Start your launch Sign in

/ privacy policy

Privacy Policy

What we collect, why we need it, who helps us process it, and the choices available to you. The free report needs no account, and running one does not put you on an email list.

Last updated: July 13, 2026

The short version

  • Running a free report needs no account, and we do not capture you as a lead or send you email.
  • A paid account stores your email and the project, billing, and service data needed to provide what you bought.
  • We do not sell your data, we do not use it for advertising, and we never post anything on your behalf.

What we collect

We keep data collection to what the product actually needs.

  • URLs and public web information. This includes a URL you submit, the page content and metadata we read, public search results, and public posts, comments, profiles, or forum threads used to produce a report or paid service. Reports are stored by domain so their links keep working.
  • Account and contact information. This includes your email address, authentication identifier, and anything you send through support or another contact form.
  • Project and service data. This includes your products, target markets, launch inputs, venues, drafts, task statuses, Scout settings, keywords, subreddits, linked Reddit username, and public account-standing signals.
  • Payment and subscription records. Our payment processor handles your card details. We receive transaction, customer, subscription, status, and basic billing records, but not your full card number.
  • Email preferences and delivery records. This includes whether Scout digests are enabled and the delivery status of service emails.
  • Technical and security data. This may include your IP address, browser or device information, request and error logs, and abuse-prevention results needed to operate and secure the service.

What we do not do

  • We do not sell, rent, or trade your personal data.
  • We do not run advertising or third-party ad trackers, and we do not build advertising profiles.
  • We do not email you because you ran a free report.
  • We do not post, submit, or act on third-party platforms for you. You always do that yourself.

How we use your data

We use the data above to run reports and paid services, authenticate your account, personalise and store your work, process payments and subscriptions, monitor reliability, prevent abuse, troubleshoot and improve Nilkick, send service and Scout emails you have enabled, comply with legal obligations, and answer you when you contact support.

Running a free report does not subscribe you to marketing. If we introduce marketing email in the future, we will obtain any consent required by law and provide an easy way to unsubscribe.

Public reports

A report lives at a link tied to the domain it describes. Anyone with that link can open it, which is what makes a report shareable, but we do not list or index reports ourselves. If you want a report taken down, email hello@nilkick.com and we will remove it.

Who we share it with

We share data only with the service providers that help us run Nilkick, and only so that they can perform their function. These currently include:

  • Hosting and network on Cloudflare, which serves the site and runs our workers;
  • Database and authentication on Supabase, which stores accounts and launch data behind row-level access controls;
  • Payments through Stripe, which handles checkout, card processing, subscriptions, and the billing portal;
  • Email through Resend, which delivers authentication, account, support, and Scout messages;
  • Search and public web data through Serper and Bright Data, used to find and read public signals, profiles, and conversations;
  • AI processing through Anthropic via Cloudflare’s AI Gateway, used to infer product context and draft, assess, and critique content. Information sent for this purpose can include public product material and the project context or instructions needed for the task. The rule-based score is computed by Nilkick, not by an AI model;
  • Security and abuse prevention through Cloudflare Turnstile when you use a protected form.

These providers process data under their own contractual, security, and privacy commitments. We give them only the information reasonably needed for their function.

We may also disclose information where required by law, to protect the rights or safety of Nilkick or others, or as part of a business sale or reorganisation. If ownership changes, this policy will continue to apply to the transferred information unless you are notified otherwise.

Cookies and local storage

We use the minimum browser storage the site needs: authentication cookies to keep you signed in, an attribution cookie that remembers which report led you to a purchase, and local storage for preferences such as light or dark theme. Cloudflare Turnstile may also process technical data when it protects a form. We do not use third-party advertising cookies.

The Nilkick browser extension has a separate Extension Privacy Policy covering information stored or accessed by the extension.

How long we keep it

We keep reports so that their shareable links keep working, unless you ask us to remove one. We generally keep account, project, and service data while your account is open so the product and your history continue to work.

We keep payment, subscription, support, security, and basic transactional records for as long as reasonably needed for legal, accounting, dispute-resolution, security, and fraud-prevention purposes. Provider logs and routine backups may persist for limited periods after deletion from the live product.

You can ask us to delete your account or other personal information. We will delete or de-identify it where reasonably possible, but may retain information that we are required or permitted to keep by law.

Your choices and rights

You can ask to access or correct the personal information we hold about you, request deletion where available, have a public report removed, turn Scout digest emails off in Scout settings, or cancel a Scout subscription through the billing portal. Email hello@nilkick.com to make a privacy request. We may need to verify your identity before acting on it.

If you believe we have mishandled your personal information, email hello@nilkick.com with enough detail for us to investigate. We will acknowledge and investigate the complaint and aim to respond within 30 days. If the Australian Privacy Act applies to Nilkick and you are not satisfied with our response, you may be able to complain to the Office of the Australian Information Commissioner.

Security

We protect data with measures appropriate to its sensitivity: encrypted connections (HTTPS), row-level access controls on your account data, and a payment processor that handles card details so that we never hold them. No system is perfectly secure, but we work to keep yours safe and to fix issues quickly.

Children

Nilkick is a tool for people shipping products and is not directed to children. We do not knowingly collect data from anyone under 18. If you believe a child has given us data, email hello@nilkick.com and we will delete it.

International users

Nilkick is operated from Australia but uses providers with globally distributed infrastructure. Personal information may be processed in Australia, the United States, and other countries where the providers listed above operate. Privacy protections in those countries may differ from Australian law. We take reasonable steps appropriate to the service and our legal obligations when using overseas providers.

Changes to this policy

We may update this policy as the product changes. When we do, we will update the date at the top of this page, and material changes take effect when posted. If a change is significant and you have an account, we will make a reasonable effort to let you know.

Contact

Questions about your privacy or this policy? Email us at hello@nilkick.com.