LEGAL

Privacy Policy

We believe privacy is a right, not a feature. This policy explains exactly what data we collect, why, and how you can control it.

Last updated: April 15, 2026

SECTION 01
Introduction
TrendSnipe AI ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services (collectively, the "Service"). Please read this policy carefully. If you disagree with its terms, please discontinue use of the Service.
SECTION 02
Who We Are
TrendSnipe AI is an AI-powered ecommerce trend detection platform that helps sellers and entrepreneurs discover winning products before they go viral. We are the data controller for personal information collected through our Service. If you have questions about this policy, contact us at privacy@maxlab360.com.
SECTION 03
Information We Collect
We collect information you provide directly to us, such as when you create an account, subscribe to a plan, or contact support. This includes: • Account data: name, email address, password (hashed), and profile preferences. • Billing data: payment method details processed securely by our payment provider (Stripe). We do not store full card numbers. • Usage data: product searches, saved items, alert configurations, and feature interactions. • Communications: messages you send us via email or support channels. We also collect information automatically when you use the Service, including IP address, browser type, operating system, referring URLs, device identifiers, and pages visited.
SECTION 04
How We Use Your Information
We use the information we collect to: • Provide, operate, and improve the Service. • Process transactions and send related notices (receipts, subscription renewals). • Send transactional and promotional communications (you may opt out of promotional emails at any time). • Respond to your comments and questions. • Monitor and analyze usage patterns to improve user experience. • Detect, investigate, and prevent fraudulent or unauthorized activity. • Comply with legal obligations. • Enforce our Terms of Service.
SECTION 05
Legal Bases for Processing
If you are located in the European Economic Area (EEA) or the United Kingdom, we process your personal data under the following legal bases: • Contract performance: processing necessary to provide the Service you have subscribed to. • Legitimate interests: improving and securing the Service, preventing fraud, and direct marketing to existing customers where it is proportionate and you have not opted out. • Consent: where you have given explicit consent (e.g., marketing emails to new subscribers). • Legal obligation: where processing is required by applicable law.
SECTION 06
Cookies and Tracking Technologies
We use cookies and similar tracking technologies to operate the Service and gather analytics. Types of cookies we use: • Strictly necessary cookies: required for authentication and core functionality (e.g., session tokens). • Analytics cookies: help us understand how visitors interact with the Service (e.g., page views, session duration) using tools such as Vercel Analytics. • Preference cookies: remember your settings and preferences. You can control cookies through your browser settings. Disabling strictly necessary cookies may prevent you from using parts of the Service. We do not use third-party advertising cookies.
SECTION 07
How We Share Your Information
We do not sell your personal information. We may share your data with: • Service providers: third parties that perform services on our behalf (hosting, payment processing, email delivery, analytics). They are bound by contractual obligations to protect your data. • Business transfers: if we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you before your data is subject to a different privacy policy. • Law enforcement: when required by law, court order, or governmental authority, or to protect the rights, property, or safety of TrendSnipe AI, our users, or the public. • With your consent: for any other purpose with your explicit consent.
SECTION 08
Data Retention
We retain your personal information for as long as your account is active or as needed to provide the Service. Specifically: • Account data is retained until you delete your account or request deletion. • Billing records are retained for seven years to comply with financial regulations. • Usage logs and analytics data are retained for up to 24 months in identifiable form, then aggregated or deleted. • Marketing opt-out records are kept indefinitely to honor your preferences. You may request deletion of your data at any time (see "Your Rights" below).
SECTION 09
Security
We implement industry-standard technical and organizational measures to protect your information, including: • Encryption of data in transit using TLS/HTTPS. • Hashed and salted password storage — we never store plain-text passwords. • Role-based access controls limiting internal access to personal data. • Regular security assessments of our infrastructure. No method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security. In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you in accordance with applicable law.
SECTION 10
Your Rights and Choices
Regardless of your location, you have the following rights: • Access: request a copy of the personal data we hold about you. • Correction: request correction of inaccurate or incomplete data. • Deletion: request deletion of your personal data, subject to legal retention obligations. • Opt-out: unsubscribe from marketing emails at any time via the link in any email or by contacting us. • Account deletion: delete your account from Settings → Account in the dashboard. To exercise any of these rights, contact us at privacy@maxlab360.com. We will respond within 30 days.
SECTION 11
GDPR Rights (EEA and UK Users)
If you are in the EEA or UK, you have additional rights under the General Data Protection Regulation (GDPR) and UK GDPR: • Right to restrict processing: request that we limit how we use your data while a complaint is resolved. • Right to data portability: receive your personal data in a structured, machine-readable format. • Right to object: object to processing based on legitimate interests or for direct marketing purposes. • Right to withdraw consent: where processing is based on consent, withdraw it at any time without affecting prior lawful processing. • Right to lodge a complaint: with your local supervisory authority (e.g., the ICO in the UK, or your national DPA in the EEA). We will not charge you for exercising your rights and will not discriminate against you for doing so.
SECTION 12
CCPA Rights (California Residents)
Under the California Consumer Privacy Act (CCPA), California residents have the right to: • Know what personal information we collect, use, disclose, and sell. • Delete personal information we have collected (subject to certain exceptions). • Opt out of the sale of personal information. We do not sell personal information. • Non-discrimination for exercising your CCPA rights. To submit a verifiable consumer request, contact us at privacy@maxlab360.com with "CCPA Request" in the subject line. We will respond within 45 days as required by law.
SECTION 13
Children's Privacy
The Service is not directed to children under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that a child under 16 has provided us with personal data, we will delete it immediately. If you believe a child has provided us with their information, please contact us at privacy@maxlab360.com.
SECTION 14
Third-Party Services and Links
The Service may contain links to third-party websites, tools, or services (such as Amazon product listings, Reddit, or Google Trends). This Privacy Policy does not apply to those third-party sites. We encourage you to review the privacy policies of any third-party services you access through our platform. Key third-party services we integrate with: • Supabase: authentication and database hosting (supabase.com/privacy). • Stripe: payment processing (stripe.com/privacy). • Vercel: frontend hosting and analytics (vercel.com/legal/privacy-policy). • Resend: transactional email delivery (resend.com/privacy).
SECTION 15
International Data Transfers
TrendSnipe AI operates globally. Your information may be transferred to and processed in countries other than the country in which you reside, including the United States. These countries may have data protection laws that differ from those in your country. For transfers from the EEA or UK, we rely on appropriate safeguards such as Standard Contractual Clauses (SCCs) approved by the European Commission, or transfers to countries with an adequacy decision. By using the Service, you consent to this transfer, storage, and processing.
SECTION 16
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will: • Update the "Last Updated" date at the top of this page. • Send an email notification to registered users where required by law. • Display a notice on the Service for significant changes. Your continued use of the Service after the effective date of the updated policy constitutes your acceptance of the changes. We encourage you to review this policy periodically.
SECTION 17
Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us: Email: privacy@maxlab360.com Subject line: "Privacy Request" We are committed to resolving complaints about your privacy and our collection or use of your personal information. If you are not satisfied with our response, you have the right to escalate to your local data protection authority.
SECTION 18
Definitions
For the purposes of this Privacy Policy: • "Personal information" or "personal data" means any information that identifies or can reasonably be used to identify an individual, directly or indirectly. • "Processing" means any operation performed on personal data, including collection, storage, use, disclosure, or deletion. • "Data controller" means the entity that determines the purposes and means of processing personal data — that is, TrendSnipe AI. • "Data processor" means a third party that processes personal data on behalf of the data controller (e.g., our hosting providers). • "Service" means the TrendSnipe AI website and platform, including all features, tools, and content provided therein.