1. Information We Collect
We collect the following information when you use the European Orders Price Archive:
- Account information — your name and email address when you register or sign in with Google.
- Usage data — the number of searches you perform per day, used solely to enforce tier limits.
- Billing information — payment details are processed entirely by Stripe. We never see or store your card number.
- Anonymous identifiers — a signed cookie for visitors who are not signed in, used only to enforce the anonymous search limit.
2. How We Use Your Information
- To authenticate your account and maintain your session.
- To enforce per-tier daily search limits.
- To process subscription payments through Stripe.
- To contact you about your account or subscription (transactional emails only).
We do not sell, share, or rent your personal information to third parties.
3. Third-Party Services
We use the following third-party services:
- Stripe — payment processing. Subject to Stripe's Privacy Policy.
- Google OAuth — optional sign-in. Subject to Google's Privacy Policy.
- AI price research — search queries (order name, country, grade) are sent to an AI service to retrieve price data. No personal information is included in these queries.
4. Data Retention
Account data is retained for as long as your account is active. You may request deletion of your account and all associated data at any time by contacting us. Anonymous usage cookies expire after 24 hours.
5. Cookies
We use a single session cookie (signed with HMAC-SHA256) to identify anonymous visitors for rate-limiting purposes. No tracking or advertising cookies are used.
6. Your Rights
You have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your account and data.
- Withdraw consent at any time by deleting your account.
7. Security
Passwords are hashed using bcrypt. Sessions use signed JWT tokens. All data in transit is encrypted via HTTPS. We follow industry-standard practices to protect your data, though no system is completely secure.