PRIVACY POLICY · EFFECTIVE AUGUST 1, 2026
Privacy, with the important details.
PetFitly service operator operates PetFitly. This policy covers the website, account center, API, and Chrome extension. Contact privacy@petfitly.app; our business mailing address is Business address available on request.
What stays on your device
Pet profiles, analysis history, favorites, comparison selections, language, and settings are stored in Chrome by default. PetFitly analyzes a supported product page only after you click the extension. Local-only use does not send the extracted product facts or pet profile to our servers, but it is still disclosed because page content and the current URL are user data under Chrome Web Store policy.
Information we collect when you use cloud features
- Account data: Google account identifier, email address, and display name; authentication sessions are stored as revocable token hashes.
- Pet profile data you choose to sync, including species, measurements, dietary restrictions, preferences, health-related caution flags, and budget.
- Structured current-page product facts sent after your cloud-analysis consent, such as merchant, product ID, title, price, ingredients, nutrition, dimensions, source, and confidence. We do not request the complete page HTML.
- Favorites, comparisons, analysis history, alerts, feedback, and package images you intentionally upload.
- Operational data such as request time, IP address, user agent, errors, and an anonymous merchant/outcome/extractor-version event for cloud extraction quality. The event excludes product URL, title, product ID, and user ID.
- Billing status, Stripe customer/subscription IDs, price ID, renewal date, and webhook events. Stripe—not PetFitly—handles full payment-card details.
Why we use information
We use this information to authenticate you; sync profiles and saved items; extract, compare, and explain product facts; calculate deterministic fit results; deliver price and recall alerts; process subscriptions; prevent abuse; diagnose failures; provide support; comply with law; and improve extraction quality. Health-related profile fields are used to withhold unsafe general recommendations and show veterinary guidance, not to diagnose or treat disease.
Service providers and disclosures
We disclose only what is needed to providers that operate the service: Google for sign-in, Stripe for billing, hosting/database/cache/object-storage and email providers, monitoring providers, and an AI/OCR provider only for a user-requested packaging extraction or grounded explanation. Providers act under contract and may not use PetFitly data for their own advertising. We may disclose data when required by law, to protect users or the service, or in a corporate transaction with notice where required.
PetFitly does not sell personal information, share it for cross-context behavioral advertising, or use page content or browsing activity for personalized advertising or credit decisions. Sponsored or affiliate relationships never change fit or safety scores.
Chrome Web Store Limited Use
Our use and transfer of information received from Chrome APIs complies with the Chrome Web Store User Data Policy, including its Limited Use requirements. We use it only to provide and improve PetFitly's single product-comparison purpose, for security, or as legally required. Humans do not read page or profile data except with your affirmative permission for support, when necessary for security or abuse investigation, when required by law, or after aggregation and de-identification for internal operations.
Retention and deletion
Cloud account records remain while your account is active. Original package images are deleted after 30 days; deleted object versions expire within one additional day. Extracted facts may remain with your account. Security and application logs are retained only for the configured operational window. Account deletion cancels the active subscription, deletes active upload objects and cascades user-owned cloud records. Encrypted database backups are rotated after 35 days, so deleted records may remain inaccessible in backups until rotation and are not restored except for disaster recovery. Local extension data must be cleared in Chrome or by uninstalling the extension.
Your choices and privacy rights
Cloud analysis and pet-profile sync are off until you enable them. The account center lets you access/export and delete your data; you can correct profile data in the product. You may also ask privacy@petfitly.app to access, correct, delete, or restrict relevant information, or to appeal a denied request. We verify requests and may retain limited records required for fraud prevention, billing, or law. Where local law applies, you may use an authorized agent and will not be discriminated against for exercising privacy rights.
Security, international processing, and children
We use TLS, access controls, hashed refresh tokens, least-privilege extension permissions, private storage, secret management, monitoring, and tested backups. No system is perfectly secure. Providers may process data in the United States and other locations subject to appropriate contractual safeguards where required. PetFitly is for adults and is not directed to children under 13; we do not knowingly collect their personal information. Contact us if you believe a child provided data.
Changes and contact
We will update the effective date and provide additional notice for material changes. Privacy questions and requests: privacy@petfitly.app. General support: support@petfitly.app.