Flex
$5.49 per month. The subscription renews every month until you cancel.
You pay at checkout. There is no trial.
Faust Academy
How Faust uses personal data, who receives it, how long it is kept and what rights you have.
Controller: YARKEY LIMITED. Controller contact: support@faustacademy.com.
DPO decision: No DPO is appointed; privacy enquiries use support@faustacademy.com. Complaint contact: support@faustacademy.com.
Each implemented data flow is represented by a structured purpose, data-category, legal-basis, recipient, transfer, retention and rights fact with an evidence reference.
Faust uses the first-party cookies and browser storage listed below. Authentication, security, guest allowance, onboarding and exam-date storage can operate without analytics consent. Faust currently presents no analytics choice during normal browsing, so a visitor without an existing consent choice loads no third-party analytics or advertising provider and creates no browser-side measurement storage. Faust’s own aggregate funnel uses no cookie, local storage, session storage or unique analytics identifier.
Faust counts a closed list of landing, practice, signup, offer, checkout and paid-activation steps in its own Supabase database so it can find abandonment points and improve acquisition relevance. The browser templates the route before transmission, and the server reduces every accepted occurrence at write time to a UTC day, a closed event and route, external or unknown traffic class, coarse acquisition channel, bounded product dimensions and an integer count.
A landing URL and referrer may be inspected transiently to choose paid search, organic search, campaign or unattributed; those raw values are then discarded. The aggregate stores no IP address, user agent, full URL, query or referrer, click or campaign identifier, analytics visitor identifier, account, guest or session identifier, email, answer, prompt, content or free text. Internal and test-channel traffic is excluded. The coarse channel and one-time milestone receipts can remain with an existing profile, guest identity, session or subscription so signup and paid activation survive authentication and Stripe redirects without a browser identifier.
This limited first-party processing does not load an outside measurement provider and does not depend on an optional analytics choice. Its structured Article 13 record states the legitimate-interest basis, retention criteria, recipients and Article 21 objection right. Optional PostHog, Google and Meta measurement remains off unless a valid consent choice already exists.
Faust currently presents no analytics choice during normal browsing. Optional PostHog EU Cloud, Google Analytics 4, Google Ads and Meta Pixel remain off for visitors without an existing valid consent choice. If such a choice exists, the traffic firewall still permits these providers only for traffic classified as external; internal and unknown traffic sends nothing to them.
PostHog receives only the typed funnel properties listed in the implemented flow, sanitized page and referrer paths, an opaque account UUID after sign-in, and masked interaction geometry. Google and optional Meta receive the limited categories stated in their implemented flows. Query values, learner answers, chat text, form values, network bodies, headers, console logs and canvas content are excluded from product replay and typed funnel events.
The storage inventory gives each browser lifetime. Provider-side retention, transfers, recipients and rights are published per structured Article 13 flow.
Learner speaking recordings are available for replay for 30 days. Expired recordings are removed by the daily cleanup job. Deleting the associated speaking data or account removes the recordings earlier. Transcripts and assessment results remain with the learning history.
Automated decision-making fact: Automated practice scoring provides learning feedback and has no legal or similarly significant effect. Retention, transfer and rights facts are published per data flow from the structured Article 13 record.
Requests use the verified privacy or complaints contact. Checkout legal consent, contract snapshots and action confirmations are immutable records; browser URL or query-string state does not change entitlement or legal state.
This notice is versioned with the checkout consent record. A changed policy or data-flow decision cannot be replayed against an existing checkout attempt.
Email support@faustacademy.com from the email address used for your Faust account, with the subject “Delete my Faust account”. You can make this request without installing the app. We verify that the account belongs to you before deleting it.
Account deletion removes your sign-in account, profile, saved practice, answers, learning progress, flashcards, tutor conversations and uploaded content. To request deletion of particular data while keeping your account, email the same address and identify the data you want removed.
Transaction records required for accounting, tax, fraud prevention or legal claims may be retained for the applicable period described in the data-flow records below. Deleting your Faust account does not itself cancel an Apple or Google subscription; cancel it in your store’s subscription settings to stop future renewals.
