Legal

Privacy policy.

What we collect, why we collect it, how long we keep it, and what you can make us do with it.

Privacy
Effective 14 August 2026 Version 2.0

Who is responsible

The controller of your personal data is reverseBits Tech LLP, a limited liability partnership registered in India, at 520, Fortune Business Hub, NR. Satymev Elisiym, Shilaj, Shilaj Police Station, Daskroi, Ahmedabad, 380059, India. Reach us at hello@contentpeddler.com.

What we collect

Three things, and nothing else on purpose.

  • Account data. Your email address, name if you give one, and authentication identifiers. Needed to have an account at all.
  • Content you enter. Topics, briefs, steering instructions and the drafts produced from them.
  • Usage data. Which runs you started, when, how many credits they held and spent, plus ordinary server logs including IP address for security and debugging.

We do not collect payment card details. Checkout runs through Paddle, who act as merchant of record and never pass us your card number.

How we use it

To run the product: authenticate you, execute runs, meter credits, send service email and answer support. Aggregated and de-identified usage informs what we build next.

We do not train models on your content. Your topics, briefs and drafts are not used to improve any model, ours or anyone else's, and are not shared with other customers.

Why we are allowed to

Where the UK GDPR or the EU GDPR applies to you, our lawful bases are:

WhatBasis
Running your account and your runsPerformance of our contract with you
Billing, invoicing and tax recordsLegal obligation, and performance of the contract
Security logging, abuse prevention, debuggingLegitimate interests in keeping the service working and unabused
Reading public discussion to research a topicLegitimate interests in providing the research the product exists to do
Service emailPerformance of the contract

Where we rely on legitimate interests you can object, and we will stop unless we have a compelling reason not to. We do not rely on consent for anything except optional marketing email, which you can withdraw at any time.

Public sources

Runs read publicly available discussion, forum threads, video comments, open-web pages. That material is public when we read it and we retain only what is needed to show you the evidence behind a piece: the excerpt and the link back to the original. We do not build profiles of the people who wrote those posts.

Who else touches it

To run the service we rely on a small number of outside providers: for payments, for hosting and email, for AI text generation, for retrieving the public pages a run researches, and for monitoring and delivering our sites. Each is engaged under that provider's own data processing terms. Payments are handled by Paddle.com Market Ltd as our merchant of record, and signing in with Google involves Google only if you choose it. If you need the named provider behind any of the others, ask us at hello@contentpeddler.com.

Our own servers are in India.

We do not sell personal data, and we do not share it for advertising.

Where it goes

Like most software, we use providers in more than one country. Where that matters:

Text generation happens outside the UK and the EEA, including in China. What is sent to it is the topic, the brief you wrote and the research the run gathered. It is not sent your account details, and it is not used to train anyone's model. Please do not put personal data about other people, customer records, or anything confidential into a topic or a brief.

Other processing takes place in the United States, the United Kingdom and the European Economic Area. Where a transfer leaves the UK or the EEA, we rely on the transfer terms in each provider's own data processing agreement, which for most of them are the EU Standard Contractual Clauses or the UK International Data Transfer Addendum. There is no adequacy decision for China.

Retention

Account and run data live for as long as your account does. Delete a run and it is removed. Delete your account and everything under it is removed from our live systems within 30 days. If a copy of your data is present in a backup, it goes when that backup expires on its own schedule rather than on request, because backups are not selectively editable. The exceptions:

  • Invoices, payment and tax records: kept for as long as tax law requires, typically six to seven years. Paddle keeps its own copy as merchant of record.
  • Billing event records: we store the raw payload of each payment event Paddle sends us as an audit copy, for seven years. It carries your email, billing country and the amounts. It never carries a card number.
  • Server and security logs: including IP addresses. Kept while they are useful for security, billing disputes and debugging, and used for nothing else.
  • Run traces: the debugging record of a run, including its prompts and outputs. Held by our tracing provider under the retention period configured on that account.

Your rights

Depending on where you live you may have the right to access, correct, export, delete or restrict processing of your personal data, and to object to it. Ask and we will do it, within one month. We do not require a formal request and we do not charge for it. You also have the right to complain to your local data protection authority.

Cookies

We do not use tracking or advertising cookies, and we do not run third-party analytics that follow you off this site. Signing in stores a token in your browser so the app knows who you are; that is the only thing we keep there.

Contact

Privacy questions and requests go to hello@contentpeddler.com, or through the contact form.

Get started

Put real demand behind
your next post.

Start a run

See it work

Watch a finished run,
start to finish.

See a sample run