Data we collect
DUO stores only the data needed to authenticate members, route billing, issue invoices, and remember progress in the current-week experience.
- Account identity, locale preference, and subscription status.
- Portuguese NIF, billing references, and watch-progress checkpoints.
How we use your data
Data is used to verify access, create and reconcile subscriptions, issue invoices, and support the watch and account experiences.
- Supabase powers authentication, profile storage, and current-week access checks.
- Watch progress is saved silently so playback can resume from the last checkpoint.
Processors and sub-processors
DUO relies on a small processor set for hosting, payments, video delivery, transactional email, invoicing, and diagnostics.
- See the public processor register for Supabase, Stripe, Mux, Resend, Vercel, Sentry, and KeyInvoice.
- Optional browser diagnostics stay disabled until cookie consent is set to Accept all.
Retention baseline
Feedback ratings, guided answers, optional comments, discomfort reports, and video playback context are linked to the member account and visible to clinic administrators. Feedback is retained indefinitely while the account exists; clinic and legal review is required before production release.
- Account deletion cascades to feedback submissions, while administrators may retain feedback for service-quality and clinical-content improvement during the account lifetime.
- Invoice and tax records continue to follow the current Portuguese legal retention window.