Purpose: account, authentication, subscription and learning persistence
Data: account identifiers, email, sessions, learning activity and billing state
Role: configured infrastructure provider
Legal basis: Contract performance and legitimate interests in secure service operation
Recipients: Supabase as authentication and database processor
Transfers: Provider locations and safeguards described in the Supabase data processing terms
Retention: Account lifetime plus deletion, fraud, tax and legal retention periods
Rights: Access, correction, export and deletion through account controls or support
Purpose: optional OAuth sign-in (Google on Faust; Apple when enabled; GitHub retained for other products)
Data: OAuth account identifiers and the profile data returned by the selected provider
Role: identity provider selected by the account holder; Supabase handles the callback
Legal basis: Contract performance when the user chooses OAuth sign in
Recipients: The OAuth provider selected by the user
Transfers: Provider locations and safeguards in the selected provider terms
Retention: Account lifetime and provider controlled retention
Rights: Disconnect the provider and exercise account data rights through support
Purpose: Checkout, recurring billing, receipts and Customer Portal
Data: purchaser identity, address, payment and subscription identifiers
Role: payment and billing provider
Legal basis: Contract performance and legal obligations for billing records
Recipients: Stripe as payment processor
Transfers: Stripe locations and safeguards described in its data processing terms
Retention: Subscription lifetime plus statutory accounting, dispute and fraud periods
Rights: Billing access, correction and cancellation through Stripe Portal or support
Purpose: authentication, billing and durable contract/action confirmations
Data: email address, message content and delivery metadata
Role: configured email provider
Legal basis: Contract performance, legal obligations and secure account operation
Recipients: Resend and its delivery infrastructure
Transfers: Resend locations and safeguards described in its data processing terms
Retention: Delivery logs for operational, legal and abuse prevention periods
Rights: Email and account rights may be exercised through support
Purpose: chat, marking, image generation and generated practice
Data: user prompts, uploaded practice content, tool inputs and generated outputs
Role: Makora hosts DeepSeek models for tutor and assessment requests; OpenAI, Anthropic, Google, Groq or AWS Bedrock/Anthropic may process requests for other supported features and selected models
Legal basis: Contract performance when the user requests an AI practice feature
Recipients: Makora hosting DeepSeek models; OpenAI, Anthropic, Google, Groq and AWS Bedrock when the selected feature uses those services
Transfers: Provider locations and contractual safeguards configured for the selected model
Retention: Provider request retention plus Faust account and learning retention periods
Rights: Avoid optional AI features or request access and deletion through support
Purpose: transcription of speaking recordings and dictated chat input; speech generation for voice replies, speaking rooms and listening practice
Data: recorded speech, dictated chat input, text to be spoken, and the requested language and voice settings
Role: Google processes speech recordings and generates new speech audio. Speaking recordings, observations and generated exam audio are stored with the session. Dictated text is inserted into the chat composer. The cost records for voice replies and dictation contain usage and provider identifiers, not the recording or transcript.
Legal basis: Contract performance when the user starts a speaking or listening feature
Recipients: Google as the configured speech processor
Transfers: Provider locations and contractual safeguards for the selected voice service
Retention: Transient processing plus bounded account and learning result retention
Rights: Do not submit voice audio or request access and deletion through support
Purpose: dictionary, etymology, pronunciation, frequency, thesaurus and grammar-check lookups requested during chat
Data: only the word or text passage the lookup is performed on, plus the requested language; no account identifier, session identifier or authentication header is sent
Role: LanguageTool, Wiktionary, Wikimedia Commons, DWDS, OpenThesaurus and the Free Dictionary API are public endpoints called per lookup
Legal basis: Article 6(1)(b) GDPR: performing the chat tutoring the account holder asked for. The lookup only happens when the account holder requests a dictionary, etymology, pronunciation, frequency, thesaurus or grammar-check result.
Recipients: LanguageTool, Wiktionary, Wikimedia Commons, DWDS, OpenThesaurus and the Free Dictionary API, each called as a public endpoint for the single lookup requested. No account identifier, session identifier or authentication header is sent.
Transfers: LanguageTool, DWDS and OpenThesaurus are operated in the EU. Wiktionary, Wikimedia Commons and the Free Dictionary API may be served from outside the EEA. Only the word or passage looked up is sent, with no identifier attached to it, so no personal data is transferred by the request itself.
Retention: Faust stores no record of the lookup. The request is made, the result is shown in the chat, and nothing about the lookup is written to the Faust database.
Rights: Access, rectification, erasure, restriction, portability and objection under Articles 15 to 21 GDPR are exercised against Faust at the complaint contact below. Because no identifier is sent, these lookups hold no personal data at the reference services to exercise them against.
