Privacy Policy
Last updated: February 18, 2025
1. Introduction
OdyrAI ("we", "us", or "our") is committed to protecting your personal information. This Privacy Policy explains how we collect, use, and safeguard your data when you use our platform at odyr-ai.vercel.app.
2. Information We Collect
We collect the following types of information:
- Account information: email address, username, display name, and bio when you register.
- Profile information: avatar image and PayPal email (for sellers).
- Product data: product titles, descriptions, files, images, and pricing that sellers upload.
- Purchase records: transaction history including products purchased and payment status.
- Subscription data: plan type, billing status, and subscription history.
- Usage data: pages visited, features used, and interactions with the platform.
3. How We Use Your Information
We use your information to:
- Provide and operate the OdyrAI platform.
- Process purchases and manage subscriptions.
- Send notifications about purchases, sales, and account activity.
- Enforce product listing limits based on subscription plan.
- Improve the platform and user experience.
- Detect and prevent fraud or abuse.
- Comply with legal obligations.
4. Third-Party Services
We use the following third-party services that may process your data:
- Supabase: database, authentication, and file storage. Your account and product data is stored securely in Supabase.
- Cloudinary: image hosting for product images and user avatars.
- PayPal: peer-to-peer payment processing for product purchases between buyers and sellers.
- Paddle: subscription billing for seller plans (Pro and Business). Paddle acts as Merchant of Record and processes subscription payments.
- Vercel: hosting and deployment of the platform.
Each of these services has its own privacy policy governing the data they process.
5. Data Sharing
We do not sell your personal data to third parties. We share data only as necessary to operate the platform (e.g., passing your PayPal email to payment processors for transactions you initiate, or sharing subscription data with Paddle for billing purposes). We may disclose your information if required by law or to protect our legal rights.
6. Public Information
Seller profiles (username, display name, avatar, bio) and product listings are public and visible to all users of the platform. Do not include sensitive personal information in your public profile or product descriptions.
7. Data Retention
We retain your data for as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it for legal or compliance purposes (e.g., transaction records).
8. Security
We implement industry-standard security measures including encrypted connections (HTTPS), row-level security in our database, and secure file storage. Passwords are managed by Supabase Auth and are never stored in plain text. We support two-factor authentication (2FA) for additional account security.
9. Your Rights
You have the right to:
- Access and download your personal data.
- Correct inaccurate information in your profile.
- Delete your account and associated data.
- Opt out of non-essential communications.
To exercise these rights, contact us at the email below.
10. Cookies
We use essential cookies to maintain your session and authentication state. We do not use tracking or advertising cookies. Third-party services we use (such as Paddle) may set their own cookies during checkout processes.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the updated policy on this page. Continued use of OdyrAI after changes constitutes your acceptance of the updated policy.
12. Contact
If you have questions about this Privacy Policy or how we handle your data, contact us at paintimeprojects@gmail.com.