Privacy Policy
Effective Date: May 16, 2026 · RotaryTuner
Introduction
This Privacy Policy explains how RotaryTuner, a trade name of Westgate Design LLC, collects, uses, discloses, and protects information when you use our website, AI tools, account features, community features, subscriptions, marketplace, shop, and related services.
If you do not agree with this policy, do not use RotaryTuner. If you have questions, privacy requests, or safety reports, use the in-app support flow when available or the site feedback tool.
1. Information We Collect
1.1 Account and Profile Information
- Email address, account identifiers, authentication records, and password credentials handled by our authentication provider
- Username, display name, avatar, profile settings, notification preferences, and theme preferences
- Build profile information such as vehicle year, make, model, chassis, engine, modifications, goals, notes, photos, posts, comments, follows, reactions, and visibility settings
- User-generated content such as community posts, comments, build journals, profile text, captions, marketplace content, messages, uploaded images, and moderation decisions or safety metadata related to that content
- Marketplace listing information such as item title, category, condition, price, location, photos, seller details, and optional community-feed sharing preferences
1.2 AI, Chat, Voice, and Memory Data
- Prompts, questions, chat messages, generated responses, uploaded or attached content, and chat session metadata
- Saved chat history, generated chat titles, conversation summaries, and extracted memory used to personalize future answers
- Voice transcription inputs, temporary audio uploads, text-to-speech requests, and related processing metadata when you use voice features
- AI usage counters, model-selection information, token estimates, rate-limit records, and service-cost logs
1.2A Direct Messages
Direct messages are not public, but they are not end-to-end encrypted. We may process, scan, store, and review direct-message content and attachments to deliver messages, detect abuse, enforce safety rules, investigate reports, comply with law, and protect users and the Service.
1.3 Billing, Subscription, Shop, and Shipping Information
- Subscription tier, renewal status, Stripe customer ID, Stripe subscription ID, trial status, billing events, invoices, and payment status
- Payment card details are processed by Stripe. RotaryTuner does not store full card numbers or card security codes
- Shop order details, cart items, fulfillment status, shipping charges, customer email, shipping name, shipping address, and order history
- Saved shipping address if you choose to save it for future checkout. You can remove the saved address from account settings
1.4 Support, Reports, and Communications
- Support requests, bug reports, order issue reports, report type, subject, description, email address, and related metadata
- Service emails, notification records, internal alert records, and communications needed to respond to you or operate the Service
1.5 Automatically Collected Technical Data
- IP address, device and browser information, operating system, pages viewed, referring pages, timestamps, session cookies, preference cookies, request metadata, and server logs
- Security, abuse-prevention, rate-limiting, fraud-prevention, uptime, error, and performance logs
- Aggregate product analytics such as page views, feature usage, signup funnel activity, and checkout conversion
1.6 Public Content
Public profiles, public builds, public posts, public comments, public marketplace listings, usernames, display names, photos, and other public submissions may be visible to other users and visitors. Public content may be copied, indexed, cached, screenshotted, or shared by others outside RotaryTuner's control.
2. How We Use Information
- Provide accounts, authentication, subscriptions, billing, checkout, shipping, fulfillment, support, and community features
- Generate and personalize AI responses using your build profile, chat history, saved memory, and relevant knowledge-base context
- Maintain safety, screen user-generated text and images, prevent abuse, enforce content rules and rate limits, detect suspicious activity, and protect paid AI resources from automated or excessive use
- Improve reliability, debug errors, measure feature usage, understand aggregate traffic patterns, and make product decisions
- Send transactional emails, service notices, account notices, billing notices, and support replies
- Operate support workflows, internal alerts, order review, marketplace reports, copyright complaints, and safety reviews
- Comply with tax, accounting, chargeback, legal, security, fraud-prevention, preservation, and dispute obligations
We do not sell your personal information.
We do not use your chat history, build profile, shipping address, or billing information for third-party advertising profiles.
3. Analytics and Cookies
We use cookies and similar technologies needed for login, security, preferences, and basic site operation. These include session cookies and preference cookies such as theme settings.
We use Vercel Web Analytics and server-side operational logs to understand aggregate traffic, page views, performance, and product usage. We configure analytics for product measurement, not cross-site advertising. Do not include sensitive personal information in URLs, query strings, or public profile fields because page URLs and referrers may be processed as analytics or log data.
We do not currently use Google Analytics, Meta/Facebook Pixel, TikTok Pixel, ad retargeting pixels, or third-party behavioral advertising trackers. If that changes, we will update this policy before using those tools.
4. AI Processing and Model Providers
When you use AI features, relevant prompts, messages, uploaded text or images, build context, knowledge-base context, and generated responses may be processed by AI providers such as OpenAI and Anthropic so they can generate responses. Your email, full payment card details, and saved shipping address are not intentionally sent to AI providers unless you include that information in your prompt or uploaded content.
AI responses may be inaccurate or incomplete. Do not submit sensitive personal, financial, medical, legal, or safety-critical information that is not needed for your request.
We may also use AI or automated moderation providers to analyze user-generated text and uploaded images for safety reasons, including detecting pornography, nudity, sexual content, threats, hate, harassment, spam, abuse, and suspected exploitation content. Images may be resized or compressed before analysis.
Voice transcription may be processed by OpenAI or similar providers. Audio is used to generate a transcript or response and is not intentionally retained by RotaryTuner after processing except where logs, abuse investigations, legal holds, or provider-side retention rules require otherwise.
We use API-based AI services. Based on current provider commitments, OpenAI and Anthropic do not use API customer content to train their models by default. Provider terms may change, and their own retention and abuse-monitoring rules may apply.
