Privacy Policy

Last updated: April 2026

1. What We Collect

We collect the following information when you use ListingService:

  • Account data: email address, name (if provided via Google OAuth)
  • Item data: photos you upload, measurements, seller notes, AI-generated listing content
  • Etsy connection data: Etsy shop ID and OAuth tokens (stored encrypted)
  • Usage data: number of AI analyses performed per month
  • Technical data: IP address (for rate limiting), browser user agent

2. How We Use Your Data

  • To provide the Service — generating listings and publishing to Etsy
  • To enforce subscription limits and prevent abuse
  • To send transactional emails (account confirmation, billing receipts via Paddle)
  • To monitor errors and fix bugs (via Sentry — no PII in error events)

3. Third-Party Services

We use the following third-party services to operate ListingService:

  • Supabase — authentication and database (EU region)
  • Cloudflare R2 — photo storage
  • Google Gemini — AI listing generation (photos and text are sent to Google's API)
  • Paddle — payment processing and billing (Merchant of Record)
  • Etsy API — publishing listings to your Etsy shop
  • Sentry — error monitoring (no personal data in error reports)

4. Photo Data and AI Processing

Photos you upload are stored in Cloudflare R2 and sent to Google Gemini for AI analysis. Google's data processing is governed by Google's Privacy Policy and their API Terms of Service. We do not use your photos to train AI models.

5. Data Retention

Your data is retained as long as your account is active. If you delete your account, your data will be removed within 30 days. Billing records are retained by Paddle per their legal obligations.

6. Your Rights

You have the right to access, export, or delete your personal data at any time. To exercise these rights, contact us via the contact form on our website. We will respond within 30 days.

7. Cookies

We use session cookies strictly necessary for authentication (managed by Supabase). We do not use tracking or advertising cookies.

8. Security

Etsy OAuth tokens are stored encrypted at rest using AES-256 (Fernet). All data is transmitted over HTTPS. We follow industry-standard security practices for a SaaS product.

9. Contact

For privacy-related questions or data deletion requests, use the contact form on our website.