Privacy Policy

Last updated: January 2025

1. Introduction

Buyer Logic ("we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard information when you use our Chrome extension and associated services.

2. Information We Collect

  • 2.1 Account Information: When you create an account, we collect your email address and display name through our authentication provider (Clerk). We do not store passwords.
  • 2.2 Usage Data: We track the number of VAT checks you perform each month to enforce usage limits. We do not log which specific items or sellers you check.
  • 2.3 Device Identification: To prevent abuse and ensure fair usage of our free tier, we collect a browser fingerprint. This fingerprint is used solely for tracking anonymous usage, NOT for advertising or cross-site tracking, stored securely as a hashed value, and deletable upon request. Legal basis: Legitimate interest (fraud prevention) under GDPR Article 6(1)(f).
  • 2.4 VAT Information: We cache seller VAT registration status obtained from public sources (eBay API, HMRC registry). This is publicly available business information, not personal data.

3. How We Use Information

We use your data to:

  • Provide VAT verification services
  • Enforce usage limits and prevent abuse
  • Process payments (via Stripe)
  • Send important service notifications
  • Improve our services

4. Data Retention

  • Account data: Retained until account deletion
  • Seller VAT status: Refreshed every 90 days, retained indefinitely
  • Item-to-seller mappings: 30 days
  • Fingerprint data (anonymous users): 90 days of inactivity

5. Payment Processing

Payments are processed by Stripe, Inc. We do not store your payment card details. Stripe's Privacy Policy applies to payment processing. See: stripe.com/privacy

6. Third-Party Services

  • Clerk: Authentication provider
  • Stripe: Payment processing
  • eBay API: VAT data source
  • Railway: Hosting provider (EU region)

7. Your Rights (GDPR)

Under GDPR, you have the right to:

  • Access: Request a copy of your data
  • Rectification: Correct inaccurate data
  • Erasure: Request deletion of your data
  • Portability: Receive your data in a portable format
  • Objection: Object to processing based on legitimate interest

To exercise these rights, email: privacy@buyerlogic.app

Response time: Within 30 days as required by GDPR.

8. Chrome Web Store Limited Use Policy

Buyer Logic's use and transfer of information received from Google APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements.

9. Security

  • All data transmitted via HTTPS/TLS encryption
  • Database encryption at rest
  • Regular security audits
  • No data sold or shared with third parties for advertising

10. Children's Privacy

Buyer Logic is not intended for users under 18 years of age. We do not knowingly collect data from children.

11. Changes to This Policy

We may update this Privacy Policy periodically. Significant changes will be communicated via email or through the extension.

12. Contact Us

For privacy-related inquiries: privacy@buyerlogic.app