Purpose: measuring which acquisition channels and product steps lead to practice, signup and paid activation so Faust can improve conversion and advertising relevance
Data: a closed coarse acquisition channel may be attached to an existing profile, guest identity or learning session; event occurrences are reduced at write time to a UTC day, templated route, external or unknown traffic class, closed product, level, plan, interval, surface, outcome and experiment values, and an aggregate count. Landing URLs and referrers are inspected only transiently to select the coarse channel. No IP address, user agent, full URL, query value, referrer, click or campaign identifier, analytics visitor identifier, account, guest or session identifier, email, answer, prompt, content or free text is stored in the aggregate
Role: processed by Faust in its own Supabase database with no analytics or advertising recipient; internal and test-channel traffic is excluded and no browser measurement storage is created
Legal basis: Article 6(1)(f) GDPR: Faust has a legitimate interest in understanding whether acquisition and the core product path work, preventing internal tests from distorting decisions, and improving advertising relevance. The processing is limited to closed coarse values, aggregate counts and one-time milestone receipts, uses no analytics visitor identifier or browser measurement storage, and excludes internal and test-channel traffic.
Recipients: No analytics or advertising recipient. Faust processes the coarse actor fields and aggregate counts in its own Supabase Postgres instance; Supabase is already identified as the configured infrastructure processor.
Transfers: No transfer beyond the Supabase infrastructure and safeguards already stated for the Supabase data flow. Raw landing URLs, referrers and click identifiers are not forwarded to Supabase or another measurement provider.
Retention: Daily aggregate cells and their daily ingest counters are automatically deleted after 24 months. A coarse acquisition channel and one-time signup or paid-activation receipt remain only for the lifecycle of the existing profile, guest identity, learning session or subscription to which they belong.
Rights: Access, rectification, erasure, restriction and objection under Articles 15 to 18 and 21 GDPR are exercised against Faust at the complaint contact below. Article 21 objection is available because this flow rests on legitimate interest.
Purpose: consented product-funnel analytics with automatic click, heatmap, dead-click, web-vital and error capture, plus session replays of a sampled minority of advertising landings and of visits that start a practice paper or see an offer, for finding usability and conversion problems
Data: external visitors only: pseudonymous browser and session identifiers, page paths carrying campaign parameters and page-variant parameters but no other query values, referrer path, device/browser facts, automatically captured element text and interaction geometry, named funnel events, web-vital and error events, and an opaque account UUID after sign-in; every input field is masked and no network bodies, headers, console logs, canvas content, learner answers or chat text are sent; replay shows audio, video, text areas, the tutor chat and speaking and writing work areas only as empty boxes
Role: EU analytics processor at eu.i.posthog.com; replay never runs on account, auth, billing, chat, checkout, login, payment, register, settings, tutor, unlock, writing or speaking session routes; Faust currently presents no analytics choice during normal browsing, so the SDK loads only when an existing valid consent choice is present and only for traffic classified as external
Legal basis: Article 6(1)(a) GDPR: optional product analytics and replay run only after the visitor actively accepts analytics and advertising. Withdrawing or clearing that choice stops future collection.
Recipients: PostHog EU Cloud at eu.i.posthog.com acts as the product-analytics processor. It receives only the categories in the code data-flow registry and never receives learner answers, chat text, unmasked page text or form values from this integration.
Transfers: The PostHog project and ingest endpoint are in the EU region. Any support or subprocessor access outside the EEA is governed by the PostHog data-processing terms and their documented transfer safeguards.
Retention: Browser analytics state expires after 180 days. Faust must configure raw product events for no more than 12 months and session replays for no more than 30 days, then delete or aggregate them.
Rights: Consent may be withdrawn for future processing. Access, erasure, restriction, portability and complaint rights under Articles 15 to 20 and 77 GDPR are exercised against Faust at the complaint contact below.
Purpose: consented acquisition attribution, aggregate audience measurement and verified signup or purchase conversion measurement
Data: external visitors only: first-party analytics or advertising identifiers, advertising click identifiers, page and referrer paths without query values, browser/device and approximate location data, and named signup or purchase conversion events; no learner answers, chat text or form values are sent
Role: Google and, only when a Meta pixel id is configured, Meta act as measurement or advertising recipients; Faust currently presents no analytics choice during normal browsing, so neither script loads without an existing valid consent choice or for internal or unknown traffic
Legal basis: Article 6(1)(a) GDPR: Google and optional Meta measurement scripts load only after the visitor actively accepts analytics and advertising. Necessary-only visitors are not measured by these providers.
Recipients: Google receives GA4 and Google Ads measurement data. Meta receives pixel measurement data only if Faust configures a Meta pixel id. Neither recipient receives learner answers, chat text or form values from this integration.
