Privacy Policy

Effective Date: February 1, 2026

FedPath ("we," "us," or "our") operates the fedpath.app website and progressive web application (the "Service"). This Privacy Policy describes how we collect, use, store, and protect your personal information when you use our Service.

By using FedPath, you agree to the collection and use of information as described in this policy.

1. Information We Collect

Account Information

When you create an account, we collect your email address and first name. We use email/password or magic-link authentication provided by Supabase Auth.

Federal Service Details

To provide retirement projections, you voluntarily enter information such as your date of birth, service type (FERS or military), pay grade and step, years of creditable service, planned retirement age, and related details. All of this information is provided directly by you.

TSP & Financial Data

You may enter your TSP balance, contribution rate, fund allocations, withdrawal details, and retirement income goals. This data is used solely to generate your personalized retirement projections. We do not connect to your TSP account or any financial institution.

AI Assistant Conversations

If you use our AI assistant, your conversation messages are stored so you can return to previous conversations. These messages are associated with your account and are not shared with third parties.

Usage Data

We collect basic usage events (e.g., page views, feature usage) to understand how the Service is used and to improve the experience. We do not use third-party advertising trackers.

2. How We Use Your Information

  • To provide the Service: Your federal service details, TSP data, and goals are used to calculate retirement projections, generate scenarios, and power the AI assistant.
  • To improve the Service: Aggregated, anonymized usage data helps us understand which features are most valuable and where to invest development effort.
  • To communicate with you: We may send service-related emails such as subscription confirmations, billing notices, and important updates. You can opt out of optional communications.
  • To process payments: Subscription billing is handled by Stripe. We do not store your credit card information on our servers.

3. Data Storage & Security

Your data is stored in a Supabase-hosted PostgreSQL database with row-level security (RLS) policies that ensure each user can only access their own data. All data is encrypted in transit using TLS and encrypted at rest by our database provider.

We employ industry-standard security practices to protect your information, but no method of electronic storage is 100% secure. We cannot guarantee absolute security, but we take reasonable measures to protect your data.

4. Third-Party Services

Stripe (Payment Processing)

We use Stripe to process subscription payments. When you subscribe, your payment information is collected and processed directly by Stripe. We do not store your credit card details. Stripe's privacy policy is available at stripe.com/privacy.

Anthropic (AI Assistant)

Our AI assistant is powered by Anthropic's Claude API. When you use the assistant, your message and relevant profile context are sent to Anthropic to generate a response. Anthropic does not use this data to train their models. Anthropic's privacy policy is available at anthropic.com/privacy.

Supabase (Database & Authentication)

We use Supabase for database hosting and authentication services. Supabase's privacy policy is available at supabase.com/privacy.

We do not sell, rent, or share your personal data with third parties for marketing purposes. Ever.

5. Cookies & Tracking

FedPath uses minimal cookies strictly necessary for the Service to function:

  • Authentication cookies: Session cookies to keep you logged in.
  • Local storage: We use browser local storage to cache your profile data for faster page loads.

We do not use advertising cookies, social media tracking pixels, or third-party analytics platforms that track you across other websites.

6. Data Retention & Deletion

We retain your data for as long as your account is active or as needed to provide the Service. You can delete your account and all associated data at any time from the Settings page. Upon deletion:

  • All profile data, service history, TSP details, retirement goals, scenarios, and AI conversations are permanently deleted.
  • Your Stripe subscription is cancelled, and billing records are retained by Stripe per their data retention policy.
  • Deletion is irreversible. We cannot recover your data after deletion.

7. Children's Privacy

FedPath is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided us with personal information, we will take steps to delete that information promptly.

8. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal data we hold about you
  • Correct inaccurate data
  • Request deletion of your data
  • Export your data in a portable format
  • Withdraw consent for data processing

To exercise any of these rights, contact us at support@fedpath.app.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the "Effective Date" at the top. Your continued use of the Service after changes constitutes acceptance of the updated policy.

10. Contact Us

If you have questions about this Privacy Policy or your data, please contact us:

Email: support@fedpath.app