Privacy Policy
Effective August 5, 2026
Information we collect
We collect API keys and quota usage, device identifiers used for registration, IP address and user-agent information used for security and rate limiting, OAuth profile information when you sign in, and information you submit through enterprise forms. Stripe processes payment-card details; buyer.sh stores only billing identifiers and subscription status.
How we use information
We use this information to provide product search, authenticate requests, enforce quotas, operate subscriptions, prevent abuse, support users, improve reliability, and respond to enterprise inquiries. We do not sell personal information.
Service providers
We share information only as needed with infrastructure, analytics, authentication, payment, and product-search providers, including Cloudflare, Stripe, Google, GitHub, and the search provider selected for a request. These providers process data under their own terms and privacy policies.
Retention and security
We retain account and subscription records while your account is active and as needed for security, legal, and billing obligations. We use access controls, encrypted transport, secret storage, and limited-purpose identifiers, but no online service can guarantee absolute security.
Your choices
You can stop using an API key, cancel a subscription through the billing portal, or request access, correction, or deletion of personal information. Some records may be retained where required for fraud prevention, billing, or law.
Contact
Privacy requests can be sent to [email protected].