Legal

Privacy Policy

Last updated: April 15, 2026

This Privacy Notice for Card Notes Pro ("we," "us," or "our") describes how and why we might access, collect, store, use, and share ("process") your personal information when you use our services, including when you visit cardnotespro.com or engage with us in other related ways.

Questions or concerns? Contact us at cardnotespro@gmail.com. If you do not agree with our policies, please do not use our Services.

Summary of Key Points

What personal information do we process? When you visit or use our Services, we may process personal information depending on how you interact with us and the features you use.

Do we process any sensitive personal information? We do not process sensitive personal information.

Do we collect any information from third parties? We do not collect any information from third parties.

How do we process your information? We process your information to provide, improve, and administer our Services, communicate with you, for security and fraud prevention, and to comply with law.

In what situations and with which parties do we share personal information? We may share information in specific situations with specific third parties. See section 4.

How do we keep your information safe? We have organizational and technical processes in place to protect your personal information, though no system is 100% secure.

What are your rights? Depending on where you are located, you may have certain rights regarding your personal information. See section 10.

How do you exercise your rights? Email us at cardnotespro@gmail.com or submit a data subject access request.

01 What Information Do We Collect?

Personal information you disclose to us

We collect personal information that you voluntarily provide when you register on the Services, express interest in our products, participate in activities, or contact us. The personal information we collect may include:

  • Email addresses
  • Passwords (handled securely via Firebase Authentication — we never see your plain-text password)

Sensitive information

We do not process sensitive information.

Social media login data

We may provide you with the option to register using your existing social media account details. If you choose to register this way, we will collect certain profile information from that provider, as described in section 6 below.

All personal information you provide must be true, complete, and accurate, and you must notify us of any changes.

02 How Do We Process Your Information?

In Short: We process your information to provide, improve, and administer our Services, communicate with you, for security and fraud prevention, and to comply with law.

We process your personal information for the following purposes:

  • Account creation and authentication. We process your information so you can create and log into your account and keep it in working order.
  • Cross-device data sync. Your notes, ratings, and tags are stored in Firebase Firestore under your unique account ID so they are accessible from any device you sign into.
  • Support requests. We may use your email to respond to questions or issues you contact us about.
  • Legal compliance. We process information as required by applicable law.

03 What Legal Bases Do We Rely On?

In Short: We only process your personal information when we have a valid legal reason to do so.

Legal bases we rely on include your consent (where you agree to our terms when creating an account), contract performance (to deliver the service you signed up for), legitimate interests (to improve our product and prevent fraud), and legal obligations (where required by law).

If you are located in Canada, we may also process your information in exceptional circumstances permitted by applicable law — including for fraud detection, business transactions, compliance with court orders, or where the information is publicly available as specified by regulations.

04 When and With Whom Do We Share Your Information?

In Short: We may share information in specific situations with specific third parties.

  • Google Firebase. We use Firebase Authentication and Firestore to manage accounts and store notes, ratings, and tags. Your data is stored under your unique user ID and is not accessible to other users.
  • Business transfers. We may share or transfer your information in connection with any merger, sale of company assets, financing, or acquisition of all or a portion of our business.

We have not disclosed, sold, or shared any personal information to third parties for a business or commercial purpose in the past 12 months, and we do not intend to do so in the future.

05 What Is Our Stance on Third-Party Websites?

In Short: We are not responsible for the safety of any information that you share with third parties that we may link to.

Our Services may link to third-party websites such as eBay. We are not responsible for the privacy practices of those sites. Any data you provide to third-party sites is governed by their own privacy policies. The inclusion of a link does not imply an endorsement by us. We recommend reviewing the policies of any third party before providing personal information.

06 How Do We Handle Your Social Logins?

In Short: If you choose to register or log in using a social media account, we may have access to certain information about you.

Our Services offer you the ability to register and log in using third-party social media account details. Where you choose to do this, we will receive certain profile information about you from your social media provider — often including your name, email address, and profile picture.

We will use the information we receive only for the purposes described in this Privacy Notice. We do not control, and are not responsible for, other uses of your personal information by your third-party social media provider. We recommend that you review their privacy notice to understand how they collect, use, and share your personal information.

07 How Long Do We Keep Your Information?

In Short: We keep your information for as long as necessary to fulfill the purposes outlined in this Privacy Notice unless otherwise required by law.

We will only keep your personal information for as long as necessary for the purposes set out in this notice, unless a longer retention period is required by law. Your notes, ratings, and tags stored in Firebase are retained as long as your account is active.

When we have no ongoing legitimate business need to process your personal information, we will delete or anonymize it. You may request deletion of your account and data at any time by contacting us.

7b Subscriptions

Billing and renewal

Your subscription will continue and automatically renew unless canceled. You consent to our charging your payment method on a recurring basis without requiring your prior approval for each recurring charge, until such time as you cancel the applicable order. The length of your billing cycle is annual.

Cancellation

Your cancellation will take effect at the end of the current paid term. If you have any questions or are unsatisfied with our Services, please email us at cardnotespro@gmail.com.

Fee changes

We may, from time to time, make changes to the subscription fee and will communicate any price changes to you in accordance with applicable law.

7c Guest (Local-Only) Usage

No account required

Card Notes Pro may be used without creating an account. In this mode, all notes, ratings, and tags you save are stored exclusively in your browser's local extension storage using Chrome's chrome.storage.local API. This data never leaves your device and is not transmitted to our servers, Firebase, or any third party.

Data limits

Guest users may save up to three (3) notes in total across all eBay listings. No account registration, email address, or payment is required to use the extension within this limit.

