Privacy Policy

Last updated: April 9, 2026

Coa ("we," "us," or "our") operates the website getcoa.ai and the Coa platform (the "Service"). This Privacy Policy describes how we collect, use, disclose, and protect your personal information when you use our Service.

1. Information We Collect

Information You Provide Directly

  • Account information: Email address (required), name, role, industry, and career goals (optional), collected during signup and onboarding.
  • Conversation content: Messages you send during coaching and learning sessions.
  • Voice input: If you use the voice input feature, audio recordings are sent to a third-party transcription service. Audio is not stored after transcription — only the resulting text is retained.

Information Collected Automatically

  • Usage data: Pages visited, features used, learning progress, session activity, and interaction patterns, collected via our analytics provider.
  • Device and browser information: Browser type, operating system, device type, screen resolution, and similar technical data.
  • Cookies and similar technologies: We use cookies, local storage, and tracking pixels to maintain your session, analyze usage, and measure advertising performance. See Section 6 for details.

Information from Third Parties

  • Google: If you sign in with Google, we receive your email address and profile name from Google via OAuth.

2. How We Use Your Information

We use the information we collect to:

  • Provide the Service: Power AI coaching and learning sessions, track your skill progress, and personalize content based on your role, industry, and goals.
  • Communicate with you: Send email sequences related to skills you're learning, and respond to support inquiries. We track whether emails are delivered, opened, and clicked to improve our communications.
  • Improve the Service: Analyze usage patterns to improve features, fix bugs, and understand how people learn.
  • Measure advertising: Track the effectiveness of our advertising campaigns (e.g., whether someone who clicked a LinkedIn ad created an account).

We do not sell your personal information.

3. How We Share Your Information

We share your information with the following third-party service providers, solely to operate and improve the Service:

ProviderWhat They ReceivePurpose
AnthropicMessages you send during sessions, contextual information (role, industry, goals), and skill contentPowers the AI coaching and teaching experience. See Anthropic's Privacy Policy.
GroqAudio recordings (voice input only)Transcribes voice input to text. See Groq's Privacy Policy for their data handling practices.
SupabaseAll account data, conversation history, learning progressDatabase hosting and user authentication
PostHogUsage events, user properties, device informationProduct analytics
ResendEmail address, email content, delivery and engagement data (opens, clicks)Email delivery and engagement tracking
LinkedInConversion events (no personally identifiable information is sent directly)Advertising measurement via the LinkedIn Insight Tag
GoogleOAuth authentication tokensEnables Google sign-in
VercelRequest data (IP address, headers)Application hosting and delivery

We may also disclose your information if required by law, to protect our rights, or in connection with a merger, acquisition, or sale of assets.

4. Data Retention

We retain your personal information for as long as your account is active. If you delete your account, we will delete your data within 30 days. Some data may be retained longer if required by law or for legitimate business purposes (e.g., resolving disputes or enforcing our terms).

5. Your Rights and Choices

Depending on where you live, you may have the following rights:

  • Access: Request a copy of the personal data we hold about you.
  • Deletion: Request that we delete your account and associated data. To delete your account, email us at nate@getcoa.ai.
  • Correction: Request that we correct inaccurate information.
  • Opt out of marketing emails: Every email we send includes an unsubscribe link. You can opt out at any time.
  • Opt out of analytics: You can use browser settings or extensions to block analytics tracking.

For residents of the European Economic Area (EEA): You have the right to access, rectify, erase, restrict processing, data portability, and object to processing of your personal data under the General Data Protection Regulation (GDPR). Our legal basis for processing is your consent (for optional data and cookies) and legitimate interest (for providing and improving the Service).

For California residents: Under the California Consumer Privacy Act (CCPA), you have the right to know what personal information we collect, request deletion, and opt out of the sale of personal information. We do not sell personal information.

To exercise any of these rights, contact us at nate@getcoa.ai.

6. Cookies and Tracking Technologies

We use the following cookies and similar technologies:

Essential

  • Supabase authentication tokens: Maintain your login session. These are required for the Service to function.

Analytics

  • PostHog cookies: Track usage patterns and product analytics. These help us understand how people use the Service so we can improve it.

Advertising

  • LinkedIn Insight Tag: A tracking pixel from LinkedIn that fires when you visit our site and when you take certain actions (creating an account, starting a session). This helps us measure whether our LinkedIn advertising is effective. The Insight Tag sets a LinkedIn browser cookie. LinkedIn may use this information for its own purposes as described in LinkedIn's Cookie Policy.
  • Local storage (li_engagement_tracked): A flag stored in your browser to prevent duplicate conversion tracking.

Managing Cookies

You can control cookies through your browser settings. Most browsers allow you to block or delete cookies. Note that blocking essential cookies may prevent you from using the Service. You can opt out of LinkedIn's use of cookies for ad targeting at LinkedIn Ad Preferences.

You can also directly. This will prevent PostHog from collecting data in this browser.

7. International Data Transfers

Our Service and all third-party providers listed in Section 3 are based in the United States. If you are located outside the United States (including in the EEA), your data will be transferred to and processed in the United States. By using the Service, you consent to this transfer.

8. Security

We take reasonable measures to protect your personal information, including encryption in transit (HTTPS), secure authentication, and access controls. However, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.

9. Children's Privacy

The Service is not directed at anyone under the age of 16. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us at nate@getcoa.ai and we will delete it.

10. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you by posting the updated policy on this page and updating the "Last updated" date. Your continued use of the Service after changes are posted constitutes your acceptance of the revised policy.

11. Contact Us

If you have questions about this Privacy Policy or your personal data, contact us at:

Email: nate@getcoa.ai
Website: getcoa.ai