Privacy

Last updated: 7 October 2026. This policy explains what personal data PinSleuth collects, why, who sees it, how long we keep it and what rights you have. It covers the website pinsleuth.com, the PinSleuth web app and API (app.pinsleuth.com, api.pinsleuth.com) and the PinSleuth browser extensions. We wrote it to be read.

1. Who is responsible

The data controller is Phillip Stemann (sole proprietorship, CVR 34846227), Ved Stigbordene 41, 2450 Copenhagen SV, Denmark (“we”, “us”). You can reach us at hello@pinsleuth.com. We have not appointed a data protection officer. Questions about your data go to that address and we answer within one month.

2. The short version

  • The website has no cookies, no analytics, no advertising and no third-party scripts or fonts.
  • The app uses one cookie, the one that keeps you signed in. When you pay, Stripe’s checkout page uses its own cookies under its own policy.
  • We never sell personal data and never use it for advertising.
  • Everything runs on servers in the European Union (Helsinki, Finland). A few services we use may process data outside the EU. Section 9 explains which and why that is lawful.
  • You can ask us to show, correct, export or delete your data at any time.

3. What we collect, why and for how long

SituationDataWhy and legal basisHow long
Visiting the websiteIP address, browser type, page address and time, in short-lived server logsTo deliver the pages and keep the site secure and free of abuse. Legitimate interest, Art. 6(1)(f) GDPR.In the server logs for a short period, never longer than 30 days.
Joining the waitlistEmail address, whether you chose “blogger / creator” or “agency / freelancer”, which form you used, the wording you agreed to, the time, whether you confirmedTo tell you when PinSleuth opens. Your consent, Art. 6(1)(a).Deleted automatically: a sign-up you never confirm after 30 days, an unsubscribed address after 30 days, and every other address 24 months after you signed up or confirmed. You can ask us to delete it sooner at any time.
Having an app accountEmail, name (optional), a hashed password, plan and role, sign-in times, sessions, your API keys (stored hashed) and your settingsTo create and run your account. Contract, Art. 6(1)(b).While your account exists. Deleted accounts are removed within 30 days; backups holding them are overwritten within 7 days. If a subscription ends and you do not return, the account is kept for a limited time and deleted when you ask or when we review inactive accounts, at least once a year.
Using the appThe keywords, websites, accounts, pins and lists you track or save, rank history, alerts, reports and notesTo provide the features you asked for. Contract, Art. 6(1)(b).While your account exists. You can delete items yourself or ask us.
Your own keysAn Anthropic API key, if you add one for the AI writer; optional email or webhook settingsTo run the AI writer and notifications for you. Contract, Art. 6(1)(b).Until you remove them or delete your account. Keys are stored encrypted.
Paying for a planName, email address, billing address, VAT number (if you enter one), the plan and billing period, and the status and dates of your subscription, and your invoices. Your card details go straight to Stripe and never reach usTo sell and bill the subscription, send invoices and keep the records the law requires. Contract, Art. 6(1)(b), and legal obligation, Art. 6(1)(c), under the Danish Bookkeeping Act.While your subscription exists. Invoices and accounting records are kept for 5 years, as the Bookkeeping Act requires.
Connecting your Pinterest account (optional)If you choose Connect Pinterest and approve it on Pinterest: your Pinterest username, profile picture, follower and pin counts, your boards, and the analytics Pinterest reports for your own pins (impressions, saves, clicks, engagement), plus an access token that lets us read these. We read only your own data, never anyone else’s through your connection, and we never post or change anythingTo show you the performance of your own pins and boards. Your consent, Art. 6(1)(a), given when you approve the connection on Pinterest.Until you disconnect (Account, then Disconnect), when we delete the token and all this data, or until you delete your account. You can also withdraw access in your Pinterest settings.
Emails we send youYour email address and the email itself (invitations, password resets, account notices)To run your account securely. Contract and legitimate interest, Art. 6(1)(b) and (f).Our email platform keeps a record that an email was sent. It is removed when you ask us to delete your data.
Using the browser extensionYour API key, and the keyword, pin ID or Pinterest username of the page you are looking at; in the Pin writer, the keyword and the title, description and link you typedTo show you volumes, stats and writing suggestions. Contract, Art. 6(1)(b).Requests are answered and not kept as a log of what you looked at, apart from the data you chose to save in your account.
SecurityIP addresses and email addresses of sign-in attemptsTo stop password guessing and abuse. Legitimate interest, Art. 6(1)(f).Kept in memory for at most an hour, then forgotten. Not stored with your account.
Public Pinterest dataPublic pin titles, descriptions, annotations, statistics and the public names (usernames) of the accounts behind themTo power the research features. Legitimate interest, Art. 6(1)(f). See section 7.Kept while it is useful. You can ask us to remove your public username from our database.

