Privacy Policy

Your privacy matters. Learn how we protect your data.

Effective: June 29, 2025
Last Updated: June 29, 2025

1 Introduction

Welcome to RoastoByte ("we," "our," or "us"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application RoastoByte (the "App") and our website at https://roastobyte.com (the "Service").

Developer Information:

2 Age Restrictions

Important Age Requirement

RoastoByte is intended for users who are 16 years of age or older. We do not knowingly collect personal information from children under 16. If you are under 16, please do not use our Service or provide any information to us.

3 Information We Collect

3.1 Personal Information You Provide

  • Account Information: Email address, username, and password when you create an account
  • Profile Information: Username and profile preferences
  • Custom Input: Roast text you input for comeback generation (not stored permanently)

3.2 Automatically Collected Information

Through Google Analytics 4, we collect:

  • Session duration and frequency
  • Feature usage patterns
  • App performance metrics
  • Device information
  • Roast generation events
  • User interaction patterns
  • Credit usage and tier info
  • Error logs and crash reports

3.3 AI-Generated Content

  • Generated Roasts and Comebacks: AI-generated content stored for app functionality
  • User Preferences: Roast categories, intensity levels, and favorite content
  • Usage Statistics: Generation counts, favorites saved, and sharing activity

3.4 Technical Information

  • Device Information: Device type, operating system, app version
  • Network Information: IP address, internet service provider
  • App Performance: Error logs, crash reports, and performance metrics

4 How We Use Your Information

Primary Uses

  • • Provide app functionality
  • • Generate AI roasts/comebacks
  • • Manage user accounts
  • • Track service usage
  • • Provide customer support

Analytics & Improvement

  • • Analyze usage patterns
  • • Monitor app performance
  • • Develop new features
  • • Generate usage insights
  • • Fix bugs and issues

Communication

  • • Account notifications
  • • Password reset emails
  • • Customer support responses
  • • Important service updates
  • • Security alerts

5 Third-Party Services

5.1 AI Service Providers

We use the following AI services to generate content:

OpenAI

GPT models

xAI

Grok models

OpenRouter

Various AI models

These services process your generation requests but do not store your personal information beyond the session.

5.2 Infrastructure and Analytics

  • Supabase: Database and authentication services
    (East US - Ohio servers)
  • Google Analytics 4: App usage analytics
    (User behavior tracking)
  • Cloudflare: DNS management and security
    (Content delivery network)
  • Resend: Email delivery services
    (Authentication emails)

5.3 Future Payment Processing

When we implement paid features, we may use third-party payment processors like RevenueCat to handle transactions securely.

6 Data Storage and Security

6.1 Data Location

Your data is primarily stored on Supabase servers located in the United States (East US - Ohio region).

6.2 Security Measures

  • Encrypted data transmission (HTTPS/SSL)
  • Secure authentication through Supabase
  • Regular security updates and monitoring
  • Limited access by authorized personnel only

6.3 Data Retention

  • Account Data: Retained until account deletion
  • Generated Content: Stored indefinitely for app functionality
  • Analytics Data: Per Google Analytics retention policies
  • Temporary Data: Guest data cleared periodically

7 Your Rights and Choices

7.1 Account Management

Update Information

Modify your profile and preferences through the App

Data Clearing

Clear roast history and statistics through Advanced Settings

Account Deletion

Request account deletion at roastobyte.com/delete-account/

7.2 GDPR Rights (For EU Users)

If you are located in the European Economic Area, you have the following rights:

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate or incomplete data
  • Erasure: Request deletion of your personal data
  • Portability: Receive your data in structured format
  • Restriction: Limit how we process your data
  • Objection: Object to certain types of processing

To exercise these rights, contact us at [email protected]

7.3 Data Export and Deletion

  • Account deletion requests are processed through our website form
  • Data export requests can be made via email to [email protected]
  • We will respond to valid requests within 30 days

8 Information Sharing

8.1 We Do Not Sell Personal Information

We do not sell, trade, or rent your personal information to third parties.

8.2 Limited Sharing

We may share information only in these circumstances:

  • Service Providers: With trusted third-party services listed in Section 5
  • Legal Requirements: When required by law or to protect our rights
  • Business Transfers: In case of merger, acquisition, or sale of assets
  • Safety: To protect the safety of our users or the public

8.3 Aggregated Data

We may share anonymized, aggregated data for analytics and research purposes.

9 International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence, including the United States. We ensure appropriate safeguards are in place for such transfers.

10 Cookies and Tracking

10.1 App Analytics

We use Google Analytics 4 to track app usage and user behavior for service improvement.

10.2 Website Cookies

Our website may use cookies for functionality and analytics. You can control cookie preferences through your browser settings.

11 Content Ownership and AI-Generated Material

11.1 AI-Generated Content

  • Content generated by AI models becomes part of our service database
  • Users receive a non-exclusive license to use generated content
  • We retain rights to improve our service using aggregated content patterns

11.2 User Input

  • Custom roast input for comeback generation is processed but not permanently stored
  • Users retain ownership of their original input text

12 Changes to This Privacy Policy

We may update this Privacy Policy periodically. We will notify you of significant changes by:

Posting the updated policy on our website

Sending email notifications to registered users

Displaying in-app notifications

Continued use of the Service after changes constitutes acceptance of the updated policy.

13 Contact Information

If you have questions about this Privacy Policy or our data practices, contact us:

15 Additional Information for Specific Regions

15.1 California Residents (CCPA)

California residents have additional rights under the California Consumer Privacy Act, including the right to know what personal information is collected and the right to delete personal information.

15.2 EU/UK Residents (GDPR)

EU and UK residents have enhanced rights under GDPR/UK GDPR as outlined in Section 7.2.

RoastoByte Logo RoastoByte Privacy Policy

Last Updated: June 29, 2025

Version: 1.0

Effective Date: June 29, 2025