Transfers: Google and Meta may process data outside the EEA under their applicable data-processing terms and transfer safeguards. Faust enables the integrations only under an accepted processor agreement.
Retention: The browser cookies expire as stated in the storage table: GA identifiers after 180 days without refresh and advertising identifiers after at most 90 days. User-level analytics data must be configured for no more than 14 months; non-identifying aggregate campaign totals may remain longer.
Rights: Consent may be withdrawn for future processing. Access, erasure, restriction, portability and complaint rights under Articles 15 to 20 and 77 GDPR are exercised against Faust at the complaint contact below.
Purpose: enforcing the free reading paper and chat-turn allowance for signed-out visitors
Data: a first-party guest identifier and a keyed HMAC-SHA-256 hash of the client IP address; the IP address itself is never written to storage
Role: processed by Faust in its own Supabase database and disclosed to no one; the hash is keyed so it cannot be reversed to an address without the server secret
Legal basis: Article 6(1)(f) GDPR: the legitimate interest in stopping one visitor from consuming the free allowance repeatedly. The interest is limited by never storing the address itself.
Recipients: No one. The guest identifier and the keyed hash are processed by Faust in its own Supabase database and disclosed to no third party.
Transfers: None beyond the Supabase Postgres instance already described in the Supabase data flow. The record leaves no other system.
Retention: Kept for the allowance window the limit is enforced over, then deleted. The IP address itself is never written to storage at any point.
Rights: Access, rectification, erasure, restriction, portability and objection under Articles 15 to 21 GDPR are exercised against Faust at the complaint contact below. Objection under Article 21 GDPR is available because this flow rests on legitimate interest.
Purpose: fraud prevention for the invite a friend program, based on legitimate interest: each person gets the friend week once, and no one earns weeks with their own accounts, devices, networks or cards
Data: keyed HMAC-SHA-256 hashes of the device identifier, of the network (the IPv4 address or the IPv6 /64 prefix) and of the normalized email address, plus a comparison of the SHA-256 card fingerprint hashes that Faust and Stripe already hold; the identifiers and addresses themselves are never written to storage
Role: processed by Faust in its own Supabase database and disclosed to no one; device and network marks are deleted after 45 days, unused invite clicks after 30 days and the device and network hashes on a referral after 90 days; the email hash stays so that each person gets the friend week once
Legal basis: Article 6(1)(f) GDPR: the legitimate interest in giving each person the friend week once and in stopping anyone from earning weeks through their own accounts. The interest is limited by storing only keyed hashes and by short retention.
Recipients: No one. The hashes are processed by Faust in its own Supabase database and disclosed to no third party.
Transfers: None beyond the Supabase Postgres instance already described in the Supabase data flow and the card data Stripe already holds as described in the Stripe data flow.
Retention: Device and network marks are deleted after 45 days, unused invite clicks after 30 days and the device and network hashes on a referral after 90 days. The email hash stays so that each person gets the friend week once. The device cookie lasts 400 days.
Rights: Access, rectification, erasure, restriction, portability and objection under Articles 15 to 21 GDPR are exercised against Faust at the complaint contact below. Objection under Article 21 GDPR is available because this flow rests on legitimate interest.
Purpose: Remembers the currency selected for offers and checkout. A country-only IP lookup runs locally on Faust servers when no currency is selected.
Lifetime: 365 days
Purpose: Supabase Auth session. Strictly necessary: without it a signed-in request cannot be authenticated.
Lifetime: until sign-out or session expiry
Purpose: signed httpOnly identifier for a signed-out visitor so the free reading paper and chat-turn allowance can be counted. Strictly necessary for the free allowance.
Lifetime: 400 days
Purpose: set only when a visitor opens an invite link: a signed reference to that invite, so the free week reaches the new account after sign-up. The sign-in form copies it into the emailed sign-in link. Strictly necessary for the invite the visitor asked for.
Lifetime: 30 days, or until sign-in
Purpose: set only by the invite a friend program, when a visitor opens an invite link or an account shares its invite link: a signed random device identifier, so one device cannot take the friend week twice or earn weeks for its own invites. It stays after sign-out. Strictly necessary for the fraud checks of the invite program.
Lifetime: 400 days
Purpose: remembers where to return after an OAuth sign-in or reauthentication round trip. Strictly necessary.
Lifetime: 10 minutes
Purpose: binds a pending reauthentication to this session and origin before an account export or deletion. Strictly necessary security cookie.
