Privacy Policy
Last updated: March 7, 2026
1. Introduction
ASOcast ("we", "us", "our") is an EU-based App Store Optimization service. We are committed to protecting your personal data in compliance with the General Data Protection Regulation (GDPR) and other applicable privacy laws. This policy explains how we collect, use, and protect your information when you use our service at asocast.com.
2. Data Controller
ASOcast is the data controller for personal data processed through our service. For questions about data processing, contact us at privacy@asocast.com.
3. Data We Collect
We collect the following types of data:
- Account data: Email address, name (optional), and authentication credentials when you create an account.
- App data: App Store and Google Play URLs you submit for analysis, app descriptions, and generated listing content.
- Usage data: Feature usage counts, generation history, and keyword research results.
- Payment data: Processed by Stripe. We store only your Stripe customer ID — we never store credit card numbers.
- Technical data: IP address (for rate limiting only, not stored long-term), browser type, and access timestamps.
4. How We Use Your Data
- To provide our ASO analysis and listing generation services
- To manage your account and subscription
- To process payments via Stripe
- To enforce usage limits and prevent abuse
- To improve our service and AI models
- To send essential service communications (account, billing)
5. Third-Party Data Processors
We use the following third-party services:
- OpenAI: We send app descriptions and metadata to OpenAI's API for AI-powered analysis and content generation. OpenAI processes this data per their API data usage policy and does not use API inputs for training.
- Stripe: Handles payment processing. Stripe's privacy policy governs payment data handling.
- Supabase: Provides database hosting (PostgreSQL). Data is stored in EU-region servers.
- Vercel: Hosts our application. Subject to Vercel's privacy policy.
6. Legal Basis for Processing (GDPR)
- Contract performance: Processing necessary to provide services you've subscribed to.
- Legitimate interest: Analytics, service improvement, and fraud prevention.
- Consent: Marketing communications (if any — you can opt out anytime).
7. Your Rights (GDPR)
Under GDPR, you have the right to:
- Access: Request a copy of your personal data.
- Rectification: Correct inaccurate data.
- Erasure: Request deletion of your data ("right to be forgotten"). Use the delete account feature in Settings.
- Portability: Receive your data in a machine-readable format.
- Restriction: Limit processing of your data.
- Objection: Object to processing based on legitimate interest.
To exercise these rights, contact privacy@asocast.com. We will respond within 30 days.
8. Data Retention
We retain your data for as long as your account is active. When you delete your account, all personal data is permanently removed within 30 days. Anonymized usage statistics may be retained for analytics.
9. Cookies
We use essential cookies only for authentication session management. We do not use tracking cookies, advertising cookies, or third-party analytics cookies.
10. Data Security
We implement industry-standard security measures including encrypted connections (TLS), hashed passwords (bcrypt), and role-based access controls. Payment data is handled entirely by Stripe (PCI DSS compliant).
11. Changes to This Policy
We may update this policy periodically. Significant changes will be communicated via email. Continued use of the service after changes constitutes acceptance.
12. Contact
For privacy inquiries, contact us at privacy@asocast.com