Legal

Privacy Policy

Last updated: May 3, 2026

1. Who we are

This Privacy Policy describes how NicheProwler API (“we,” “us,” or “our”) handles personal information when you use our website, dashboard, authentication flows, and related services that power the NicheProwler API platform (collectively, the “Services”).

2. Information we collect

We collect information in the following categories:

  • Account and profile data: such as name, email address, and credentials you provide when you register or sign in (including when you use a third-party identity provider if enabled).
  • API and technical data: including API keys (stored in protected form), request metadata, endpoint usage, rate-limit counters, error logs, and identifiers we associate with requests (for example request IDs and timestamps).
  • Billing data: when you purchase credit packs, our payment processor may collect payment details and billing contact information. We typically receive limited billing metadata (for example transaction status and customer references) rather than full card numbers.
  • Communications: messages you send to us (for example support requests) and operational emails related to your account.
  • Device and connection data: such as IP address, browser type, and general diagnostic data collected through server logs and security tooling.

3. How we use information

We use personal information to:

  • Provide, operate, secure, and improve the Services;
  • Create and manage accounts, authenticate users, and enforce access controls;
  • Meter usage, apply rate limits, prevent abuse, and investigate suspicious activity;
  • Process payments and maintain billing records;
  • Send service-related notices (including security alerts and policy updates where appropriate);
  • Comply with law and respond to lawful requests.

4. Legal bases (where applicable)

If applicable law requires a legal basis, we rely on one or more of the following: performance of a contract with you, legitimate interests that are not overridden by your rights, compliance with legal obligations, and consent where we expressly request it.

5. Sharing and subprocessors

We share personal information with service providers who help us run the Services (for example hosting, databases, email delivery, analytics, fraud prevention, and payment processing). Those providers are permitted to process personal information only on our instructions and subject to appropriate confidentiality and security obligations.

We may also disclose information if we believe disclosure is reasonably necessary to comply with law, enforce our terms, protect users, or address security or integrity issues.

6. Data you submit to the API

When you call API endpoints, you may transmit identifiers or other inputs needed to fulfill a request. We process that data to execute the request, enforce limits, and maintain operational logs as described above. You are responsible for ensuring you have the rights to submit any personal information contained in API requests and that your use complies with applicable law and third-party terms.

7. Retention

We retain personal information for as long as needed to provide the Services, meet legal obligations, resolve disputes, and enforce our agreements. Retention periods can vary based on the type of data and operational requirements (for example security logs may be retained for a limited window).

8. Security

We implement technical and organizational measures designed to protect personal information. No method of transmission or storage is completely secure; we encourage you to use strong passwords, protect API keys, and rotate credentials if you suspect compromise.

9. International transfers

We may process and store information in countries other than where you live. Where required, we use appropriate safeguards for cross-border transfers consistent with applicable law.

10. Your choices and rights

Depending on your location, you may have rights to access, correct, delete, or export certain personal information, and to object to or restrict certain processing. You may also have the right to lodge a complaint with a supervisory authority. To exercise rights, contact us using the same channel you use for account support, or the contact details we provide in service communications.

11. Children

The Services are not directed to children under 16, and we do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us so we can take appropriate action.

12. Changes

We may update this Privacy Policy from time to time. We will post the updated version on this page and update the “Last updated” date. If changes are material, we may provide additional notice as required by law.

13. Contact

Questions about this Privacy Policy should be directed through the support or contact method associated with your account or billing correspondence.

Home·Terms of Service