Privacy Policy

Last updated: April 2026

Overview

B·Stock Buddy (“we”, “our”, or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our Chrome extension and web application.

Information We Collect

We collect the following information:

  • Account Information: When you sign up, we collect your email address for authentication purposes.
  • Auction Data: When you use the extension to analyze auctions, the auction data (titles, prices, manifest information) is stored in our database associated with your account.
  • Usage Activity: For signed-in users, we record events such as auction scrapes, research link clicks, and app opens. This data is associated with your account ID and used to operate and improve the service.
  • Error and Performance Data: If you consent (where required), we collect diagnostic information through Sentry, including error stack traces, page URLs, and limited session replays. We strip your email and IP address before sending events to Sentry.

Lawful Basis for Processing (EEA / UK Users)

  • Account, auction data, and settings: processed to perform the contract you enter into when using the service (GDPR Art. 6(1)(b)).
  • Activity events: processed under our legitimate interest in operating, securing, and improving the service (GDPR Art. 6(1)(f)). You can delete this data at any time by deleting your account.
  • Error monitoring and session replay (Sentry): processed only with your consent (GDPR Art. 6(1)(a)). You can withdraw consent at any time by clearing site data in your browser.

How We Use Your Information

  • To provide and maintain our service
  • To authenticate your account
  • To analyze usage patterns and improve our service
  • To diagnose errors and performance issues (only with your consent in the EEA/UK)
  • To communicate with you about service updates

Data Storage

Auction data you analyze is stored in our database, hosted on Supabase, and associated with your account. You can delete individual auctions from the dashboard or your entire account from the Account page.

Sub-processors

We use the following service providers to operate the service. Each acts as a processor on our behalf:

  • Supabase Inc. — authentication and database hosting (United States). Privacy Policy.
  • Vercel Inc. — web application hosting and request logs (United States, with edge regions worldwide). Privacy Policy.
  • Functional Software Inc. (Sentry) — error monitoring and session replay (United States). Loaded only with your consent in regions that require it. Privacy Policy.
  • Google LLC — only if you choose to sign in with Google (United States). Privacy Policy.

Transfers of personal data from the EEA, UK, or Switzerland to the United States rely on Standard Contractual Clauses entered into with each processor.

Cookies & Local Storage

We use first-party cookies set by Supabase to keep you signed in. These are strictly necessary and do not require consent. Sentry, when enabled, may store identifiers in your browser to deduplicate error reports and replay sessions; we request your consent before loading Sentry in regions that require it. We do not use cookies for advertising or cross-site tracking.

Data Retention

  • Account, settings, saved auction data, and activity events:retained for as long as your account is active, then permanently deleted when you delete your account.
  • Sentry error data: retained per Sentry's default retention (90 days for events, 30 days for replays).

Data Security

We implement appropriate security measures to protect your personal information. However, no method of transmission over the Internet is 100% secure.

Children's Privacy

Our service is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13.

Your Rights

You have the right to access, correct, port, restrict, or delete your personal data, and to object to processing based on legitimate interests. To exercise these rights:

  • Export your data: download a JSON copy of your account, settings, activity, and saved auctions from the Account page.
  • Delete your account: permanently delete your account and all associated data from the Account page.
  • Other requests: contact us at the address below. EEA/UK users also have the right to lodge a complaint with their local data protection authority.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the “Last updated” date.

Contact Us

If you have questions about this Privacy Policy or your data, contact us at matt@bstockbuddy.com