Back

Privacy Policy for Promptsy

Last Updated: January 15, 2025

Thank you for using Promptsy ("we," "us," or "our"). This Privacy Policy explains how we collect, use, disclose, and protect your information when you use our AI-powered prompt management platform at https://promptsy.top (the "Service").

By accessing or using Promptsy, you agree to this Privacy Policy. If you do not agree, please do not use the Service.

1. INFORMATION WE COLLECT

1.1 Account Information
- Name and email address for account creation and authentication
- Profile image (optional, via OAuth providers)
- Password (encrypted and stored securely)
- Authentication tokens from third-party OAuth providers (GitHub)

1.2 Workspace and Content Data
- Prompts and bundles you create, including titles, descriptions, and content
- Folders, tags, and organizational structures you set up
- Comments, ratings, and feedback you provide on prompts and bundles
- Workspace information including team members and roles
- Usage metrics (number of runs, execution times, token counts)

1.3 API Keys and Integration Data
- API keys for AI services (OpenAI, Anthropic) you choose to provide
- Personal API tokens for extensions and integrations
- These are encrypted and stored securely; we never use your API keys for our own purposes

1.4 Payment and Billing Information
- Payment details processed securely through Stripe
- Billing addresses and subscription information
- For marketplace sellers: Stripe Connect account information and payout details
- Purchase history and transaction records

1.5 Usage and Analytics Data
- RunLog data: execution history, performance metrics, token usage, costs
- Search queries and interaction patterns within the platform
- Features you use and how often
- Error logs and debugging information

1.6 Technical Information
- IP addresses, browser type, and device information
- Cookies and similar tracking technologies
- Session data and authentication tokens
- Performance and diagnostic information

1.7 Community and Marketplace Data
- Public profiles and bios for marketplace sellers
- Upvotes, ratings, and reviews you submit
- Marketplace listings you create, including pricing and licensing terms
- Purchase and sales history

2. HOW WE USE YOUR INFORMATION

2.1 To Provide Core Services
- Create and manage your account and workspaces
- Store and organize your prompts, bundles, folders, and tags
- Execute prompt workflows using your API keys
- Enable team collaboration with role-based access control
- Provide semantic search across your content
- Generate AI-powered bundle suggestions and prompt optimizations

2.2 For Marketplace Operations
- Process purchases and sales of prompts and bundles
- Facilitate payments through Stripe Connect
- Display your public listings to potential buyers
- Handle refunds and disputes
- Prevent fraud and ensure marketplace integrity

2.3 To Improve the Service
- Analyze usage patterns to enhance features and user experience
- Identify and fix bugs and performance issues
- Develop new features based on user needs
- Conduct research and testing

2.4 For Communication
- Send transactional emails (account confirmations, password resets)
- Notify you about workspace invitations and activity
- Send billing and subscription updates
- Provide customer support
- Send optional product updates and newsletters (with your consent)

2.5 For Security and Compliance
- Detect and prevent fraud, abuse, and security threats
- Enforce our Terms of Service
- Comply with legal obligations
- Protect our rights and those of our users

3. DATA SHARING AND DISCLOSURE

3.1 Third-Party Service Providers
We share data with trusted service providers who help us operate Promptsy:
- Stripe: Payment processing and marketplace payouts
- MongoDB Atlas: Database hosting (encrypted at rest)
- Redis Cloud: Queue and caching services
- Resend: Transactional email delivery
- Vercel: Application hosting and deployment

3.2 AI Service Providers
When you use API mode with your own API keys:
- Your prompts are sent directly to OpenAI or Anthropic using YOUR keys
- We do not share your prompts with these providers using our own accounts
- Review the privacy policies of OpenAI and Anthropic for their data practices

3.3 Marketplace Buyers
When you publish to the marketplace:
- Your public profile, listing details, and pricing are visible to all users
- Buyer information (names, emails) is shared with sellers for transaction purposes

3.4 Workspace Members
Within workspaces:
- Content is visible to all workspace members based on their role permissions
- Owners and admins can see member information and activity

3.5 Legal Requirements
We may disclose information if required by law, legal process, or to:
- Comply with legal obligations
- Protect our rights, privacy, safety, or property
- Investigate fraud or security issues
- Respond to government requests

3.6 Business Transfers
If Promptsy is involved in a merger, acquisition, or sale of assets, your information may be transferred. We will notify you before your data is transferred and becomes subject to a different privacy policy.

4. DATA RETENTION

- Active accounts: We retain your data as long as your account is active
- Deleted accounts: Data is permanently deleted within 30 days of account deletion
- Marketplace transactions: We retain transaction records for 7 years for legal and tax purposes
- Backups: Deleted data may persist in backups for up to 90 days
- Aggregated analytics: We may retain anonymized, aggregated data indefinitely

5. DATA SECURITY

We implement industry-standard security measures:
- Encryption in transit (TLS/SSL) and at rest
- Encrypted storage of sensitive data (API keys, passwords)
- Role-based access control
- Regular security audits and updates
- Secure authentication with NextAuth
- Limited employee access to user data

However, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.

6. YOUR RIGHTS AND CHOICES

6.1 Access and Export
- View all your data through your account dashboard
- Export your prompts and bundles in JSON format

6.2 Correction and Deletion
- Update your profile and account information anytime
- Delete individual prompts, bundles, or your entire account
- Request data deletion by contacting us

6.3 API Keys
- Add, update, or remove your API keys at any time
- API keys are encrypted and only used when you explicitly run prompts

6.4 Communication Preferences
- Opt out of marketing emails (transactional emails cannot be disabled)
- Manage email notification settings in your account

6.5 Cookies
- Configure cookie preferences in your browser
- Some features may not work if you disable cookies

6.6 Data Portability
- Export your data in machine-readable JSON format
- Take your prompts to another platform if you choose

7. CHILDREN'S PRIVACY

Promptsy is not intended for users under 13 years of age. We do not knowingly collect information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

8. INTERNATIONAL DATA TRANSFERS

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your information in compliance with this Privacy Policy and applicable laws.

9. COOKIES AND TRACKING

We use cookies and similar technologies to:
- Keep you logged in
- Remember your preferences
- Analyze how you use Promptsy
- Prevent fraud and improve security

You can control cookies through your browser settings, but some features may not function properly if you disable them.

10. DO NOT TRACK

Some browsers support "Do Not Track" signals. Promptsy does not currently respond to Do Not Track signals, but we do not track users across third-party websites.

11. CALIFORNIA PRIVACY RIGHTS

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information we collect and how we use it
- Right to delete your personal information
- Right to opt-out of the sale of your personal information (note: we do not sell your information)
- Right to non-discrimination for exercising your privacy rights

To exercise these rights, contact us at bartzalewskidev@gmail.com.

12. GDPR RIGHTS (European Users)

If you are in the European Economic Area, you have rights under the General Data Protection Regulation (GDPR):
- Right of access to your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restriction of processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent

To exercise these rights, contact us at bartzalewskidev@gmail.com.

13. CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time. We will notify you of significant changes by:
- Posting the new Privacy Policy on this page with an updated "Last Updated" date
- Sending an email notification to your registered email address
- Displaying a prominent notice on the Service

Your continued use of Promptsy after changes constitutes acceptance of the updated Privacy Policy.

14. CONTACT US

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:

Email: bartzalewskidev@gmail.com
Website: https://promptsy.top

For data subject access requests or privacy-related inquiries, please include "Privacy Request" in your email subject line.

---

By using Promptsy, you acknowledge that you have read and understood this Privacy Policy and agree to its terms.