Legal

Privacy Policy

Last updated: April 2026

Who we are

WheyIn (wheyin.com) is a protein powder review and discovery platform. We help people find protein supplements based on real user reviews covering taste, gut feeling, mixability, and value for money. WheyIn is operated as an independent platform — we are not sponsored by or affiliated with any supplement brand.

What data we collect and why

Account data

If you create an account, we store your email address and a hashed password. This is used solely to authenticate you so you can submit reviews and save favourites. We do not ask for your name, address, phone number, or payment information.

Review data

When you submit a review, we store your ratings and any written comments alongside your account. Reviews are displayed publicly on the product page. You can delete your account and all associated reviews at any time by contacting us.

Analytics data

With your consent, we use Vercel Analytics and Vercel Speed Insights to understand how people use the site — which pages are visited most, how fast pages load, and where errors occur. This data is aggregated and anonymised. Vercel does not build personal profiles or share your data with advertisers.

Analytics only runs if you click “Accept analytics” in the cookie banner. If you decline, no tracking occurs. You can change your choice at any time using the “Cookie preferences” link in the footer.

Local preferences

We store your region preference, saved favourites, and UI preferences (such as dark mode) in your browser's local storage. This data never leaves your device and is not transmitted to our servers.

Cookies

We use one category of cookies:

CategoryPurposeConsent required
Strictly necessaryAuth session (keeps you signed in)No
AnalyticsVercel Analytics — page views, performanceYes — opt-in

We do not use advertising cookies, third-party tracking pixels, or social media cookies.

Who we share data with

We use the following third-party services to operate WheyIn:

  • Supabase

    Database and authentication. Your account data and reviews are stored on Supabase's EU infrastructure.

  • Vercel

    Hosting, edge delivery, and analytics. Vercel processes anonymised traffic data if you consent.

We do not sell your data to any third party. Ever.

Your rights (GDPR)

If you are in the European Economic Area, you have the following rights regarding your personal data:

  • Access — request a copy of the data we hold about you
  • Rectification — ask us to correct inaccurate data
  • Erasure — request deletion of your account and all associated data
  • Portability — receive your data in a machine-readable format
  • Withdraw consent — change your analytics cookie preference at any time via the footer link

To exercise any of these rights, email us at privacy@wheyin.com. We will respond within 30 days.

Data retention

Account data and reviews are kept for as long as your account is active. If you request deletion, we remove all personally identifiable data within 30 days. Aggregated, anonymised analytics data (page view counts etc.) may be retained indefinitely as it cannot be linked to any individual.

Changes to this policy

We may update this policy as the platform evolves. If we make material changes, we will update the “Last updated” date at the top of this page. Continued use of WheyIn after changes constitutes acceptance of the updated policy.

Contact

Questions about this policy? Reach us at privacy@wheyin.com.