OurPulse

Privacy policy

Last updated 7 October 2026.

OurPulse lets a person (the owner) ask a group of people (the respondents) a few questions, and shows the answers as a whole. This page says what the service stores, why, for how long, who else touches it, and how to ask about it. It is written to match what the software actually does.

Who is responsible

OurPulse at ourpulse.click is run by Niki Dimitrov, a private individual in Bulgaria. For anything on this page, write to [email protected].

For the questions an owner asks and the answers they collect, the owner decides what is asked and who gets the links; OurPulse processes that data on the owner's behalf. For owner accounts and the running of the service, OurPulse is the controller.

Owners

To create pulses you sign in with Google. OurPulse stores:

Respondents

You do not need an account to answer. What is stored depends on how the owner set up the pulse.

Pulses open to anyone with the link

Pulses that require Google sign-in

Free-text answers

Whatever you type into a text question is stored as is. If you write something that identifies you or another person, it is kept with the answers and shown to the owner and to anyone the owner shares the results or report link with.

Cookies

CookieWhoPurposeLifetime
SessionOwners, and respondents on sign-in pulsesKeeps you signed in.30 days
Sign-in stateAnyone signing inProtects the Google sign-in round-trip.10 minutes
One per pulseRespondents on open pulsesBlocks a second answer from the same browser.1 year

Every cookie is needed for the service to work; none is used for analytics, advertising or tracking across sites, and no third-party cookies are set. That is why there is no cookie banner.

Your browser's local storage keeps small preferences such as the speech language you picked. It never leaves your browser.

What OurPulse does not do

Who else processes data

OurPulse runs on services provided by other companies. Each acts on OurPulse's instructions and sees only what is needed for its part.

ProviderWhat forWhat it sees
Cloudflare, Inc.Runs the application and the database; counts page views on the landing site; routes mail to [email protected].Everything stored above, plus request logs (IP address, URL, time) kept briefly for security and debugging, and aggregate page-view counts for the landing site. The database lives in Cloudflare's network, which has data centres inside and outside the European Union.
Google LLCSign-in with Google.That you signed in to OurPulse, under Google's own privacy policy. Nothing else on the pages loads from Google; the fonts are served from ourpulse.click.
OpenRouter, Inc. and the model provider it routes toTurning an owner's description into a draft pulse.The owner's description text, time zone and local time, for the duration of the request. OurPulse asks OpenRouter not to use it for training; the model provider's own terms apply.
GitHub, Inc.Serves this website (the pages at ourpulse.click other than the app itself).Request logs, under GitHub's privacy statement.

Some of these companies are outside the European Economic Area. Transfers rely on the EU–US Data Privacy Framework where the company is certified, and otherwise on the European Commission's standard contractual clauses in the providers' terms.

How long data is kept

Your rights

Under the GDPR you can ask to see the data held about you, to have it corrected or deleted, to restrict or object to its processing, and to receive it in a portable form. You can also complain to a supervisory authority; in Bulgaria that is the Commission for Personal Data Protection (cpdp.bg).

If you are an owner

If you are a respondent

Because of how answers are stored, OurPulse usually cannot find yours:

The practical route is to ask the owner who sent you the link; they can remove a single response from their results page, by name on a named or open pulse, or by the time you answered on an anonymous one. If you do not know who the owner is, or they do not answer, write to [email protected] with the pulse link and we will contact the owner or remove what can be identified.

Security

All traffic is over HTTPS. API keys are stored hashed. Pushed reports are served from a page that cannot run scripts or load outside resources. The one-way token for sign-in pulses is written in the same database transaction as the answer and is never joined to it.

Children

OurPulse is not aimed at children under 16. If you believe a child's data ended up in a pulse, write to the address above.

Changes

When this page changes, the date at the top changes and the previous version stays in the site's history on GitHub. A change that matters to owners is announced on their account page.

Home Terms of service [email protected]