Legal
Privacy Policy
Last updated: March 1, 2026
BayKit, Inc. ("BayKit," "we," "us," or "our") operates the BayKit platform, an AI-powered listing management and analytics service for eBay sellers. This Privacy Policy explains what information we collect, how we use it, and your rights with respect to that information.
By accessing or using our Service you agree to the collection and use of information in accordance with this policy. If you do not agree, please discontinue use of the Service.
1. Information We Collect
1.1 Account Information
When you register for a BayKit account, we collect your name, email address, and a hashed password. If you subscribe to a paid plan, our payment processor (Stripe) handles billing details; BayKit does not store raw card numbers.
1.2 eBay OAuth Credentials
To connect your eBay store, you authenticate through eBay's official OAuth 2.0 flow. We receive and store an encrypted access token and refresh token scoped to the permissions you grant. We never receive or store your eBay username or password. Tokens are encrypted at rest using AES-256 and transmitted exclusively over TLS 1.3.
1.3 eBay Listing Data
Once authorized, we retrieve your eBay listing data (titles, descriptions, item specifics, images, pricing, inventory levels, and category information) via the eBay Sell and Trading APIs. This data is stored in our database solely to provide optimization, analytics, and management features.
1.4 Usage and Analytics Data
We collect information about how you interact with the Service, including pages visited, features used, AI optimization requests made, and timestamps. This helps us improve product quality and diagnose issues.
1.5 Device and Log Data
Our servers automatically record your IP address, browser type, operating system, referring URL, and error logs when you access the Service. These logs are retained for up to 90 days.
2. How We Use Your Information
We use the information we collect to:
- 1Create and maintain your BayKit account.
- 2Connect to the eBay APIs on your behalf using your OAuth tokens.
- 3Generate AI-powered listing optimizations, title rewrites, descriptions, and item-specific suggestions.
- 4Provide analytics dashboards showing listing performance, pricing trends, and sales metrics.
- 5Process billing and subscription management through Stripe.
- 6Send transactional emails (account verification, billing receipts, password resets) and, where you have opted in, product announcements.
- 7Detect, prevent, and respond to fraud, abuse, and security incidents.
- 8Comply with applicable laws and enforce our Terms of Service.
- 9Improve our algorithms, models, and overall Service using aggregated and de-identified data.
3. Information Sharing
We do not sell your personal information. We share data only in the following limited circumstances:
Service Providers. We engage trusted third-party vendors (Stripe for payments, Amazon Web Services for hosting, Anthropic for AI inference, and PostHog for product analytics) who process data on our behalf under strict confidentiality agreements.
Legal Requirements. We may disclose information where required by law, court order, or governmental authority, or where necessary to protect the rights, property, or safety of BayKit, our users, or the public.
Business Transfers. In connection with a merger, acquisition, or sale of assets, user data may be transferred. We will provide notice before data is transferred and becomes subject to a different privacy policy.
With Your Consent. We may share information for any other purpose with your explicit consent.
4. Data Security
We implement industry-standard technical and organisational measures to protect your data against unauthorised access, alteration, disclosure, or destruction:
- AES-256 encryption for eBay OAuth tokens and sensitive fields at rest.
- TLS 1.3 for all data in transit.
- Regular automated backups with point-in-time recovery.
- Role-based access controls limiting employee access to production data.
- Routine security audits and vulnerability assessments.
No method of transmission or storage is 100% secure. In the event of a data breach that affects your personal information, we will notify you as required by applicable law.
5. Cookies
We use cookies and similar tracking technologies to operate and improve the Service. Essential cookies are necessary for authentication and security. Analytics cookies help us understand usage patterns. Please see our Cookie Policy for full details on the cookies we use and how to control them.
6. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
Access
Request a copy of the personal data we hold about you.
Correction
Request correction of inaccurate or incomplete data.
Deletion
Request deletion of your personal data, subject to legal retention requirements.
Portability
Receive your data in a structured, machine-readable format.
Objection
Object to processing based on legitimate interests.
Opt-Out of Marketing
Unsubscribe from marketing emails at any time using the link in any email.
To exercise any of these rights, please contact us at privacy@baykit.ai. We will respond within 30 days.
7. Data Retention
We retain your personal information for as long as your account is active or as needed to provide the Service. Upon account cancellation, we soft-delete your data and permanently purge it after 30 days, unless a longer retention period is required by law or to resolve disputes.
8. Children's Privacy
The Service is not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If you believe a minor has provided us with personal data, please contact us and we will delete it promptly.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on this page with an updated "Last updated" date and, where appropriate, sending you an email notification. Your continued use of the Service after any changes constitutes acceptance of the updated policy.
10. Contact Us
If you have questions about this Privacy Policy or wish to exercise your data rights, please contact:
BayKit, Inc. — Privacy Team
Email: privacy@baykit.ai
Website: baykit.ai