← Browse

Version productbaton-privacy-2026-09-28 · Effective 2026-09-28

Privacy

This notice explains what information ProductBaton, operated by JANG (Republic of Korea), handles in the current product.

Contact

For privacy questions or requests, email launchlot@gmail.com.

Information ProductBaton handles

Depending on the features you use:

  • Account: email address and account identifiers through Firebase Authentication.
  • GitHub connection: installation and repository metadata for repositories you authorize.
  • Scans: repository, branch, and commit metadata, and your private scan results and findings.
  • Technical Passport and Listing content you enter, including public Listing data you choose to publish.
  • Buy Box: your private buying preferences.
  • Inquiries, Offers, Deals, and Transfers: messages, offer versions, sale package snapshots, task confirmations, issues, the Seller's payment-received mark, and the policy versions recorded with a Deal.
  • Promotion consent and Spotlight state for your listings.
  • Operator review, moderation, and audit records.
  • Limited security records, such as request-rate counters and app-integrity check outcomes, used to prevent abuse.
  • Emails you send to support.

Repository source code

The Scanner reads only repositories you authorize and processes source code only as needed for the scan you request. The raw source archive is temporary and is removed after the scan finishes. Raw source is never a public Listing field and is not shown on public pages. For some checks, bounded excerpts of repository files, with detected secrets redacted, may be sent to an AI model provider to help explain specific findings. AI output is non-authoritative.

How information is used

To authenticate accounts, save the content you create, publish the Listing information you choose, connect Buyers and Sellers, record Deals and transfers, provide Scanner features, operate support and moderation, and protect the service against abuse.

Public and private information

Published Listings and their selected public evidence can be viewed without signing in. Private scan results, Buy Box preferences, messages, Offers, and Deal records are limited by access rules to the participants and, where needed for support or moderation, authorized operators.

Service providers

ProductBaton uses Firebase and Google Cloud for authentication, hosting, data storage, app-integrity checks, and scanning, and GitHub when you connect repositories. This information may be processed outside your country. The current web app does not include an advertising or product-analytics SDK.

Retention and requests

Information is kept while your account is active and as needed to operate the service. Deal and transaction records may be kept longer for transaction, support, and legal record purposes. Self-service account deletion is not available yet. To ask about access, correction, or deletion, email support.

Security

Access controls and email verification reduce risk, but no service can promise absolute security.