Privacy Policy

Last Updated: January 23, 2026

🔒 Privacy-First Design
Privacy Summary: OriginSpotter is designed with your privacy in mind. We only collect data essential to provide our service. Product origin data is processed locally on your device. We never sell your personal information to third parties.

1. Introduction

OriginSpotter ("we", "our", or "us") operates the OriginSpotter Chrome extension and website (originspotter.com). This Privacy Policy describes how we collect, use, protect, and share information when you use our services.

By using OriginSpotter, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies, please do not use our services.

2. Data We Collect

2.1 Account Information

When you sign in using Google OAuth, we receive:

2.2 Subscription Information

Note: Credit card details are processed directly by Stripe and are never stored on our servers.

2.3 Usage Statistics

2.4 Amazon Product Data (Local Processing Only)

When you visit an Amazon product page, the extension reads:

Important: This data is processed entirely on your local device and cached using Chrome's local storage. It is NOT transmitted to our servers.

Data Type Collected Stored On Purpose
Email & Name Yes Our Servers Account identification
Subscription Status Yes Our Servers Access control
Product View Count Yes Local + Servers Usage limits
Product Origin Data Yes Local Only Core functionality
Browsing History No
Payment Details No Stripe Only

3. Data We Do NOT Collect

We are committed to minimal data collection. We explicitly do NOT collect:

4. How We Use Your Data

We use collected information solely for:

We do NOT use your data for:

5. Data Storage & Security

5.1 Local Storage

Product origin data and user preferences are stored locally on your device using Chrome's Storage API. This data remains on your device and can be cleared at any time through the extension's "Clear Cache" function.

5.2 Server Storage

Account information (email, name, subscription status) is stored on secure servers hosted on Render.com with:

6. Third-Party Services

We use the following third-party services to operate OriginSpotter:

Service Purpose Data Shared Compliance
Google OAuth User authentication Email, name, profile picture OAuth 2.0, Google Privacy Policy
Stripe Payment processing Payment details (direct to Stripe) PCI-DSS Level 1
Render.com Backend hosting Account data SOC 2 Type II
Vercel Website hosting None (static hosting) SOC 2 Type II

Each service has its own privacy policy. We encourage you to review them.

7. Data Sharing

We do not sell, trade, or rent your personal information to anyone.

We may share limited information only in these specific circumstances:

8. Your Rights

You have the following rights regarding your data:

To exercise these rights, contact us at privacy@originspotter.com. We will respond within 30 days.

9. Data Retention

10. Children's Privacy

OriginSpotter is not intended for use by children under 13 years of age. We do not knowingly collect personal information from children under 13. If we discover that a child under 13 has provided us with personal information, we will delete it immediately. If you believe a child has provided us with their data, please contact us at privacy@originspotter.com.

11. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence, including the United States. These countries may have different data protection laws. When we transfer data internationally, we implement appropriate safeguards including:

12. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act:

We do not sell personal information. To exercise your CCPA rights, contact privacy@originspotter.com.

13. European Privacy Rights (GDPR)

If you are in the European Economic Area (EEA), UK, or Switzerland, you have rights under the General Data Protection Regulation including:

Legal Basis for Processing: We process your data based on:

14. Policy Changes

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons. When we make material changes:

We encourage you to review this policy periodically.

15. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: privacy@originspotter.com

Website: https://originspotter.com

We aim to respond to all inquiries within 30 days.