5. Service Providers and Disclosures
We share information with vendors only as needed to operate RotaryTuner, including:
- Supabase for authentication, database, storage, and account data
- Stripe for payment processing, subscriptions, invoices, fraud controls, and billing portal features
- OpenAI and Anthropic for AI response generation, transcription, moderation, safety analysis, and related AI processing
- Vercel for hosting, server logs, performance monitoring, and Web Analytics
- Printify and related fulfillment providers for shipping calculation, production, fulfillment, and delivery of shop orders
- Resend, Freshdesk or other support inbox tools, and other email providers for transactional email, support intake, and support communications
- Cloudflare Turnstile or similar providers for bot and abuse prevention
- Telegram or similar notification tools if we send internal operational alerts about support, security, or order events
We may also disclose information if required by law, to protect rights and safety, to investigate abuse or fraud, to preserve evidence, to respond to intellectual-property or marketplace disputes, in connection with a business transfer, or with your consent.
6. Retention
- Account and profile data: kept while your account is active and for a reasonable period after deletion for backup, security, fraud-prevention, dispute, and legal needs
- Chat history, summaries, and memory: kept while your account is active unless you delete available records or request deletion, subject to backup, security, abuse-prevention, and legal limitations
- Billing, invoice, tax, chargeback, and order records: generally kept for up to 7 years or longer if legally required
- Shipping addresses: order shipping addresses are retained with order records; saved shipping addresses are kept until you remove them or delete your account, subject to legal retention needs
- Marketplace listings and transaction-related records: kept while listings are active and for a reasonable period afterward for safety, fraud-prevention, dispute, legal, and backup needs
- Support and report records: kept as long as needed to resolve the issue, maintain safety, and keep business records
- Security, analytics, rate-limit, and operational logs: kept for a limited period appropriate for security, debugging, abuse prevention, product measurement, and legal compliance
- Moderation records: kept as long as reasonably needed to enforce community rules, investigate abuse, protect users, preserve evidence of serious violations, and comply with legal obligations
7. Your Choices and Rights
- You can update account/profile information in the Service where those controls are available
- You can remove your saved shipping address in account settings
- You can request access, correction, deletion, or export of personal information through the in-app support flow when available or the site feedback tool
- You can unsubscribe from non-essential communications where an unsubscribe method is provided
- Deleting an account may not remove records we must retain for legal, tax, accounting, security, fraud-prevention, dispute, or chargeback purposes
- Deleting content may not remove public copies, screenshots, cached pages, search results, backups, or records held by other users or third parties
To exercise privacy rights, use the in-app support flow when available or the site feedback tool.
8. California Privacy Notice
California residents may have additional rights under the California Consumer Privacy Act as amended by the CPRA, if the law applies to RotaryTuner. These may include the right to know, access, correct, delete, limit certain uses of sensitive personal information, opt out of sale or sharing, and not be discriminated against for exercising privacy rights.
RotaryTuner does not sell personal information. RotaryTuner does not knowingly sell or share personal information of users under 16. To submit a California privacy request, use the in-app support flow when available or the site feedback tool and identify the request as a California privacy request.
Depending on how you use the Service, categories of personal information we may collect include identifiers, account information, internet or network activity, commercial information, user-generated content, geolocation-like location information you choose to provide in listings or profiles, audio information from voice features, and inferences used for safety, personalization, or product improvement. We disclose these categories to service providers for the business purposes described in this policy.
9. Children
RotaryTuner is not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe a child provided personal information to us, contact us and we will take appropriate action.
Users under 18 may use RotaryTuner only with permission from a parent or legal guardian. Users must be 18 or have parent/guardian permission to make purchases, subscribe, start paid trials, list marketplace items, or enter marketplace transactions. RotaryTuner may contain user-generated automotive community content and adult language, but pornography, nudity, sexual content, sexual solicitation, and sexual exploitation content are prohibited.
10. Security
We use administrative, technical, and organizational safeguards designed to protect personal information, including HTTPS/TLS, authentication controls, database access controls, payment processing through Stripe, upload validation, content moderation, rate limiting, and abuse-prevention controls.
No system is completely secure. You are responsible for using a strong password, protecting your account, and promptly notifying us of suspected unauthorized access.
11. International Processing
RotaryTuner is operated from the United States. Your information may be processed in the United States and other locations where we or our service providers operate. If you use the Service from outside the United States, you understand that your information may be transferred to and processed in those locations.
12. EU and UK Privacy Rights
If the GDPR, UK GDPR, or similar laws apply to your use of RotaryTuner, you may have rights to access, correct, delete, restrict, object to processing, request portability, withdraw consent where processing is based on consent, and lodge a complaint with your local data protection authority.
We process information to perform our contract with you, operate and secure the Service, comply with legal obligations, pursue legitimate interests such as safety, fraud prevention, product improvement, support, and analytics, and with your consent where required. When information is transferred outside your country, we rely on service provider safeguards and lawful transfer mechanisms where required.
13. Security and Breach Notices
If we determine that a security incident requires notice under applicable law, we will provide notice using the contact information available to us or another legally acceptable method.
14. Changes
We may update this Privacy Policy from time to time. Material changes will be posted with an updated effective date. Continued use of RotaryTuner after the updated policy is posted means you accept the updated policy to the extent permitted by law.
15. Contact
Legal and Privacy Inquiries
Use the in-app support flow when available or the site feedback tool.
RotaryTuner is a trade name of Westgate Design LLC, a Hawaii limited liability company.