← Back
COLD CALL

Privacy Policy

Last updated August 2026

What this covers

Cold Call is a study tool for bar exam preparation. This policy describes what information we collect when you use it, why, and who else sees it. It doesn't cover any other Bluepath Software product, including this marketing site's waitlist, which only collects the email address you give it.

What we collect

Waitlist signups: if you join the waitlist on this site, we store the email address you enter and where you signed up from, so we can invite you when a spot opens.

Account info (once you have an account): your email address and a salted, hashed copy of your password — we never store your password in plain text. If you add optional contact details (phone, mailing address) in your profile, those are stored too.

Study progress: your topic history, accuracy scores, review schedule, track/subject preferences, and a log of your practice activity (mode, timestamp, score, and — for essay and outline modes — the content of that attempt). This is what lets your progress follow you across devices.

Security logs: login and signup attempts (including IP address and success/failure), and active session records, so we can detect abuse and let you see and revoke your own logged-in devices.

Usage counts: how many requests you make and roughly how much model output that involves, per day. We use this to watch for runaway usage and keep the service running for everyone — not to read or review the content of what you generate.

What we don't keep

Material you paste in to generate a question, essay, flashcard set, or outline — your own notes, a syllabus, a fact pattern — is sent to Anthropic's Claude API to produce that one response and is not saved into Cold Call's own database once the response comes back. If the resulting attempt gets logged to your history (an essay answer, an outline, an activity entry), the content of that specific attempt is what's retained — not everything you ever typed.

Who else sees it

Anthropic processes the material you submit to generate practice content, under their own API terms — we don't control how they handle it beyond that. Cloudflare hosts the application, database, and infrastructure. If you trip an unusual usage pattern, an automated alert containing your email address is sent to us via Resend, our transactional email provider. We do not sell your data, and we do not share it with anyone else for advertising or marketing purposes.

Cookies

The app uses a single session cookie to keep you signed in once you have an account. It's required for the app to function — there's no tracking or advertising cookie layer. This marketing site itself sets no cookies.

Your choices

Once you have an account, you can view your active sessions and usage from your Profile page, and sign out any device from there. To request a copy of your data, ask us to delete your account, or remove yourself from the waitlist, email us — we handle these manually rather than through a self-service control today.

Changes to this policy

If this policy changes in a way that matters, we'll update the date at the top. Continued use of Cold Call after a change means you accept the update.

Contact

Questions about this policy: daveb@bluepath.group