← Back to Archivist

Terms & Privacy

Last updated August 20, 2026

Terms of Service Privacy Policy

Terms of Service

Archivist is a personal Magic: The Gathering collection tracker built and operated by Kevin Orozco. It's currently an invite-only beta - access requires a sign-in from an approved email address, either an existing invite or the private beta signup flow.

The service

Archivist lets you catalog your card collection, build and analyze decks, and use AI-assisted features (card explanations, deck suggestions, and similar) built on top of publicly available Magic card data. It's a hobby project, not a commercial product, and is provided as-is with no uptime or accuracy guarantee. Card pricing and rules data come from third-party sources (see Privacy Policy below) and may be delayed, incomplete, or wrong.

AI-generated content

Card explanations, deck suggestions, and similar features are generated by an AI model (see Privacy Policy - Anthropic) and can be inaccurate, outdated, or just wrong - including about card rules, legality, or pricing. Don't treat AI output as a substitute for checking the official Comprehensive Rules or Oracle text for anything that matters (deck legality for an event, a real-money trade, etc.).

Your account

You're responsible for the activity on your account and for keeping your sign-in credentials secure. Don't share your account, attempt to access another user's data, or use the service in a way that disrupts it for others (including automated abuse of the bulk-import or AI features).

Your content

Data you enter - your collection, decks, notes, feedback, and roadmap comments - stays yours. It's used only to run the service for you (and, for feedback/roadmap comments, to let Kevin read and respond to them). It isn't sold or shared beyond the subprocessors listed in the Privacy Policy.

Changes and termination

Since this is a small beta, features can change or be removed without notice, and access can be revoked at any time (most likely for abuse or if the beta winds down). These terms may be updated as the service evolves; material changes will be reflected here with an updated date above.

Contact

Questions about these terms: kevin@heirloom.today.

Privacy Policy

This section explains what Archivist collects, why, and who else it passes through on the way.

What's collected

  • Account info: your email address (via Google sign-in or email/password), and a username you can set.
  • Collection & deck data: the cards, quantities, conditions, and decks you add, plus any notes or tags you attach to them.
  • Feedback: the text (and optional screenshot) you submit through "I wish I had...".
  • Roadmap comments: comments you post on the public Roadmap tab, along with the email tied to your account.
  • Usage metadata: which AI features you use, token counts, and estimated cost - not the actual prompts or AI responses.
  • Basic technical data: standard request logs (e.g. IP address, timestamps) generated by Cloudflare while serving the app, used only for security and abuse monitoring.

Why it's collected

Solely to run the app for you: storing and displaying your collection, powering AI-assisted features, letting you report bugs/ideas and see them acknowledged, and keeping the service secure and within reasonable usage limits.

Who it's shared with (subprocessors)

ServiceWhat it seesWhy
SupabaseYour account and all app dataDatabase, authentication, and file storage backend
Anthropic (Claude)Card/deck context relevant to the specific AI feature you use (not your account info)Powers AI explanations and deck suggestions
ScryfallCard names/set codes you look up or import (no account info)Public card data and images
LinearYour account email and message text, only when you post a roadmap commentLets Kevin read and reply to roadmap feedback in his existing task tracker
CloudflareStandard request metadata for all trafficHosting, and bot protection (Turnstile) on the beta signup form

None of these use your data for their own advertising or model training beyond their standard provider terms, and none of them are paid to receive your data beyond the ordinary cost of running the service.

Data retention

Your data is kept for as long as your account is active, plus historical records (like price snapshots and import/audit history) that let the app show trends over time. It's deleted when your account is deleted (see below).

Account deletion

To delete your account and all associated data - collection, decks, feedback, usage history, and your login itself - email kevin@heirloom.today from your account's address. Deletion is a cascading, permanent removal across every table tied to your account and can't be undone, so it's handled by request rather than as a self-serve button for now.

Security

Data is stored with Supabase's row-level security enforcing that you can only read and write your own data (aside from Kevin's own admin access, used for support and moderation). Traffic runs over HTTPS.

Contact

Questions about this policy or your data: kevin@heirloom.today.