Privacy
Summary
Probandle has no advertising and no cookies. Finished games are counted, with the date of the case, the result and the number of guesses. Nothing in the count identifies you. If you play without an account, your games, your record and your settings stay in your browser. If you sign in with Google, your results are also stored with your account, so your streaks and statistics are the same on every device.
What is stored in your browser
The site keeps four items in your browser's local storage:
- the case you are playing (
probandle:followed by the case id). Opening a new day's case clears the previous one, though a case started from the archive can sit beside it until you next open the day's case. - your record (
probandle:results): your results by date, from which your streaks and guess distribution are calculated - your theme (
probandle:theme) - whether you have seen the how-to-play note (
probandle:howto-seen)
Signing in adds the session that keeps you signed in, under sb-…-auth-token, and a short-lived key beside it while the sign-in is in progress. Signing out removes both.
Clearing the site's data in your browser deletes all of these, and unless you have signed in there is no other copy of your record.
What is stored with an account
An account is optional. It stores your results so that your streaks and statistics are the same on every device, and because signing in uses Google, Probandle never receives or stores a password.
With an account, two things are stored on a server:
- your sign-in record: the provider you signed in with (Google), the ID it uses for you, your email address, and the display name and picture it sends
- your results, one row per case: the date of the case, whether you won or lost, the number of guesses, the day you played it, and the time the row was saved
When you first sign in, the record already in your browser is copied to the account, so results from before you signed in are kept.
Both are stored with Supabase, on a project in Frankfurt, in the European Union, under Supabase's standard data processing addendum. Supabase publishes its own list of sub-processors.
Downloading and deleting your data
Both are done from the account dialog (the person icon in the masthead), with no email or waiting period. Download my results saves your record as a JSON file, and Delete my account removes the account and every result stored with it, immediately and permanently, while the copy in your browser stays. For anything else, write to privacy@probandle.com.
What the hosts see
Probandle is hosted on Netlify, and Supabase stores accounts and the count of finished games. Both see the IP address of each request and keep it in their server logs. Probandle itself adds no tracking pixels or third-party scripts, and even the fonts are served from probandle.com.
The reveal card links to Orphanet, OMIM, MONDO, GeneReviews and PubMed, which have their own privacy policies.
Who is responsible
Probandle is run by Sander Lamballais, who is the data controller for the data described on this page; Netlify and Supabase process it on his behalf. Questions, including requests under the GDPR, go to privacy@probandle.com.
When what is stored changes, this page is updated first and the date below moves with it.
Last updated 14 September 2026.