Privacy Policy

Effective date: April 24, 2026

1. Who We Are

ClearLogo.dev is operated by PIOTEE LLC, registered in Sheridan, Wyoming, United States. This Privacy Policy explains how we collect, use, and protect personal information when you use our logo API service at clearlogo.dev.

2. Information We Collect

Account information. When you sign in via GitHub or Google OAuth, we receive your name, email address, and profile image from that provider. We store this to identify your account and to contact you about the Service.

API keys. We generate and store API keys linked to your account. Secret keys are stored as cryptographic hashes — we cannot recover the raw secret key after it is shown to you once at creation.

Usage data. We track request counts per API key (per-minute and per-day) for rate limiting and plan enforcement. We do not log individual request payloads or response content.

Payment information. Billing is handled entirely by Polar, our payment processor. We do not store your credit card number or full payment details. We receive subscription status, plan tier, and renewal dates from Polar.

Infrastructure logs. Our infrastructure (Cloudflare) collects standard access logs including IP addresses, request timestamps, HTTP status codes, and user-agent strings. These are used for security monitoring and operational purposes and are retained for up to 90 days.

3. How We Use Your Information

We use your information only to:

  • Provide, operate, and improve the Service
  • Authenticate you and manage your account and API keys
  • Enforce rate limits and plan quotas
  • Process payments and manage subscriptions via Polar
  • Detect and prevent abuse, fraud, or security incidents
  • Respond to your support requests
  • Comply with legal obligations

We do not use your information to build advertising profiles, send unsolicited marketing emails, or train machine learning models. We do not sell your personal data to any third party.

4. Logo Data and Third-Party Content

Logos served by the Service are fetched from publicly accessible third-party websites and cached on our infrastructure. This crawled content is not associated with your personal identity. We do not claim ownership of any logo — they remain the intellectual property of their respective owners.

5. Sharing of Information

We share your information only in these limited circumstances:

  • Service providers. We share data with Cloudflare (infrastructure and CDN), Polar (payment processing), and GitHub / Google (OAuth authentication). Each operates under its own privacy policy and is contractually restricted to using data only to provide services to us.
  • Analytics. We use privacy-friendly, aggregated analytics to understand page and feature usage. No personally identifiable information is shared with analytics providers.
  • Legal requirements. We may disclose information if required by law, regulation, court order, or to protect the rights, property, or safety of PIOTEE LLC, our users, or the public.
  • Business transfers.In the event of a merger, acquisition, or sale of assets, your information may be transferred. We will provide at least 30 days’ notice via email or a prominent site notice before your data is subject to a different privacy policy.

6. Data Security

We apply industry-standard security measures to protect your data:

  • All data in transit is encrypted using TLS 1.2 or higher
  • Data at rest is protected using AES-256 encryption at the infrastructure level (Cloudflare)
  • Secret API keys are stored only as cryptographic hashes and are never recoverable
  • Access to production systems is restricted to authorized personnel

No method of transmission over the internet is 100% secure. If we become aware of a security incident affecting your data, we will notify you as required by applicable law.

7. Data Retention

We retain your account data for as long as your account is active. Usage counters are reset on a rolling basis (per-minute and per-day). Infrastructure access logs are retained for up to 90 days. To request deletion of your account and associated data, contact us at hello@clearlogo.dev. We will process deletion requests promptly, except where retention is required by law (e.g., billing records for tax compliance).

8. Your Rights — EEA, UK, and Switzerland

If you are located in the European Economic Area, United Kingdom, or Switzerland, you have the following rights regarding your personal data:

  • Access — request a copy of the data we hold about you
  • Rectification — correct inaccurate or incomplete data
  • Erasure— request deletion of your data (“right to be forgotten”)
  • Restriction — request we limit processing of your data
  • Objection — object to processing based on legitimate interests

To exercise these rights, contact us at hello@clearlogo.dev. We will respond within 30 days. You also have the right to lodge a complaint with your local supervisory authority.

We rely on the following legal bases for processing: contract performance (providing the Service), legitimate interests (security, abuse prevention), and legal obligation (compliance with applicable law).

9. Your Rights — California and U.S. State Privacy Laws

If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information we collect, the right to delete, and the right to opt out of the sale of personal information. We do not sell personal information.

Residents of Virginia, Colorado, Connecticut, and other states with applicable privacy laws have similar rights to access, correct, delete, and opt out of certain data processing. To exercise any of these rights, contact hello@clearlogo.dev.

10. International Data Transfers

Your data is stored and processed primarily in the United States on Cloudflare’s infrastructure. If you are located in the EEA, UK, or Switzerland, this constitutes a cross-border data transfer. We rely on Standard Contractual Clauses (SCCs) and other lawful transfer mechanisms as required by applicable law.

11. Cookies and Analytics

We use session cookies required for authentication. We use privacy-friendly, aggregated analytics to understand usage patterns without identifying individual users. We do not use advertising cookies or cross-site tracking. We do not respond to Do Not Track (DNT) browser signals, as we do not engage in the type of tracking DNT is designed to prevent.

12. Children's Privacy

The Service is not directed to children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

13. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by updating the effective date and, where appropriate, by email. Your continued use of the Service after changes constitutes acceptance.

14. Contact

For privacy questions, data requests, or complaints, contact us at hello@clearlogo.dev.