |
| [EMAIL PROVIDER] | Account emails | Your email address |
Paddle is the merchant of record for your purchase, which means Paddle is the seller and an independent controller of your payment data. Their own privacy policy applies to it.
We do not sell your data, and we do not share it with anyone for their own marketing.
We may disclose information if the law requires it, or to protect someone's safety.
6. Where your data is held
Your account and usage data are stored in the European Union, in Frankfurt, Germany.
Kenor International B.V. is based in Sint Maarten, which sits outside the European Economic Area and is not covered by an EU adequacy decision. When we access data from there, that is an international transfer, and we rely on [TRANSFER MECHANISM — see note] to make it lawful.
7. How long we keep things
- Account data: while your account is open, then 30 days after you close it, then deleted.
- Usage events: 13 months, then deleted. Aggregate totals with no link to any account may be kept longer.
- Correspondence: 24 months — long enough to cover a repeat enquiry or a dispute.
- Marketing list: until you withdraw consent, plus 30 days.
- Server logs: 30 days.
- Billing and financial records: kept by Paddle for as long as tax law requires — typically seven years — because that is a legal obligation, not our choice. This period overrides the ones above for the transaction record only.
- Your journal: on your device, under your control. Deleting it there deletes it entirely.
Backups can hold data for a short time after it is deleted everywhere else, while the backup itself ages out on its own schedule. We would rather tell you that than have you find out by asking.
8. Your rights
If you are in the EU or UK, you have the right to:
- See what we hold about you
- Correct anything wrong
- Delete your data — the "right to be forgotten"
- Restrict how we use it while a question is being resolved
- Take it with you in a portable format
- Object to processing based on legitimate interests, including usage analytics
- Withdraw consent at any time, where consent is what we relied on
To do any of these, write to contact@thesaferiseprotocol.com. We will respond within 30 days, and there is no charge.
You do not have to explain why, and asking will never affect your access or how you are treated.
Objecting to usage analytics. If you would rather we did not record which material you open, tell us and we will switch it off for your account. Everything else keeps working.
Complaints. If you think we have handled your data badly, please tell us first. You also have the right to complain to your national data protection authority.
9. Security
Passwords are hashed, never stored in readable form. Traffic is encrypted in transit. Access to the production database is restricted, and the fields controlling your subscription can only be changed by our payment webhook — not by anyone's browser, including yours.
No system is perfectly secure. If a breach occurs that puts you at risk, we will tell you and the relevant authority within 72 hours.
10. Children
SafeRise is for adults. You must be 18 or over to create an account. We do not knowingly collect data from children, and will delete it promptly if we discover we have.
11. Automated decisions
We do not make automated decisions about you that have legal or similarly significant effects. There is no profiling and no algorithmic recommendation of protocols based on your behaviour.
12. Changes
If we change this policy in a way that materially affects you, we will email you at least 14 days before it takes effect. The date at the top always shows the current version.
Anything at all about your privacy: contact@thesaferiseprotocol.com