Privacy Policy
Effective July 3, 2026
RefundRadar (“we,” “us”) helps you track purchases, return windows, and warranty deadlines, and generates refund, price-adjustment, and warranty claim messages. This page explains what information we collect, why, and how it's handled.
Information we collect
- Account information. Your email address and password when you sign up. Passwords are handled entirely by our authentication provider (Supabase) and are never visible to us in plain text.
- Purchase information you enter. Store name, item name, price, purchase date, order number, product link, notes, and similar details you add when tracking a purchase.
- Generated claim text. The refund, price-adjustment, and warranty messages the app generates and saves for you, so you can come back and reuse or download them.
- Billing status. Your plan, subscription status, and any Refund Packet credits. We do not collect or store your card number — Stripe handles payment details directly (see below).
- Gmail data (only if you connect Gmail). Gmail Import is optional and read-only. If you connect it, we store your Gmail address and encrypted access credentials, and when you run a scan we look for receipt and invoice emails. To extract details like the price, we briefly read the full content of emails that look like receipts — but we never store that content. We keep only the sender, subject, date, a short preview snippet, and the extracted purchase details (store, item, price, order number) for you to review. Nothing becomes a tracked purchase unless you approve it, and you can disconnect Gmail at any time, which revokes our access and deletes the stored credentials.
How we use it
Solely to run the product: to show your dashboard, calculate deadlines, generate claim text, and manage your plan and billing. We don't sell your information, and we don't use it for advertising. RefundRadar doesn't run any analytics or tracking scripts.
Who we share it with
- Supabase — hosts our database and handles authentication. Your account and purchase data live there, protected by row-level security so only you can read or write your own records.
- Stripe — processes payments for the Refund Packet and Radar Plus plans. Your card details are entered directly on Stripe's own checkout page and never pass through our servers.
- Google — only if you connect Gmail Import. We request read-only Gmail access through Google's own sign-in flow; your Google password never touches our servers. Our use of Gmail data complies with the Google API Services User Data Policy, including its Limited Use requirements.
We don't share your data with anyone else.
Data retention and deletion
You can delete any tracked purchase yourself at any time from its detail page — this also deletes its generated claim text. To delete your entire account and all associated data, contact us (see below) and we'll take care of it.
Cookies
We use a small number of essential cookies to keep you signed in. We don't use advertising or cross-site tracking cookies.
Children's privacy
RefundRadar isn't directed at children, and we don't knowingly collect information from anyone under 13.
Changes to this policy
If this policy changes in a meaningful way, we'll update the effective date above.
Contact us
Questions about this policy or your data? Email support@refundradar.dev.