Privacy Policy

Last updated: March 31, 2026

1. Introduction

ABA Notes Pro ("we," "our," or "us") operates the website abatoolsrpd.com and the ABA Tools RPD mobile application (collectively, the "Service"). This Privacy Policy explains how we collect, use, store, and protect your information when you use our Service, whether through the web or mobile app.

By using ABA Notes Pro, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use the Service.

2. Information We Collect

Account Information

When you create an account, we collect:

  • Your name and email address
  • A hashed password (we never store plain-text passwords)
  • Credit balance and transaction history
  • Referral code and referral activity

Client and Session Data

As part of using the Service, you may enter information about the individuals you serve ("clients"), including:

  • Client names and dates of birth
  • Diagnoses and behavioral information
  • Guardian contact information
  • ABC (Antecedent-Behavior-Consequence) session data
  • Generated session notes

You are responsible for ensuring you have proper authorization to enter and store this information. This data is stored in your account and is not accessible to other users.

Mobile App Data

When using the ABA Tools RPD mobile app, additional data handling includes:

  • Authentication tokens are stored securely on your device using the platform's secure storage (iOS Keychain / Android Keystore)
  • Face ID / Touch ID biometric authentication is handled entirely on-device by Apple — we never receive or store your biometric data
  • In-app purchase records and credit transactions

Usage and Technical Data

We automatically collect certain technical information, including:

  • IP address and browser type
  • Pages visited and features used
  • Device type and operating system
  • Error logs for debugging purposes

3. How We Use Your Information

We use the information we collect to:

  • Provide, operate, and maintain the Service
  • Process credit purchases and referral commissions
  • Generate session notes from your ABC data
  • Send transactional emails (purchase receipts, account notifications)
  • Respond to your support requests
  • Improve and develop the Service
  • Enforce our Terms of Service

We do not sell your data to third parties. We do not use your client session data for advertising or marketing purposes.

4. Third-Party Services

We use trusted third-party services to operate ABA Notes Pro:

  • Supabase — Database and authentication provider. Your data is stored on Supabase-managed infrastructure with encryption at rest and in transit.
  • Stripe — Payment processing. We do not store your credit card information. All payment data is handled directly by Stripe under their PCI-DSS compliance.
  • Vercel— Hosting and deployment. Our web application runs on Vercel's infrastructure.
  • OpenAI— AI-powered note generation. When you generate a session note, your ABC observation data (antecedents, behaviors, interventions — not client names or identifying information) is sent to OpenAI's API to generate clinical documentation. We do not send client names, dates of birth, or other personally identifiable information to OpenAI. Generated notes are AI-assisted and must be reviewed by a qualified clinician before use.
  • Apple (iOS App)— In-app purchases on iOS are processed through Apple's App Store. Apple collects payment information directly. We validate purchase receipts with Apple's servers to credit your account. See Apple's privacy policy for details on their data handling.

These providers may process your data as part of delivering their services. We encourage you to review their privacy policies.

5. Data Security

We take the security of your data seriously and implement appropriate technical and organizational measures, including:

  • Encryption of data in transit (HTTPS/TLS)
  • Encryption of data at rest
  • Row-level security policies ensuring users can only access their own data
  • Rate limiting to prevent abuse
  • Security headers (HSTS, CSP, X-Frame-Options)

However, no method of electronic storage is 100% secure. We cannot guarantee absolute security.

6. Data Retention

We retain your account information and session data for as long as your account is active. You can delete your account and all associated data directly from the app (Settings → Delete Account) or by contacting us at contact@abatoolsrpd.com. Account deletion permanently removes all your data, including client records, session notes, ABC data, and credit transaction history.

7. Your Rights

You have the right to:

  • Access — Request a copy of the data we hold about you
  • Correction — Update or correct inaccurate data in your account
  • Deletion — Request deletion of your account and all associated data
  • Portability — Request your data in a portable format
  • Objection — Object to certain uses of your data

To exercise these rights, contact us at contact@abatoolsrpd.com.

8. Children's Privacy

ABA Notes Pro is intended for use by licensed ABA professionals who may document sessions with minor clients. We do not knowingly collect personal information directly from children. If you enter information about minors into the Service, you represent that you have proper authorization to do so.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by posting a notice on our website or by email. Continued use of the Service after changes constitutes acceptance of the updated policy.

10. Contact Us

If you have questions or concerns about this Privacy Policy, please contact us: