Reference
Privacy policy and data protection notice
Effective August 22, 2026. This notice explains what personal data is processed when you visit parsethedata.com, why it is processed, how long it is retained, who receives it, and the rights available under the EU and UK GDPR and similar privacy laws.
1. Controller and scope
Data controller: AJ Pathmanathan, operator of Parse The Data.
Privacy contact: privacy@parsethedata.com. Do not attach or paste a dataset to a privacy request.
This policy applies to parsethedata.com, its local data workbench, and Natural Voice. External sites linked from this site have their own privacy terms.
2. At a glance
- Dataset contents
- Processed in browser memory; not sent to the site server
- Natural Voice prose
- Sent to Cloudflare Workers AI only when Rewrite naturally is selected
- Accounts
- None
- Ads or sale of data
- None
- Site analytics beacon
- None
- Primary legal basis
- Legitimate interests in requested service delivery, reliability, and security
- Sampled Worker log retention
- Up to 7 days
3. Data processed
Dataset contents: CSV, TSV, JSON, JSONL, profiles, inferred schemas, privacy findings, transformations, and exports are processed inside the browser tab. The dataset workbench has no upload route or runtime connection for transmitting that content.
Natural Voice: When you select Rewrite naturally, the prose, selected tone, and any optional writing sample are sent through the site Worker to Cloudflare Workers AI. The service first creates a draft; substantial or visibly formulaic results may be sent through separate Workers AI line-edit invocations, including one bounded retry when visible patterns remain. The generated rewrite is returned to the tab. The application does not put source text, writing samples, or results in a database or browser storage.
Delivery and security metadata: Cloudflare processes information needed to serve, rate-limit, and protect the site. This can include IP address, requested URL and method, user agent, timestamp, response status, timing, routing, system configuration, and security signals. Parse The Data samples 10% of Worker invocation logs for reliability and debugging. The rate limiter uses a shortened one-way hash of the client IP as an ephemeral abuse-control key.
Local preference: The light or dark theme is stored in browser local storage. It is not sent back by the application.
Correspondence: If you email a privacy or security request, the message includes the address, headers, content, and attachments you choose to provide.
4. Purposes and lawful bases
- Provide a requested Natural Voice rewrite: legitimate interests under GDPR Article 6(1)(f) in providing the editing function a visitor deliberately invokes.
- Serve, rate-limit, secure, and troubleshoot the site: legitimate interests under GDPR Article 6(1)(f), specifically reliable delivery, abuse prevention, cost control, debugging, and security.
- Respond to privacy requests and legal duties: compliance with legal obligations under Article 6(1)(c), and legitimate interests in documenting and resolving requests.
No processing described here is used for direct marketing or advertising profiles. You may object to legitimate-interest processing as described below. See GDPR Article 6 in EUR-Lex.
5. Cookies and browser storage
Parse The Data does not currently set cookies, run third-party analytics, or load advertising pixels. It stores one local value—your theme preference—until you clear site data. Because there are no non-essential cookies, the site does not show a consent banner.
Cloudflare may set strictly necessary security cookies if a protective service is enabled or triggered. Those cookies are used for security, not advertising. See Cloudflare’s cookie documentation.
6. Recipients and service providers
Cloudflare: provides DNS, network security, static asset delivery, Workers, Workers AI, rate limiting, Email Routing, and sampled operational logs. Cloudflare states that Workers AI inputs and outputs are Customer Content, are not made available to other customers, and are not used to train AI models or improve services without explicit consent. See Cloudflare’s Workers AI data-usage notice and privacy policy.
Google: receives privacy and security correspondence after Cloudflare forwards mail to the controller’s Google-hosted mailbox. See Google’s privacy policy.
Personal data is not sold, rented, shared for cross-context behavioral advertising, or disclosed to marketing data brokers. It may be disclosed when required by law or necessary to establish, exercise, or defend legal claims.
7. International transfers
Cloudflare and Google operate internationally, so limited request metadata or correspondence may be processed outside your country, including in the United States. Where EU or UK transfer rules apply, providers state that they use recognized transfer safeguards. Cloudflare’s Data Processing Addendum includes Standard Contractual Clauses. Contact the controller for information relevant to a particular request.
