Last updated: July 29, 2026
When you create an account, we collect your email address and display name. When you use Sabrina, we store data you provide including card inventory, purchase records, sales records, grading submissions, and expense entries. We also collect basic usage analytics to improve the app.
We use your information to:
Your records - inventory, purchases, sales, grading submissions, expenses - are stored in a Supabase Postgres database protected by row-level security, so a query can only return rows that belong to your account. All traffic between you and Sabrina is encrypted over HTTPS.
Images you upload - photos of your own cards and your profile picture - work differently, and it's worth being precise: they are stored as files, and row-level security covers database rows, not files. A photo's address is not checked against your login, so anyone who has that exact link can open the image without signing in. Treat a photo link like a photo you've handed someone. New uploads are saved at a long random address that contains nothing about you beyond an internal account id. Images uploaded before July 2026 sit at a more predictable address; if that matters to you, remove the photo and upload it again and it will move to a random one.
Deleting removes the file, not just the record: that holds whether you remove a photo from a card, delete the card itself, reset your portfolio, or delete your account.
We do not sell, rent, or share your personal data with third parties for marketing purposes.
Sabrina relies on the following third-party services. The first group receives data from your account; the second group we only read reference data from, and gets nothing about you.
Services that receive your data
Reference sources we read from
Your account and records are stored in the United States (Supabase, US East). Card photos are stored in the same account's file storage. If you use Sabrina from outside the US, your data is transferred to and processed in the US.
We keep your records for as long as your account exists, because the whole point of the product is a running history - cost basis, grading round-trips, and year-end tax summaries all depend on records that may be years old. We do not auto-delete old entries.
When you delete something, it goes. Resetting your portfolio removes every asset, transaction, grading submission, and photo. Deleting your account does that and also cancels any subscription and removes your login. Neither is recoverable, and neither leaves a copy behind for us.
Most of these you can exercise yourself, immediately, without asking us:
If you would rather we did any of it for you, or you cannot reach your account, contact us using the details below.
We use browser local storage to save your theme preference and session tokens. We do not use third-party tracking cookies.
Sabrina is not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal data, please contact us so we can delete it.
We may update this privacy policy from time to time. Every change is published on this page with a new “last updated” date, and we notify you in the app when a change is significant. If we ever start using your data for something materially different from what is described here, we will ask you first rather than announce it.
If you have questions about this privacy policy or your data, contact us at support@getsabrina.com.