Privacy Policy

Last updated: August 8, 2025

Bad Clients (“we,” “our,” “us”) is committed to respecting and protecting your privacy.
This Privacy Policy explains how we collect, use, and store information when you use our website, browser extensions, and related services.

1. Who We Are

Bad Clients is operated by an independent developer based in France.
This policy is governed by French law.

2. Information We Collect

We only collect what is strictly necessary to operate the service:

  • Account Information: Email address and authentication credentials (securely stored via Supabase).
  • Usage Statistics: Credits used, extension key usage, and subscription status.
  • Payment Information: Processed securely by Stripe, we never see or store your full payment details.
  • Technical Insights: Performance and analytics data via Vercel Analytics and Vercel Speed Insights.

We do not collect anonymous session data such as IP addresses, browser fingerprints, or geolocation.

3. Information from the Browser Extension

When using the Bad Clients browser extension:

  • The extension sends only the text content of job posts you choose to analyze to our API.
  • The extension stores only your extension key locally in your browser.
  • No other personal data is stored by the extension.

4. How We Use Your Information

We use the data we collect to:

  • Authenticate and authorize access to features.
  • Monitor and enforce usage limits.
  • Provide job post analysis.
  • Process payments and manage subscriptions.
  • Improve the performance and reliability of the service.

We do not sell, rent, or trade your personal data.

5. Cookies

We use only essential cookies to manage authentication and sessions.
We do not use tracking or advertising cookies.

6. Data Sharing

We share data only with trusted service providers:

  • Supabase (authentication, database, storage)
  • Stripe (payments)
  • Vercel (hosting, analytics, performance monitoring)

These providers are bound by their own privacy policies and comply with relevant privacy laws.

7. Data Retention and Deletion

When you delete your account:

  • All personal data, usage history, and extension keys linked to your account are permanently deleted.
  • No residual personal information is retained.

8. Your Rights

Under French and EU law (GDPR), you have the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion of your data (account deletion covers this entirely).

To exercise these rights, contact us at hello@johanmontorfano.com.

9. Security

We take reasonable technical and organizational measures to protect your data, including encryption in transit (HTTPS) and secure storage via our service providers.

10. Changes to This Policy

We may update this Privacy Policy from time to time.
When changes are made, the “Last updated” date at the top will be revised, and significant changes will be communicated clearly on our website.