4. Website visitors

pinsleuth.com sets no cookies and loads nothing from other companies. The pages are delivered through Cloudflare, which means your request passes through Cloudflare’s network and your IP address is processed by Cloudflare for delivery and protection against attacks (see section 8). Our web server writes a short log line for each request (IP address, time, page, browser) so that we can fix errors and spot abuse. We do not combine these logs with any other data and we do not use them for profiling.

The sign-up form protects itself against bots with a hidden field and a limit on attempts per hour. For the limit we use a one-way (hashed) form of your IP address that expires after an hour and is not stored with your sign-up.

5. The waitlist

When you join the waitlist we ask for your email address and which description fits you best. By ticking the box you consent to being emailed when PinSleuth opens. We use double opt-in: we send one email asking you to confirm, and only confirmed addresses are emailed about the launch. We record when you agreed and the exact wording you saw, because the law requires us to be able to prove it.

The confirmation email is sent from our own server, from [email protected]. Once you confirm, your address is stored in Mailnaptic, our own email platform, which will send the launch email. Every email from the platform contains an unsubscribe link. You can withdraw your consent at any time, with no reason, and withdrawing does not affect anything we did before. After you unsubscribe we delete your address within 30 days. Sign-ups that are never confirmed are deleted after 30 days. In any case we delete waitlist data 24 months after you signed up or confirmed. This deletion runs automatically, and it also removes the address from our email platform unless it is also on another of our mailing lists, in which case it stays there until you ask us to remove it.

6. App accounts and the API

PinSleuth is invitation-only for now. When you accept an invitation we store the data in section 3. Your password is never stored; we keep a salted scrypt hash. API keys are shown once and stored only as hashes. Any Anthropic key you add is stored encrypted. Each user’s data is kept in a separate database file, and one user can never see another user’s tracked keywords, lists or history.

We use your email address for messages about your account and the service: invitations, password resets and important notices (for example about security, changes to these terms or the end of the service). We do not send marketing emails to app users unless you separately agree to receive them.

The app sets one cookie, called psid. It keeps you signed in, it is only readable by our server (HttpOnly), it is sent only over encrypted connections, it expires after 30 days or when you sign out, and it is strictly necessary for the service, so no consent banner is needed. The app also stores display preferences, such as which menu sections are open or compact rows, in your browser’s local storage. This never leaves your device. We use no analytics, advertising or tracking technologies in the app.

7. Public Pinterest data

PinSleuth’s research features rely on information that Pinterest shows publicly: search suggestions, pin titles and descriptions, the keywords Pinterest attaches to pins (annotations), public statistics, and the public usernames and profile statistics of the accounts behind them. Some of this relates to identifiable people, mostly bloggers and businesses that publish on Pinterest on purpose.

We process it on the basis of our legitimate interest in offering Pinterest research tools (Art. 6(1)(f)). It is information the people concerned have made public, we use it only to provide research and ranking features, we do not build profiles of individuals and we do not use it for advertising. Because we collect it from Pinterest and not from you, we cannot inform every person individually; this section is our public notice (Art. 14(5)(b)). If your public Pinterest username or content appears in PinSleuth and you want it removed, email us the username and we will delete it from our database. You can also object to the processing (see section 11).

If you connect your own Pinterest account, PinSleuth uses Pinterest’s official sign-in. You approve it on Pinterest’s own page, we never see your Pinterest password, and the connection can only read your analytics, pins and boards. You can disconnect in PinSleuth (we then delete the token and the data we saved from it) or remove PinSleuth under your Pinterest account’s connected apps.

Without that connection PinSleuth does not access private Pinterest content or your account. Even with it, PinSleuth cannot post or change anything on your Pinterest account.

