Legal
Privacy Policy
Last updated: April 2026
Who we are
WheyIn (wheyin.com) is a protein powder review and discovery platform. We help people find protein supplements based on real user reviews covering taste, gut feeling, mixability, and value for money. WheyIn is operated as an independent platform — we are not sponsored by or affiliated with any supplement brand.
What data we collect and why
Account data
If you create an account, we store your email address and a hashed password. This is used solely to authenticate you so you can submit reviews and save favourites. We do not ask for your name, address, phone number, or payment information.
Review data
When you submit a review, we store your ratings and any written comments alongside your account. Reviews are displayed publicly on the product page. You can delete your account and all associated reviews at any time by contacting us.
Analytics data
With your consent, we use Vercel Analytics and Vercel Speed Insights to understand how people use the site — which pages are visited most, how fast pages load, and where errors occur. This data is aggregated and anonymised. Vercel does not build personal profiles or share your data with advertisers.
Analytics only runs if you click “Accept analytics” in the cookie banner. If you decline, no tracking occurs. You can change your choice at any time using the “Cookie preferences” link in the footer.
Local preferences
We store your region preference, saved favourites, and UI preferences (such as dark mode) in your browser's local storage. This data never leaves your device and is not transmitted to our servers.
Cookies
We use one category of cookies:
| Category | Purpose | Consent required |
|---|---|---|
| Strictly necessary | Auth session (keeps you signed in) | No |
| Analytics | Vercel Analytics — page views, performance | Yes — opt-in |
We do not use advertising cookies, third-party tracking pixels, or social media cookies.
Who we share data with
We use the following third-party services to operate WheyIn:
- Supabase
Database and authentication. Your account data and reviews are stored on Supabase's EU infrastructure.
- Vercel
Hosting, edge delivery, and analytics. Vercel processes anonymised traffic data if you consent.
We do not sell your data to any third party. Ever.
Your rights (GDPR)
If you are in the European Economic Area, you have the following rights regarding your personal data:
- Access — request a copy of the data we hold about you
- Rectification — ask us to correct inaccurate data
- Erasure — request deletion of your account and all associated data
- Portability — receive your data in a machine-readable format
- Withdraw consent — change your analytics cookie preference at any time via the footer link
To exercise any of these rights, email us at privacy@wheyin.com. We will respond within 30 days.
Data retention
Account data and reviews are kept for as long as your account is active. If you request deletion, we remove all personally identifiable data within 30 days. Aggregated, anonymised analytics data (page view counts etc.) may be retained indefinitely as it cannot be linked to any individual.
Changes to this policy
We may update this policy as the platform evolves. If we make material changes, we will update the “Last updated” date at the top of this page. Continued use of WheyIn after changes constitutes acceptance of the updated policy.
Contact
Questions about this policy? Reach us at privacy@wheyin.com.