BaitJar

Privacy Policy

Last updated: March 29, 2026

1. Introduction

BaitJar ("we", "us", "our") respects your privacy. This Privacy Policy explains what information we collect, how we use it, and your rights regarding your data when you use our platform at baitjar.com ("the Service").

2. Information We Collect

Information you provide

  • Account data: name, email address, and password when you create an account
  • Brand inputs: website URLs, brand descriptions, and other content you submit to generate lead magnets
  • Payment data: processed entirely by Paddle, our merchant of record — we do not store your credit card details
  • Communications: any messages you send us via email

Information collected automatically

  • Usage data: pages visited, features used, and actions taken within the Service
  • Device data: browser type, operating system, IP address, and device identifiers
  • Cookies: essential cookies for authentication and session management. We do not use advertising or tracking cookies

3. How We Use Your Information

We use your information to:

  • Provide, operate, and improve the Service
  • Generate lead magnets based on your brand inputs using AI models
  • Process payments through Paddle
  • Send transactional emails (account verification, download notifications)
  • Respond to your support requests
  • Detect, prevent, and address fraud or technical issues

4. AI Processing

When you use BaitJar, your brand inputs are sent to third-party AI providers (such as OpenAI and Anthropic) to generate content. These providers process your data according to their respective privacy policies and data processing agreements. We do not use your inputs to train AI models.

5. Third-Party Services

We share data with the following categories of service providers:

  • Paddle — payment processing, billing, tax compliance, and invoicing as our merchant of record
  • Supabase — authentication and database hosting
  • Cloudflare — application hosting and content delivery
  • AI providers (OpenAI, Anthropic) — content generation
  • Vercel — frontend hosting

We do not sell your personal data to third parties.

6. Data Retention

We retain your account data and generated content for as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where we are required by law to retain it.

7. Data Security

We implement appropriate technical and organizational measures to protect your data, including encryption in transit (TLS) and at rest, secure authentication via Supabase, and access controls. However, no method of transmission over the internet is 100% secure.

8. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

  • Access: request a copy of the personal data we hold about you
  • Correction: request that we correct inaccurate data
  • Deletion: request that we delete your personal data
  • Portability: request your data in a structured, machine-readable format
  • Objection: object to the processing of your data in certain circumstances

To exercise any of these rights, contact us at baitjarapp@gmail.com. We will respond within 30 days.

9. International Transfers

Your data may be processed in countries outside your country of residence, including the United States, where our service providers operate. We ensure appropriate safeguards are in place for any international transfers.

10. Children

The Service is not directed to individuals under the age of 18. We do not knowingly collect personal data from children. If we become aware that a child has provided us with personal data, we will delete it promptly.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page with a revised "Last updated" date. Continued use of the Service after changes constitutes acceptance.

12. Contact

For questions about this Privacy Policy, contact us at baitjarapp@gmail.com.