Privacy & data practices
This notice is specific to the Utah Resource Navigator and supplements the official Utah State Bar Privacy Policy. It describes what this website actually does today. Where the two documents overlap, the official Bar policy governs.
No accounts, no profiles
The public site has no sign-up and no user accounts. It does not ask for your name, address, date of birth, case number, immigration status or income. Your county, issue type and language choice are stored only in your own browser so you do not have to answer twice; clearing site data removes them.
Usage counting
The site counts a small, fixed list of coarse actions so the program can see which parts of the directory are used. Each record contains exactly three values: an event name from this list ( page_view, map_click, chatbox_open, chatbox_message_sent, pdf_download, legal_category_click, lawyer_referral_click, other_cta_click, issue_selected, resource_reach, no_local_results), a page path from this list (/, /renters-rights, /privacy, /security or other), and a random session ID.
The session ID is generated at random, kept only in your browser's per-tab session storage, and expires and is replaced within 24 hours. It is not linked to you and cannot be used to recognise you on a later visit.
The site does not record:
- your IP address or any geolocation
- a persistent visitor or device identifier
- the page you came from, referrers or campaign (UTM) tags
- your browser, operating system, device type or screen size
- query strings or anything you typed
- the text or selector of anything you clicked, or where you clicked
- which outbound link or phone number you followed
Your browser never writes to the database directly. Every record goes through a single server endpoint that rejects unknown event names, unknown paths, extra fields and oversized requests, and that rate-limits submissions.
The Quick Exit button is deliberately not instrumented. Leaving the site is never recorded.
Retention: 30 days
Individual usage-count records and individual search submissions are deleted once they are more than 30 days old. This is enforced in the database itself by a scheduled daily deletion job, not by a manual process. Administrators can also run the same deletion on demand; it is safe to repeat and removes exactly the same records.
Before each deletion the program updates monthly totals. Those totals are plain counts - for example “how many searches happened in March” - and contain no session IDs and no record-level detail.
The deletion job touches only the usage-count tables and the search-submission table. It never touches the resource directory, county data, translations or administrator accounts.
Chat text is never retained by this application. Messages you send to the AI navigator are not written to this program's database at all.
The AI navigator
The AI navigator is a routing tool, not a lawyer and not legal advice. When you send a message, the text of that message leaves your device: it is sent to this site's server and then to an AI model provider so a reply can be generated. Do not type names, addresses, case numbers, immigration status, medical details or anything else you would not want transmitted.
This application does not save your chat messages to its own database. It counts only that a message was sent.
What the AI model provider does with the text once it is received is governed by that provider's terms, not by this page. The providers in that path are listed below.
Search submissions
When results are shown, the site records the county, issue type, language filter and deadline filter that produced them, with no identifier attached, so the program can see which counties and issues need more resources. These records are deleted after 30 days as described above.
Technical service chain
Pages load only assets served from this site. There is no advertising network, no social media pixel and no third-party analytics service. Print, copy and PDF download all run in your browser; the PDF is never uploaded. “Share by email” opens your own email app - this site does not collect an email address for that action.
The technical services that handle traffic or data for this Navigator today are:
- Lovable - the project platform and the AI gateway that forwards chat messages to the model. Privacy documentation.
- Google Gemini - the AI model that generates navigator replies. Gemini API terms.
- Supabase - the hosted database and the administrator authentication service. Privacy policy.
- Cloudflare - the runtime and hosting layer that serves the site. Privacy policy.
[The Utah State Bar has reviewed the data-handling terms of each provider listed above. Chat messages are not used to train AI models. — CONFIRM BEFORE LAUNCH]
Requests and questions
Because no record identifies you, the program generally cannot locate “your” data to retrieve or delete it.
Questions about this page or about privacy generally can be sent to communications@utahbar.org, the Utah State Bar communications address. Privacy details are published on the Utah State Bar Privacy Policy. General Bar contact information is on the Utah State Bar contact page.