Lifetime: 10 minutes, or until the challenge is consumed
Purpose: proof that this session reauthenticated, required to export or delete an account. Strictly necessary security cookie.
Lifetime: 5 minutes; cleared as soon as the operation completes
Purpose: binds a password recovery link to the browser that opened it. Strictly necessary security cookie.
Lifetime: 10 minutes, or until recovery completes
Purpose: lets an interrupted account deletion resume instead of leaving the account half-deleted. Strictly necessary.
Lifetime: until the deletion completes
Purpose: records that the onboarding coach marks were completed or skipped, so they are not shown again.
Lifetime: 400 days
Purpose: holds the export or deletion request across an OAuth reauthentication redirect so it can resume on return. Cleared on use and never sent to a server.
Lifetime: until the browser tab is closed
Purpose: the exam roster a visitor entered and whether they dismissed the request for an exam date, so the countdown works before sign-up and the card asks once rather than after every paper. A signed-in account stores the roster in its profile as well.
Lifetime: until the visitor clears site data
Purpose: records whether the visitor accepted analytics and advertising or chose necessary storage only. Measurement providers read this one shared choice.
Lifetime: until the visitor changes the choice or clears site data
Purpose: after consent only, keeps PostHog pseudonymous session continuity and its local opt-in state. It is never created for internal or unknown traffic.
Lifetime: analytics state expires after 180 days; the opt-in record remains until the choice changes or site data is cleared
Purpose: under the shared analytics choice, links offer triggers, paper progress counters, checkout loading, wallet availability, validation codes and navigation. External traffic is delivered through Faust to PostHog EU; internal verification is excluded. It contains no answers, contact details, payment fields or provider client secrets.
Lifetime: the current tab session, with a 24 hour inactivity limit; removed when analytics consent is withdrawn
Purpose: after consent only, distinguishes browsers and preserves Google Analytics session state for aggregate measurement.
Lifetime: 180 days from the first consented visit; it is not refreshed
Purpose: after consent only, attributes an advertising click and a verified signup or purchase to the campaign that brought the visitor.
Lifetime: up to 90 days
Country detection runs on our server using GeoLite2 data created by MaxMind, available under CC BY-SA 4.0. Your IP address is not sent to MaxMind.
Word pronunciation guides use German dictionary data from Wiktionary contributors, devio-at and open-dict-data. The data is adapted into approximate English-readable sound guides. Source, changes and CC BY-SA license.
See Terms and Impressum for contract and operator details.
Official reference: GDPR Art. 13.
You can buy any plan below with a card through Stripe. Practice at €0 needs no payment. Guests and members get one free paper each for reading, listening, writing and speaking. Signing up keeps the parts already used and does not add papers. Free papers do not refill. Guests and accounts also get 20 AI turns in total, which never refill, and single-word lookups stay at €0.
$5.49 per month. The subscription renews every month until you cancel.
You pay at checkout. There is no trial.
$29.99 once for 12 weeks. Access ends after that time and does not renew.
You pay at checkout. There is no trial.
Prices are in euro. Stripe shows the final amount and any tax before you pay. You can cancel a subscription in the public cancellation flow or in Stripe Customer Portal. It stays active until the end of the period you paid for, unless a separately verified statutory withdrawal decision applies.
Fair-use caps pause practice until the next reset. There are no overage charges.
Use Stripe Customer Portal to change your plan, billing schedule or payment method.
Commercial details last updated 2026-08-08.
These details apply to Faust paid plans. Contact
German exam practice for DTZ A2 to B1; TestDaF Papierformat; telc A1 to C2; DTB B2; ÖSD B2; DSD I; ÖIF A2, B1; Goethe A1 to C2.
Start a practice paperPractice papers
Goethe A1Goethe A2Goethe B1Goethe B2Goethe C1Goethe C2DTZ A2 to B1TestDaF Papierformattelc A1 to C2DTB B2ÖSD B2DSD IÖIF A2 to B1Ratgeber
ÜbungsprüfungenEinstufungstestModelltests A1 bis C2Übungstest-BibliothekWortzähler SchreibenPunkte-RechnerB1 Übungstest als PDFGoethe oder telcDTZ A2 bis B1TestDaF B2 bis C1Termin RadarPrüfung anmeldenPrüfungskostenFaust is independent and not affiliated with or endorsed by Goethe-Institut, telc, g.a.s.t. (DTZ / TestDaF) or ÖSD. All names and logos are the trademarks of their owners. Faust does not issue certificates or official exam results.