Privacy Policy
Last updated: April 17, 2026
1. Introduction
Welcome to AI Engineer in 14 Days ("we", "us", or "our"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at aiengineerin14days.site and use our services.
2. Information We Collect
2.1 Account Information
When you sign in via GitHub or Google OAuth, we receive and store:
- Your name and email address
- Profile picture URL
- OAuth provider account identifier
2.2 API Keys
If you choose to use AI-powered features (AI Tutor, Playground, Code Reviews), you provide your own OpenAI API key. Your key is encrypted at rest using AES-256 encryption and stored in our database. It is only decrypted server-side when making API calls on your behalf and is never exposed to the client or shared with any third party other than OpenAI to process your requests. You can update or delete your API key at any time from the Settings page.
2.3 Usage Data
We automatically collect information about how you interact with the platform, including lesson progress, quiz responses, playground usage, discussion posts, and leaderboard participation.
2.4 Cookies & Local Storage
We use essential cookies for authentication session management (NextAuth.js). We may also store user preferences in your browser's local storage for offline functionality.
3. How We Use Your Information
- Provide, maintain, and improve our learning platform
- Track your lesson progress and display it on your dashboard
- Display your public profile on the leaderboard and community feed
- Generate AI-powered tutoring responses and code evaluations
- Send important service-related notifications
- Detect and prevent abuse or unauthorized access
4. Third-Party Services
We rely on the following third-party services:
- GitHub & Google OAuth — for authentication
- MongoDB — for data storage
- Vercel — for hosting and analytics
- AI Model Providers — for AI tutor and code evaluation features (prompts and responses may be processed by third-party AI APIs)
Each service has its own privacy policy governing their use of your data.
5. Data Retention
We retain your account and progress data for as long as your account is active. If you request account deletion, we will remove your personal data within 30 days, except where we are required to retain it by law.
6. Data Security
We implement industry-standard security measures including encrypted data transmission (HTTPS), secure OAuth flows, and access controls. However, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Object to or restrict processing of your data
- Export your data in a portable format
To exercise any of these rights, please contact us using the information below.
8. Children's Privacy
Our platform is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we learn we have collected such data, we will delete it promptly.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by updating the "Last updated" date at the top of this page. Your continued use of the platform after any changes constitutes acceptance of the updated policy.
10. Contact Us
If you have any questions about this Privacy Policy, please reach out via our Contact page.