8. Retention
- Dataset and working copy: retained in browser memory only for the active page session; the application does not store them server-side.
- Natural Voice content: the application does not persist source prose, writing samples, or rewrites in a database, object store, logs, or local storage. Cloudflare processes that Customer Content to run Workers AI under its published terms.
- Theme: remains in browser local storage until you clear site data.
- Workers Logs: sampled at 10% and retained by Cloudflare for 3 days on the Free plan or 7 days on the Paid plan; text bodies are not deliberately logged.
- Privacy and security correspondence: retained for up to 24 months after closure to document the response, unless a longer period is required by law or a live dispute.
- Provider-controlled Network Data: retained under Cloudflare’s own published policy.
9. Your GDPR rights
Depending on where you live and the circumstances, you may have rights to be informed; access personal data; correct inaccurate data; request erasure; restrict processing; receive portable data where applicable; object to processing based on legitimate interests; and avoid a decision based solely on automated processing that has legal or similarly significant effects.
Email privacy@parsethedata.com with the right you want to exercise. A response will be provided without undue delay and ordinarily within one month. Reasonable information may be requested to verify identity. Requests are normally free, subject to the exceptions allowed by law. Read the European Commission’s rights guide.
10. Practical limits on requests
There are no user accounts or server-side dataset records. Parse The Data therefore cannot access, correct, export, or delete a dataset that never left your browser. Natural Voice content is processed transiently without an application record keyed to a visitor, so the operator generally cannot retrieve it later. To help locate a sampled delivery log, a requester may need to provide the approximate visit time, requested URL, and originating IP address. Do not send dataset contents.
11. Complaints
You may complain to the data protection authority where you live, work, or believe an infringement occurred. The European Data Protection Board lists EU authorities; UK residents can contact the Information Commissioner’s Office. You may contact the controller first, but you do not have to.
12. Automated decisions and children
Parse The Data does not make decisions about visitors with legal or similarly significant effects. Readiness scores and privacy warnings are local informational aids. Natural Voice generates a requested editorial suggestion; it does not evaluate a person or make a consequential decision.
The service is not directed to children under 13 and does not knowingly collect account or profile information from children.
13. Security, changes, and questions
Safeguards include HTTPS, strict response headers, same-origin browser assets, a no-connection Content Security Policy on dataset routes, a same-origin-only connection policy on Natural Voice, local Web Worker dataset processing, a single bounded POST endpoint, request rate limiting, and short sampled-log retention. No system is guaranteed secure.
Material changes will be recorded in the changelog and reflected by the reviewed date on this page. Questions, objections, and requests can be sent to privacy@parsethedata.com.
Does Parse The Data upload files or pasted text?
CSV, TSV, JSON, and JSONL datasets stay inside the browser tab. Natural Voice is the explicit exception: after you select Rewrite naturally, it sends the prose and optional writing sample to Cloudflare Workers AI.
Does Parse The Data use cookies or need a cookie banner?
The site does not currently set cookies or use non-essential tracking. It stores only the theme preference in local storage, so there is no cookie consent banner. Cloudflare may use strictly necessary security cookies if a protective feature is enabled or triggered.
What is the GDPR lawful basis for processing website request data?
The primary basis is legitimate interests under Article 6(1)(f): delivering, securing, and troubleshooting the service. Legal obligations under Article 6(1)(c) apply when handling qualifying rights requests or other legal duties.
How do I exercise a GDPR privacy right?
Email privacy@parsethedata.com with the right you want to exercise. Requests are ordinarily answered within one month, and reasonable identity verification may be required. Do not send dataset contents.
How long are website logs retained?
Parse The Data samples 10% of Worker invocation logs. Cloudflare currently retains Workers Logs for 3 days on the Free plan or 7 days on the Paid plan, so the maximum stated retention is 7 days.
Is Parse The Data GDPR certified?
No certification or blanket compliance guarantee is claimed. This notice documents the service’s current data flows, safeguards, lawful bases, retention, providers, and rights process.