Your data, in plain language.
Working privacy notice for this pilot. The legal operator and support contact must be finalized before a public launch.
Data used by this application
The app uses your identity provider to identify your account. The standalone deployment uses Google; a managed preview may use ChatGPT sign-in. We store account details, saved offers, usual purchases, shopping lists, purchase records, saved receipt copies, price-check history, in-app alerts, your latest search results, research allowance, preferences, reports, and any billing status.
Your chat conversation stays in memory for the current browser visit. A live request sends your question and up to six recent messages to OpenAI. Responses use store: false, which does not eliminate all provider retention. Uploaded receipts are sent to OpenAI for extraction when connected. Review the extracted details before saving purchases. Large photos may be resized, and HEIC photos converted, on your device before upload. The uploaded receipt copy is stored privately and can be deleted when no purchase uses it. Keep your original receipt. Avoid including unnecessary sensitive information.
Operational measurement
We record signed-in product actions such as searches, saves, comparisons, reported problems, and merchant-link openings. Event records contain an account identifier, event name, optional offer identifier, and timestamp. Raw chat prompts are not included in these events. An outbound action is not a confirmed purchase.
Operational product events are eligible for deletion after 90 days and are cleaned during subsequent successful live searches. Per-account search cache entries expire after 30 minutes and are cleaned during successful live searches. Quiet deployments need the documented maintenance procedure to physically remove expired rows.
Deletion and retention
Your account can delete saved offers, shopping lists, usuals, purchase records, saved receipt copies, price-check history, alerts, preferences, search results, cached responses, reports, activity events, and sessions. Active subscriptions must be canceled first. This does not delete an account held by Google, ChatGPT, or Stripe.
Limited billing records, administrative audit records, and current-month abuse-prevention usage counts may remain. A final public retention schedule, operator identity, contact address, and applicable rights process are required before public launch.
Cookies and third parties
Secure session and sign-in cookies support authentication. No advertising script is loaded by this release. Merchants and linked services apply their own privacy terms when you visit them.
Stripe handles payment details if payments are configured. CheapAF does not receive your card number.