Privacy Policy

Last updated: May 19, 2026

1. Introduction

ScanShield ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our compliance scanning platform and browser extension (collectively, the "Service").

2. Information We Collect

2.1 Account Information

When you create an account, we collect your name, email address, and authentication credentials through our OAuth provider. We also store your subscription tier and billing information (processed securely through Paddle).

2.2 Shop & Listing Data

When you submit listings for compliance scanning, we temporarily process the listing title, description, ingredients, claims, and other product data. This data is used solely for compliance analysis and is stored in association with your shop account.

2.3 Browser Extension Data

Our Chrome extension collects listing data from TikTok Seller Center pages only when you explicitly trigger a scan. The extension does not track your browsing history, collect personal data, or operate on pages outside of TikTok Seller Center.

2.4 Usage Data

We collect anonymized usage metrics including scan frequency, feature usage, and error logs to improve our service quality.

3. How We Use Your Information

  • To provide and maintain our compliance scanning service
  • To process your subscription and billing
  • To send you compliance alerts and notifications (configurable)
  • To improve our rule engine and scanning accuracy
  • To provide customer support
  • To detect and prevent fraud or abuse

4. Data Sharing & Disclosure

We do not sell, rent, or trade your personal information. We may share data with:

  • Paddle: For payment processing (subject to Paddle's privacy policy)
  • Service providers: Cloud hosting and infrastructure partners under strict data processing agreements
  • Legal requirements: When required by law, court order, or governmental authority

5. Data Retention

We retain your scan data for the duration of your active subscription plus 30 days after account closure. You may request deletion of your data at any time by contacting our support team.

6. Data Security

We implement industry-standard security measures including encryption in transit (TLS 1.3), encryption at rest, secure API key hashing, and regular security audits. However, no method of transmission over the Internet is 100% secure.

7. Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion of your data
  • Export your scan history and findings
  • Opt out of non-essential communications
  • Withdraw consent for data processing

8. Cookies & Tracking

We use essential cookies for authentication and session management. We do not use third-party advertising cookies or cross-site tracking technologies.

9. Children's Privacy

Our Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.

11. Contact Us

If you have questions about this Privacy Policy, please contact us at [email protected]