8. Who receives your data

We do not sell or rent personal data. These companies handle data on our behalf, or you choose to send data to them:

CompanyWhat forWhere
Hetzner Online GmbHHosts the server that runs the website, the app, the database and our outgoing emailData centre in Helsinki, Finland (EU)
Cloudflare, Inc.DNS and delivery network and security in front of pinsleuth.com, app.pinsleuth.com and api.pinsleuth.com. Sees the traffic to and from these sitesGlobal network; the company is in the United States
MailnapticOur email platform, which we operate ourselves. Stores confirmed waitlist addresses and sends the launch email. Invitations, password resets and waitlist confirmations are sent directly from our own serverOur server in Helsinki, Finland (EU)
Anthropic PBCOnly if you add your own Anthropic key and use the AI writer: the keyword, and any draft or notes you give it, are sent to Anthropic to produce suggestions. This happens under your own account with Anthropic and its termsUnited States
Stripe Payments Europe, Limited and Stripe, Inc.Payment processing for subscriptions, invoices, VAT calculation and the customer portal where you manage your subscription. Stripe handles your card details and is responsible for them under its own privacy policyIreland and the United States
Pinterest, Inc.Only if you connect your account: you approve the connection with Pinterest, which sends us your own analytics, pins and boards through its official API. Pinterest handles the sign-in and is responsible for it under its own privacy policyPinterest’s own, including the United States
Chrome Web Store (Google) and Firefox Add-ons (Mozilla)Distribute the extensions. They receive standard install information under their own privacy policies; we do not receive itTheir own

We may also disclose data if a law, a court or an authority requires it, or to protect our rights or the safety of others.

9. Transfers outside the EU

Our servers and our email platform are in the EU. Cloudflare, Stripe and Anthropic are, or have a part, in the United States. Where personal data reaches them we rely on the European Commission’s adequacy decision for the EU–US Data Privacy Framework for companies that are certified under it, or on the Standard Contractual Clauses approved by the Commission. You can ask us for details.

10. Security

  • All traffic between your browser, the extensions and our servers is encrypted (TLS).
  • Passwords are stored only as salted scrypt hashes; API keys and sign-in links as hashes; stored third-party keys are encrypted with AES-256-GCM.
  • Sign-in attempts are limited per address and per network, and sign-in links and password-reset links work once and expire.
  • Browser requests that change data must come from our own app, and the API accepts keys only as a bearer token.
  • Users’ data is kept in separate database files. Nightly backups are kept on the server for 7 days.
  • Server access is restricted to key-based logins for the operator.

No system is perfectly secure. If a breach puts your rights at risk we will tell you and the authorities as the law requires.

11. Your rights

Under the General Data Protection Regulation (GDPR) you have the right to:

  • Access the personal data we hold about you and get a copy.
  • Correct data that is wrong or incomplete.
  • Erase your data (“the right to be forgotten”), for example by deleting your account.
  • Restrict how we use your data in certain cases.
  • Receive your data in a common, machine-readable format and have it passed to someone else (data portability).
  • Object to processing that is based on our legitimate interest, including the processing of public Pinterest data.
  • Withdraw consent at any time where we rely on it, such as for the waitlist.

To use any of these rights email hello@pinsleuth.com. We may ask you to prove who you are before we hand over or delete data. We answer within one month. If you are not happy with how we handle your data you can complain to the Danish Data Protection Agency (Datatilsynet, datatilsynet.dk) or to the data protection authority in your own country. We would appreciate the chance to put things right first.

12. Children

PinSleuth is a professional tool for adults. It is not meant for anyone under 18 and we do not knowingly collect data from children. If you think a child has given us data, tell us and we will delete it.

13. The browser extension

The extension adds PinSleuth to pinterest.com pages. It keeps your API key in the browser’s extension storage and sends it, with each request, to api.pinsleuth.com only. When you open a keyword search, a pin or a profile on Pinterest it sends the keyword, the pin ID or the username to PinSleuth so that we can return volumes, statistics and annotations. Pin statistics shown on the pins you scroll past are fetched from Pinterest by your own browser using your own session and are not sent to us. In the Pin writer on Pinterest’s pin creation page it sends the keyword you type and, to score and write for you, the title, description and link you have entered there. It does not read your messages, your passwords or any other page content, it does not run on other websites, and it contains no advertising or analytics code.

The data the extension receives from PinSleuth is used only to provide the extension’s features. We do not sell it, we do not use it to decide on credit or lending, and we do not use it for anything unrelated to the extension’s purpose. You can disconnect the extension at any time from its popup, which deletes the stored key from your browser.

14. Changes to this policy

If we change this policy in a way that matters to you we will tell you by email or in the app before the change takes effect, and we will update the date at the top. Older versions are available on request.

15. Contact

Phillip Stemann (sole proprietorship, CVR 34846227), Ved Stigbordene 41, 2450 Copenhagen SV, Denmark
Email: hello@pinsleuth.com