Legal
Privacy Policy
Last updated August 10, 2026.
This page explains what Sheet2Chart collects when you use the product, what leaves our servers and where it goes, who inside our company can see it, and how to have it deleted. We've written it in plain language and tried to describe what the product actually does rather than what a generic policy would say.
What we collect
When you create an account and use Sheet2Chart, we hold:
- Your account email address and password (stored as a salted hash, never in plain text).
- The files you upload (CSV or Excel), and the data derived from them: column profiles, the dashboard we build, and a local database file used to answer your questions.
- The questions you type into the chat, and the answers and "receipts" we generate for them.
- Basic product-usage events (see "Analytics" below).
This section describes what we hold for an account holder. If you're looking at a showcase dashboard, or a dashboard someone shared a link with you, without signing in yourself, none of the above applies to you — you get only an anonymous analytics cookie (see "Cookies" below), nothing else on this list.
What we send to our AI provider
Sheet2Chart uses a third-party large language model (an OpenAI-compatible API) to propose dashboards, write insight text, and answer chat questions. To do that well, we send it more than just column names — we want to be direct about this:
- Column metadata always. Names, inferred types, and statistics (row counts, distinct/missing counts, numeric and date ranges).
- A bounded sample of your actual values. When we're first proposing a dashboard, we send the AI a small sample of real values from your file — up to five example values per column, and up to five complete rows — so it can understand the shape of your data. This is not your whole dataset, but it is real data from it, not a synthetic placeholder.
- Query results. When you ask a question, the calculation we run against your data and the aggregate results it returns are shown to the AI so it can write a plain-language answer.
- Any note you type alongside an upload, to steer how the dashboard is built.
That name-based hold-back only applies to Excel workbooks, where our AI agent can separately request example values for a specific table's columns — there, we automatically withhold values for any column whose name looks sensitive (things like SSNs, card numbers, emails, phone numbers, addresses, dates of birth). This is a best-effort filter, not a guarantee — a column named notes that happens to contain email addresses would not be caught, and it only runs at all when that request is allowed to see real values in the first place. It does not apply to the bounded sample described above for a CSV file: those up-to-five example values per column and up-to-five full rows are sent to the AI regardless of what any column is named. If your file contains data you would not want a third-party AI service to see, please remove or mask it before uploading, or don't upload it.
Analytics
We use PostHog, a third-party analytics provider, to understand product usage in aggregate. We do not call PostHog's identify function, so analytics events are tied to an anonymous ID, not your account. In the dashboard application itself, on-page text is masked before capture and session recording is switched off; on this marketing website, PostHog's more standard page and click tracking applies. Neither surface sends your uploaded data, questions, or dashboard content to PostHog — analytics events carry only product-usage signals (e.g. "an upload started"), never file contents.
Who inside Sheet2Chart can see your data
A small number of our own staff have administrative access to the systems that run Sheet2Chart. That access lets them look up project names, uploaded filenames, and the content of chat questions and answers — mainly to debug problems and provide support. We don't browse this data for any other reason, and it is never sold or shared for marketing purposes.
Sharing a dashboard, and our showcase examples
By default, no project is visible to anyone but you. Turning on link sharing for a project is something you do yourself, and it's off unless you switch it on. Once you do, anyone holding that link can view the dashboard — no account, no sign-in — and that access does not expire on its own; if you want it to stop, turn sharing back off for that project.
The example dashboards on our public showcase page aren't uploads from a customer. They're built from our own sample datasets, run through the same dashboard engine a real upload goes through, so a visitor can see what the product produces before creating an account. AI questions are turned off on those dashboards.
How long we keep things
- Projects you've saved are kept until you delete them. Deleting a project removes the uploaded file and its derived data from our servers.
- Files you export as PDF or PPTX are stored temporarily so you can download them, and are not automatically deleted when you delete the underlying project. Email us (below) if you'd like an export removed.
- Files uploaded before you sign in (from the marketing site, before you have an account) are held for 30 minutes and then automatically deleted if you never turn them into a project.
Deleting your data
You can delete any project yourself, at any time, from within the product — this removes its uploaded file and derived data immediately. We don't yet have a self-serve "delete my account" button. To delete your account and everything tied to it, email support@sheet2chart.com from the address on your account and we'll do it by hand. See our support page for other ways to reach us.
Cookies
We use a session cookie to keep you signed in, and, where analytics is enabled, a PostHog cookie to distinguish anonymous sessions. We don't use third-party advertising cookies.
Changes to this policy
We'll update this page if what we collect or who we share it with changes, and update the date at the top when we do.
Contact
Questions about this policy or your data go to support@sheet2chart.com, or see our support page.