Privacy Policy

Effective date: September 11, 2026

MARGN.PLUS is operated by MARGN LLC, a Texas limited liability company. This Privacy Policy explains what we collect, how we use it, and the choices you have. It applies to the MARGN.PLUS website and app. By using the service, you agree to this policy.

Should you trust us with this?

Honest answer: we can read what you upload, because that's how reports get generated. We can't pretend otherwise — anyone who tells you their analytics tool "can't see your data" is either lying or shipping a useless product.

What we promise instead: we don't sell your personally identifiable data, we don't share buyer-level detail with anyone outside your account, we don't train AI on it, and we have no API connection to your Whatnot store at all. Aggregated, anonymized trends may power benchmark features. You upload a file. We give it back to you with structure. That's it.

You can delete any single upload from Account → Data, or your whole account from Account → Danger Zone, whenever you want. We don't keep a hidden copy.

What we collect

  • Account info: name, email, password (hashed). You give us this at registration.
  • Whatnot CSV rows you upload: buyer names, buyer states, order amounts, product titles, livestream names, Whatnot seller ID, etc. These come from the CSV file Whatnot hands you.
  • Basic account activity on our own server: which reports you’ve generated, when you last logged in, and an audit log of account changes. Cookies: a login cookie, a short-lived cookie during two-factor sign-in, and a bot-protection cookie set by our hosting edge (Cloudflare). On public pages, advertising measurement tags set cookies — Google (_ga, _gcl_au). See “Advertising measurement” below. We use Microsoft Clarity for page analytics; it sets its own analytics cookies, runs with strict text masking so what you see on screen is never recorded, and does not run for visitors in Europe.
  • Interaction patterns via Microsoft Clarity (clicks, scrolls, which features get attention) — with strict on-device masking, meaning every word and number on your screen is redacted in your browser before anything is sent. Clarity recordings of your dashboard contain no readable text: no revenue figures, no buyer names, nothing.
  • Stripe handles payment info. We see your plan, invoice amounts, and Stripe’s customer ID — never your card number. Stripe keeps its own billing records after you delete your account, as tax and fraud rules require.

What we do with it

  • Show you analytics based on your own data.
  • Send product updates and announcements to users who opted in at registration. Every email includes an unsubscribe link.
  • Generate AI insights via Anthropic's Claude API. We send aggregated metrics derived from all of your uploaded CSVs — and every identifying string (buyer handles, product titles, US state codes) is replaced with a positional placeholder before the prompt leaves our server. Claude sees "buyer_a, item_p1, state_a"; we swap the real strings back in on your dashboard. Anthropic does not train on API traffic.
  • Only if you opt in at registration (or later from your Account page): include your data in anonymized, aggregated industry reports shared with brands, retailers, or researchers. Anonymized means no seller IDs, no buyer names, no item titles — only bucketed aggregates that cannot be traced back to you or your buyers. This is optional, off by default, and you can revoke it anytime.

What we don’t do

  • Sell your raw data. Ever.
  • Share buyer names or order-level detail with anyone outside your workspace.
  • Use your data to train machine-learning models, ours or anyone else’s.
  • Plant ad trackers or cross-site tracking on the dashboard — no ad pixels, no retargeting, nothing that follows you around the web. The only third-party measurement we use is Microsoft Clarity in strict masking mode (described above), which cannot read your data.

Your controls

  • Delete any report from the Account page.
  • Hide rows you know are bad so they’re excluded from all metrics.
  • Revoke marketing or data-share consent anytime with the toggles on your Account page (or by emailing support — either works).
  • Delete your entire account — reports, orders, insights, buyers — from Account → Danger Zone.

Storage + security

Your data is stored in our database, hosted on WP Engine in the United States. Encrypted at rest by the hosting provider, transferred over HTTPS. We don’t promise zero breach risk — no one honestly can — but we use the standard protections a modern SaaS should.

How long we keep it

We keep your account and uploaded data for as long as your account is active. When you delete your account, we soft-delete it immediately and permanently purge your personal data after a 30-day grace period (so an accidental deletion can be reversed). After that, your order rows are deleted too — unless you opted in to anonymized trend reports, in which case they are kept with buyer names, item titles, livestream titles, SKUs, order IDs and your seller ID removed, leaving only category, region, amount and date.

We do not sell your data

We do not sell your personal information, and we do not share buyer-level or individually identifiable data with third parties for their own marketing. The only data that ever leaves our system in shared form is bucketed, anonymized aggregates, as described above. Under the California Consumer Privacy Act (CCPA/CPRA), California residents have the right to know what we collect, to request deletion, and to not be discriminated against for exercising those rights. We don’t sell personal information. We do use advertising measurement tags on public pages (listed below), which some state privacy laws treat as “sharing” for advertising; you can opt out below, and a Global Privacy Control signal is honored automatically.

Advertising measurement

We use Google Tag Manager, which loads Google’s analytics and ad-measurement tags (Google) to learn whether our ads lead to sign-ups and subscriptions. They run on our public pages (home, pricing, fee calculator, blog) and on the one page after you register or subscribe. They receive your browser and device details, the page address, and — for those two moments — a sign-up or purchase event with the plan price. They never receive your email, your uploaded CSV data, or anything from your dashboard. Reddit and Google may combine what they receive with information they collect on other websites, over time, to measure and target ads — which is why you can turn them off. They don’t run for visitors in Europe, for browsers that send Global Privacy Control or Do Not Track, or after you opt out here.

Do Not Track and Global Privacy Control. If your browser sends either signal, we treat it as an opt-out of advertising measurement and no advertising tag loads. Our sign-in cookies, and page analytics where active, are not changed by these signals because they are not used for advertising.

Your rights and choices

You have the right to access, correct, export, or delete your data. Most of this you can do yourself from the Account page. For anything else, email us and we will respond within 30 days. We will never charge you or degrade your service for exercising a privacy right.

Children

MARGN.PLUS is not directed to anyone under 18, and we do not knowingly collect data from children. If you believe a minor has created an account, contact us and we will remove it.

Changes to this policy

If we make material changes to this policy, we will email you or post a notice in the app and update the effective date above. This policy is governed by the laws of the State of Texas.

Contact

Questions about privacy: contact support.