Privacy Policy
How We Handle Your Data
This Privacy Policy describes how GhostOS ("we," "us," or "our") collects, uses, and protects information about you when you use ghostos.live. We believe in transparency — this document tells you exactly what we collect and why. Questions? Email ps4sprite25@gmail.com.
Section 1
Overview
1.1
GhostOS is a brand deal intelligence platform for TikTok creators. To provide our services, we collect certain information from you.
1.2
We are operated as a sole proprietorship in the United States. We are the data controller for the personal information we collect.
1.3
By using GhostOS, you agree to the collection and use of information as described in this policy.
Section 2
Information We Collect
2.1
Account information. When you create an account, we collect your name and email address via Clerk, our authentication provider.
2.2
Audit data. When you run an audit, we collect your TikTok handle, follower count, average views, engagement rate, niche, and any other information you enter.
2.3
Payment information. Payments are processed by Stripe. We do not store your credit card number or CVV — only your Stripe customer ID and subscription status.
2.4
Usage data. We collect basic usage information such as pages visited and features used to improve our service.
2.5
Communications. If you contact us by email, we retain that correspondence to help resolve your inquiry.
Section 3
How We Use Your Information
3.1
Service delivery. To generate your audit results, readiness score, rate card, and all other outputs.
3.2
Account management. To create and maintain your account, manage your subscription, and process payments.
3.3
Communications. To send transactional emails such as audit results and billing receipts. We may also send product updates — you may opt out at any time.
3.4
Product improvement. To understand how our platform is used and improve its features.
3.5
Legal compliance. To comply with applicable laws and respond to lawful requests.
Section 4
Data Storage & Infrastructure
Service
Purpose
Supabase
Database — stores your account and audit data
Clerk
Authentication — manages your login and session
Stripe
Payments — processes subscriptions securely
Resend
Email — sends transactional and product emails
OpenAI
AI — generates audit analysis and recommendations
Vercel
Hosting — serves the GhostOS web application
4.1
Each service listed above has its own privacy policy. We encourage you to review them.
4.2
Data is stored on servers in the United States.
Section 5
Data Sharing & Disclosure
5.1
We do not sell your personal data. We will never sell, rent, or trade your personal information to third parties for marketing purposes.
5.2
Service providers. We share data only with the services in Section 4 that are necessary to operate GhostOS.
5.3
Legal requirements. We may disclose your information if required by law, court order, or governmental authority.
5.4
Business transfers. If GhostOS is acquired, your data may be transferred. We will notify you before your data is subject to a different privacy policy.
Section 6
Cookies & Tracking
6.1
Session cookies. We use cookies to authenticate your session and keep you logged in. These are necessary for the service to function.
6.2
No advertising cookies. We do not use advertising, tracking, or third-party analytics cookies.
6.3
You may disable cookies in your browser, but doing so may prevent you from logging in.
Section 7
Your Rights
7.1
Access. You may request a copy of the personal data we hold about you.
7.2
Correction. You may request correction of inaccurate or incomplete personal data.
7.3
Deletion. You may request deletion of your account and data at any time. We process deletion requests within 30 days.
7.4
Portability. You may request an export of your audit data in a machine-readable format.
7.5
Opt-out. You may opt out of non-transactional emails at any time by clicking unsubscribe or contacting us.
7.6
To exercise any of these rights, contact ps4sprite25@gmail.com. We respond within 30 days.
Section 8
Data Retention
8.1
We retain your account and audit data for as long as your account is active or as needed to provide services.
8.2
If you delete your account, we will delete your personal data within 30 days, except where required by law to retain it.
8.3
Billing records may be retained for up to 7 years for tax compliance purposes.
Section 9
Security
9.1
We implement industry-standard security including encrypted data transmission (HTTPS), secure authentication via Clerk, and access controls on our database.
9.2
No method of internet transmission is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
9.3
If we become aware of a data breach affecting your personal information, we will notify you within 72 hours by email.
Section 10
Children's Privacy
10.1
GhostOS is not directed at individuals under 13. We do not knowingly collect personal information from children under 13.
10.2
If we learn we have collected data from a child under 13, we will delete it immediately.
Section 11
Changes to This Policy
11.1
We may update this policy from time to time. We will update the effective date at the top of this page when we do.
11.2
For significant changes, we will notify you by email or by displaying a prominent notice on GhostOS.
11.3
Continued use of GhostOS after changes are posted constitutes acceptance of the revised policy.
Section 12
Contact & Data Requests
For privacy questions, data access requests, or account deletion:
Email: ps4sprite25@gmail.com
Response time: We respond to all privacy requests within 30 days.