Privacy Policy
Effective date: August 2, 2026
MARGN.PLUS is operated by MARGN LLC, a Texas limited liability company. This Privacy Policy explains what we collect, how we use it, and the choices you have. It applies to the MARGN.PLUS website and app. By using the service, you agree to this policy.
Should you trust us with this?
Honest answer: we can read what you upload, because that's how reports get generated. We can't pretend otherwise — anyone who tells you their analytics tool "can't see your data" is either lying or shipping a useless product.
What we promise instead: we don't sell your personally identifiable data, we don't share buyer-level detail with anyone outside your account, we don't train AI on it, and we have no API connection to your Whatnot store at all. Aggregated, anonymized trends may power benchmark features. You upload a file. We give it back to you with structure. That's it.
You can delete everything from Account → Danger Zone whenever you want. We don't keep a hidden copy.
What we collect
- Account info: name, email, password (hashed). You give us this at registration.
- Whatnot CSV rows you upload: buyer names, buyer states, order amounts, product titles, livestream names, Whatnot seller ID, etc. These come from the CSV file Whatnot hands you.
- Basic usage telemetry: which reports you’ve generated, how often you log in, and which pages and dashboard features get used. Page analytics are self-hosted — that data lives on our server and is never shared with anyone.
- Interaction patterns via Microsoft Clarity (clicks, scrolls, which features get attention) — with strict on-device masking, meaning every word and number on your screen is redacted in your browser before anything is sent. Clarity recordings of your dashboard contain no readable text: no revenue figures, no buyer names, nothing.
- Stripe handles payment info. We only see that a charge succeeded and the masked last four digits.
What we do with it
- Show you analytics based on your own data.
- Send product updates and announcements to users who opted in at registration. Every email includes an unsubscribe link.
- Generate AI insights via Anthropic's Claude API. We send aggregated metrics derived from all of your uploaded CSVs — and every identifying string (buyer handles, product titles, US state codes) is replaced with a positional placeholder before the prompt leaves our server. Claude sees "buyer_a, item_p1, state_a"; we swap the real strings back in on your dashboard. Anthropic does not train on API traffic.
- Only if you opt in at registration (or later from your Account page): include your data in anonymized, aggregated industry reports shared with brands, retailers, or researchers. Anonymized means no seller IDs, no buyer names, no item titles — only bucketed aggregates that cannot be traced back to you or your buyers. This is optional, off by default, and you can revoke it anytime.
What we don’t do
- Sell your raw data. Ever.
- Share buyer names or order-level detail with anyone outside your workspace.
- Use your data to train machine-learning models, ours or anyone else’s.
- Plant ad trackers or cross-site tracking on the dashboard — no ad pixels, no retargeting, nothing that follows you around the web. The only third-party measurement we use is Microsoft Clarity in strict masking mode (described above), which cannot read your data.
Your controls
- Delete any report from the Account page.
- Hide rows you know are bad so they’re excluded from all metrics.
- Revoke marketing or data-share consent anytime with the toggles on your Account page (or by emailing support — either works).
- Delete your entire account — reports, orders, insights, buyers — from Account → Danger Zone.
Storage + security
Your data is stored in our database, hosted on WP Engine in the United States. Encrypted at rest by the hosting provider, transferred over HTTPS. We don’t promise zero breach risk — no one honestly can — but we use the standard protections a modern SaaS should.
How long we keep it
We keep your account and uploaded data for as long as your account is active. When you delete your account, we soft-delete it immediately and permanently purge your personal data after a 30-day grace period (so an accidental deletion can be reversed). After that, only fully anonymized aggregates — which cannot be traced back to you or your buyers — may remain for trend reporting.
We do not sell your data
We do not sell your personal information, and we do not share buyer-level or individually identifiable data with third parties for their own marketing. The only data that ever leaves our system in shared form is bucketed, anonymized aggregates, as described above. Under the California Consumer Privacy Act (CCPA/CPRA), California residents have the right to know what we collect, to request deletion, and to not be discriminated against for exercising those rights — and because we do not sell personal information, there is nothing to opt out of.
Your rights and choices
You have the right to access, correct, export, or delete your data. Most of this you can do yourself from the Account page. For anything else, email us and we will respond within 30 days. We will never charge you or degrade your service for exercising a privacy right.
Children
MARGN.PLUS is not directed to anyone under 18, and we do not knowingly collect data from children. If you believe a minor has created an account, contact us and we will remove it.
Changes to this policy
If we make material changes to this policy, we will email you or post a notice in the app and update the effective date above. This policy is governed by the laws of the State of Texas.
Contact
Questions about privacy: contact support.