Privacy Policy

Last updated: July 8, 2026

Plain-language summary: we collect the minimum needed to run your account and email you your reports — your email, a hashed password, the URLs you ask us to audit, and billing info handled entirely by Stripe. We never sell or rent your data to anyone. A short list of vendors help us run the service (below); none of them get to use your data for their own purposes.

1. Who we are

Vislumbra is a product of Cantueso Corp, operated by Diego Cipion. This policy covers vislumbra.com and its dashboard, reports, and emails. Contact: diegocipion@gmail.com.

2. What we collect

DataWhy we collect it
Email addressAccount login, sending your Audit Briefs and weekly check-ins
PasswordStored as a one-way hash (bcrypt). We never see or store your actual password.
Page URLs you addThe pages you ask us to audit and monitor
Industry you selectUsed to weight the audit rubric (e.g. accessibility matters more for regulated industries)
Screenshot of your pageTaken automatically to generate your Audit Brief; stored so you can view your report later
Billing info (plan, Stripe customer ID)To know what plan you're on. Your card details are handled entirely by Stripe — we never see or store them.

We do not ask for your name, address, or phone number, and we don't collect anything beyond what's in this table.

3. Cookies

Vislumbra uses a small number of cookies:

CookiePurpose
Session cookieKeeps you logged in after you sign in. Deleted when you log out or your session expires.
Google Analytics (_ga, _ga_*)Anonymous, aggregated usage data — which pages get visited, roughly how many people, nothing tied to your name or email.

We don't use cookies for ad targeting or retargeting, and we don't sell any data collected through them.

4. Who your data is shared with

We use a small number of vendors ("subprocessors") to run Vislumbra. Each only sees what it needs to do its specific job — none of them are allowed to use your data for their own purposes or sell it on.

VendorWhat it seesWhy
Anthropic (Claude)The screenshot of the page you're auditingGenerates the design/UX analysis in your Audit Brief
thum.ioThe URL of the page you're auditingTakes the screenshot we analyze
StripeYour billing detailsProcesses payments; we never see your card number
HostingerEverything, as our hosting providerRuns the servers Vislumbra is built on
Google AnalyticsAnonymous usage data (pages viewed, general location, device type)Helps us see which pages get used, no ad targeting

We never sell, rent, or share your data with anyone for advertising or marketing purposes. We don't have a data broker relationship with anyone.

5. How long we keep it

We keep your account data and audit history for as long as your account is active. If you cancel your subscription, your account downgrades to the free plan and your data stays associated with your account. If you want your account and all associated data permanently deleted, email us and we'll do it within 14 days.

6. Your reports

Audit Brief report pages are not publicly listed or indexed by search engines, but they are reachable by anyone who has the exact link. Don't share a report link publicly if the screenshot or findings contain information you consider sensitive.

7. Security

All traffic to Vislumbra is encrypted (HTTPS). Passwords are hashed with bcrypt, never stored in plain text. We don't claim any system is unbreakable — no one honestly can — but we don't collect more than we need, and what we do collect is protected with standard, current practices.

8. Your rights

You can request a copy of your data, ask us to correct it, or ask us to delete it entirely at any time by emailing diegocipion@gmail.com. If you're in the EU/UK or California, this covers your GDPR/CCPA rights to access, correct, and delete your data — we apply the same standard to everyone regardless of where you're located.

9. Changes to this policy

If we materially change how we handle your data, we'll update this page and, for active account holders, email you about it.