Privacy
Short version: your inventory lives on your computer, and a copy of it is kept on your account so an accidental delete can be undone. We hold that copy, your email and your credit balance.
Where your items live
The copy that counts is the one in your browser. Every item you scan — names, stats, prices, notes, quantities, sales — is stored locally by the extension, and that is the copy it reads and writes. Nothing here reaches into it, and an outage here cannot touch it.
A backup of it is kept on your account. While you are signed in, the extension sends a copy of that item data to us about a minute after any change, so a wiped browser or an accidental delete can be undone from Settings. We keep the last five versions, at most one every four hours, and drop the oldest as new ones arrive. It is item data only — the same names, stats, prices, notes and sales — never screenshots, and nothing else on your machine.
Signing out stops new ones being sent, and the versions already saved stay until the account does. Deleting your account deletes them with it, on the spot and without going through us — the button is at the bottom of your account page.
What we hold
- Your email address. Used to sign you in, to send a verification link, and to contact you about your account or a payment problem. Never sold, never used for marketing without you asking.
- Your password, hashed. Stored as a salted scrypt hash. We cannot read it, and neither can anyone who obtains a copy of our database.
- Your credit ledger. Every credit added or spent, with a date and a reason. A scan also records the name of the item it read — the name only — so that a charge says what it was for. This is what lets you audit your own balance.
- Who invited whom. If you signed up with a friend's link, or someone signed up with yours, the two accounts are linked so that purchases can pay out invite credits. The account that sent the link sees how many people joined and how many credits it earned, never who they are.
- A card identifier for each purchase. Stripe gives every card an identifier that is not the card number and cannot be turned back into one. We keep it with each purchase and use it for one thing: noticing one card paying on both sides of an invite, or on two accounts the same person invited.
- A one-way fingerprint of addresses that have had free credits. Not the address itself: a salted hash of it, which cannot be turned back into an address. It stops the free starter credits being collected over and over by deleting an account and signing up again, and it is the one thing that outlives a deletion.
- A backup of your item data. The last five versions of what the extension is holding — names, stats, prices, notes, quantities and sales — pushed automatically while you are signed in, so a mistake can be undone. Never screenshots. Deleted with your account.
- Messages you send us. If you use the support form, we receive what you wrote, the address you gave for the reply, which browser you're using and, if you're signed in, your account's email and credit balance. It arrives as an email in our support inbox and is used only to answer you.
- Server logs. Ordinary request logs, kept briefly for debugging. They name the email address on things like sign-ups, purchases and support messages, and record what a scan cost — never what was in a screenshot or a message.
Screenshots
When you scan a screenshot, the image is sent to our server, which forwards it to Anthropic to be read, and returns the text. We never store the image. Of the text, the item's name goes onto your credit ledger so that a charge says what it was for; the rest goes straight back to your browser, and reaches us again only in the backup described above. Anthropic's handling of the image is governed by their commercial terms, under which submitted content is not used to train their models.
Practically: crop to the tooltip where you can. The extension does this automatically, but a full-screen screenshot may include whatever else was on your screen.
Payments
Payments are handled entirely by Stripe. Card details are entered on Stripe's own page and never touch our server or this website. We keep a record that a payment succeeded: the amount, which pack, Stripe's reference for the payment, and its identifier for the card described above — nothing else.
Who else is involved
- Anthropic — reads the screenshots you submit.
- Stripe — processes payments.
- Fly.io — hosts the server and its database.
- Resend — sends our email: verification and reset links, and messages from the support form to our own inbox.
- ImprovMX — forwards mail sent to our addresses, support included, to the inbox we read.
We do not use analytics, advertising, tracking pixels, or third-party cookies. This site sets no cookies at all. Your sign-in is kept in your browser's local storage and is sent only to us, and if you arrive through an invite link, its code is kept there for up to 30 days so it still applies when you sign up.
Deleting your account
Do it yourself, at the bottom of your account page. It asks for your password, and then removes the account, its ledger, its saved backups, its invite links and purchase records, and every signed-in session immediately — not queued, and not something we action for you. Unused credits are forfeited on deletion, and the fingerprint above stays: the same address can sign up again, but the free starter credits are once per address. Records we are required to keep for tax or accounting purposes are retained for as long as the law requires and no longer. If you cannot get to the page, send a request through the support page using the address on the account and we will do it within 30 days.
Children
This service is not directed at children under 13, and we do not knowingly hold data about them.
Changes
If this policy changes in a way that affects what we collect or who we share it with, we will email account holders before it takes effect.
Last updated 14 September 2026. Questions? Contact support.