No data collection from guests

We do not collect, store, or process any personal information from users who have not created an account. We have no visibility into notes, ratings, or activity of guest users. If you uninstall the extension, all locally stored data is permanently deleted.

Upgrading to a paid account

If you choose to subscribe and create an account, your locally stored notes will be synced to our cloud database (Firebase Firestore) at sign-in. From that point forward, the data handling practices described in the rest of this Privacy Policy apply.

08 How Do We Keep Your Information Safe?

In Short: We aim to protect your personal information through organizational and technical security measures.

We have implemented appropriate technical and organizational security measures to protect the security of any personal information we process. Your data is stored in Google Firebase, which provides industry-standard security including encryption at rest and in transit. Your password is never stored in plain text — Firebase Authentication handles all credential management securely.

However, no electronic transmission over the Internet can be guaranteed to be 100% secure. While we do our best to protect your information, transmission of personal information to and from our Services is at your own risk. You should only access the Services within a secure environment.

09 Do We Collect Information From Minors?

In Short: We do not knowingly collect data from or market to children under 18 years of age.

We do not knowingly collect, solicit data from, or market to children under 18 years of age, nor do we knowingly sell such personal information. By using the Services, you represent that you are at least 18 years old. If we learn that personal information from users under 18 has been collected, we will deactivate the account and promptly delete such data.

If you believe we may have collected information from a minor, please contact us at cardnotespro@gmail.com.

10 What Are Your Privacy Rights?

In Short: Depending on your state of residence in the US or in some regions such as Canada, you have rights that allow you greater access to and control over your personal information.

In some regions, you have rights including the right to request access and obtain a copy of your personal information, to request rectification or erasure, to restrict processing, to data portability, and to object to processing. Contact us at cardnotespro@gmail.com to make a request.

Withdrawing your consent

If we are relying on your consent to process your personal information, you have the right to withdraw your consent at any time by contacting us. This will not affect the lawfulness of processing before its withdrawal.

Account information

If you would like to review or change information in your account or terminate your account, please contact us. Upon your request to terminate your account, we will deactivate or delete your account and information from our active databases. We may retain some information in our files to prevent fraud, troubleshoot problems, enforce our legal terms, or comply with applicable legal requirements.

If you have questions about your privacy rights, email us at cardnotespro@gmail.com.

11 Controls for Do-Not-Track Features

Most web browsers include a Do-Not-Track ("DNT") feature. At this stage, no uniform technology standard for recognizing and implementing DNT signals has been finalized, and we do not currently respond to DNT signals. California law requires us to disclose this. If a standard is adopted in the future, we will inform you in a revised version of this notice.

12 Do United States Residents Have Specific Privacy Rights?

In Short: If you are a resident of California, Colorado, Connecticut, Delaware, Florida, Indiana, Iowa, Kentucky, Maryland, Minnesota, Montana, Nebraska, New Hampshire, New Jersey, Oregon, Rhode Island, Tennessee, Texas, Utah, or Virginia, you may have additional privacy rights.

Categories of personal information we collect

CategoryExamplesCollected
A. IdentifiersEmail address, account name, unique personal identifierNO
B. California Customer RecordsName, contact information, financial informationNO
C. Protected classification characteristicsGender, age, race, ethnicity, marital statusNO
D. Commercial informationTransaction information, purchase history, payment informationNO
E. Biometric informationFingerprints and voiceprintsNO
F. Internet or network activityBrowsing history, search history, online behaviorNO
G. Geolocation dataDevice locationNO
H. Audio, electronic, or similar informationImages, audio, video or call recordingsNO
I. Professional or employment-related informationBusiness contact details, job title, work historyNO
J. Education informationStudent records and directory informationNO
K. Inferences from collected informationProfiles about preferences and characteristicsNO
L. Sensitive personal informationNO

Your rights

  • Right to know whether or not we are processing your personal data
  • Right to access your personal data
  • Right to correct inaccuracies in your personal data
  • Right to request the deletion of your personal data
  • Right to obtain a copy of the personal data you previously shared with us
  • Right to non-discrimination for exercising your rights
  • Right to opt out of the processing of your personal data if used for targeted advertising, the sale of personal data, or profiling

How to exercise your rights

Email us at cardnotespro@gmail.com. We will verify your identity and respond in accordance with applicable law. If we decline your request, you may appeal by emailing us and we will provide a written explanation. If your appeal is denied, you may submit a complaint to your state attorney general.

California "Shine The Light" Law: California residents may request information about personal information disclosed to third parties for direct marketing purposes once per year, free of charge. Contact us at the email above to make such a request.

13 Do We Make Updates to This Notice?

In Short: Yes, we will update this notice as necessary to stay compliant with relevant laws.

We may update this Privacy Notice from time to time. The updated version will be indicated by an updated "Last updated" date at the top of this page. If we make material changes, we may notify you by prominently posting a notice or by directly sending you a notification. We encourage you to review this Privacy Notice frequently.

14 How Can You Contact Us?

If you have questions or comments about this notice, please contact us:

Card Notes Pro

1000 Conestoga Rd, Apt A319

Bryn Mawr, PA 19010

United States

cardnotespro@gmail.com

15 How Can You Review, Update, or Delete Your Data?

Based on the applicable laws of your country or state of residence, you may have the right to request access to the personal information we collect from you, correct inaccuracies, or delete your personal information. You may also have the right to withdraw your consent to our processing of your personal information.

To request to review, update, or delete your personal information, please email us at cardnotespro@gmail.com.