Privacy Policy

Last updated: May 16, 2026

Plain-English summary

We don't

  • • Sell, share, or trade your data
  • • Track you across the web or fingerprint devices
  • • Use advertising cookies or third-party trackers
  • • Use anonymous product data to identify you
  • • Collect browsing history outside our own tools
  • • Send marketing emails

We do

  • • Accept an email when you sign in (via Clerk)
  • • Store product data our apps ingest (anonymous where possible)
  • • Rely on Vercel / Supabase / Clerk to run the service
  • • Log IP addresses briefly via hosting providers for security

Who we are

iScaleLabs is operated by Pix on Demand LLC, a Wyoming limited liability company. We run iscalelabs.com and a suite of browser extensions and web tools for print-on-demand researchers, including Pintwist, iScale Etsy, iScale Merch, and others listed at /apps.

Contact: contact@iscalelabs.com

Data we collect

1. Account data (when you sign in)

Authentication is handled by Clerk. When you sign in to iScaleLabs, Clerk receives and stores or provides:

  • Your email address (always)
  • Your display name and profile image (only if you sign in with Google OAuth, in which case Google provides them)
  • A Clerk user ID we use as your account key
  • Account metadata used for access control, feature access, and support

We use account data only to authenticate you, let you into the community and tools, associate your settings, manage feature access, support your account, and prevent abuse. We never use it for advertising or share it with third parties for marketing.

See Clerk's privacy policy for how they handle this data.

2. Product data (when you use our tools)

Each iScaleLabs app generates research data as you use it. The specifics vary by app. Browser-extension observations are anonymous where possible and may be keyed by a random install ID. Signed-in tools may also use your iScaleLabs account to provide access, save settings, sync data, and prevent abuse.

Pintwist

  • A random install ID generated on your device (UUID)
  • Pinterest pin IDs that the extension processes as you browse
  • Public metrics for those pins: save counts, comment counts, reactions, repins, shares, creation date
  • Public pin metadata visible on the pin itself: title, description, alt text, board name, the pin's external link and its domain, the pinner's username, the pin's image URL (pinimg.com CDN URLs only — other image URLs are discarded server-side), the pin's dominant color, and whether it's a video
  • The Pinterest URL you're on (only pinterest.com URLs — other URLs are discarded server-side)
  • The search term extracted from Pinterest search URLs, if any
  • Timestamps of when the pin was viewed

All of the above is public Pinterest data shown on the pin itself — we do not collect anything about you, your Pinterest account, your boards, your followers, or what you click outside the pin grid.

Pintwist's install ID is not linked to your iScaleLabs account on our side, so your pin browsing is aggregated with the whole community's rather than attributed to you.

iScale Etsy

iScale Etsy is a web catalog of top-selling Etsy products at shop.iscalelabs.com. Sign-in is required and uses your iScaleLabs account (handled by Clerk — see "Account data" above for what's collected). Beyond your account identifier, iScale Etsy does not collect anything from you when you browse it beyond standard hosting-provider logs (Vercel — see third-party processors below).

iScale Merch

iScale Merch is a Chrome extension that overlays BSR, upload dates, and competition metrics on Amazon search pages. It works on seven Amazon marketplaces: amazon.com, amazon.co.uk, amazon.de, amazon.fr, amazon.it, amazon.es, and amazon.co.jp. It reads publicly available product listings from the Amazon pages you're already viewing and sends listing data to our backend, where it's aggregated across users to power niche analysis.

For each product the extension processes on a page you have open, it may capture:

  • ASIN, product title, brand, and price
  • Best Sellers Rank (BSR) and date first available
  • Listing image URL
  • The marketplace code the product was viewed on (e.g. US, UK, DE)
  • Review count and average star rating
  • Product bullet points and product description text from the detail page
  • The Amazon search keyword and result-page number that surfaced the product, when applicable
  • The product's approximate position on the search result page, and whether the row came from a Newest Arrivals or Featured scan phase
  • Flags indicating whether the listing appears to be a Merch-by-Amazon item or a licensed-brand item

iScale Merch does not collect anything about your Amazon account, your purchase history, your Amazon search queries outside the pages you have open, or pages you visit outside the Amazon product pages the extension is active on.

Unlike Pintwist, iScale Merch is a signed-in tool. Product snapshots and scan activity may be associated with your Clerk user ID server-side for access control, settings, sync, support, and abuse prevention. Shared research views are based on aggregated product data rather than your personal identity.

iScale Merch settings such as feature access, filter preferences, scan state, and local workspace data may be stored in your browser and, where needed, synced to Supabase for your account.

iScale Merch can optionally export your saved scans as CSV, XLSX, manifest, README, and product image files into your local Downloads folder. The exported files are built from data you have already viewed and saved into the extension; no extra data is sent off-device for the export.

Some iScale Merch features may optionally use an AI provider, such as OpenAI, when you enable that feature or provide your own API key. Those requests are used for the feature you invoked, such as phrase filtering, and are governed by the provider's privacy terms.

Other iScaleLabs apps

As we launch additional apps, we'll add a specific section here for each one before it goes live. Until then, the common rule applies: minimal data, anonymous where possible, never sold.

3. Operational logs (via third parties)

Our hosting and infrastructure providers — Vercel, Supabase, and Clerk — may retain logs containing IP addresses and request metadata for security, debugging, and abuse prevention. Retention depends on the provider, product, and plan settings. These logs are governed by the respective providers' privacy policies:

We do not bulk-copy provider infrastructure logs into a separate analytics system. Some app-level events, API activity, scan records, settings, and abuse-prevention records may be stored in Supabase when needed to operate the tools.

How we use your data

  • Account data → authenticate you, let you into the community area and tools, manage feature access, sync settings, contact you about your account if needed, prevent abuse, and comply with legal obligations.
  • Product data → power the features of our apps (trend detection, niche discovery, scan history, etc.). The aggregate dataset is the value — it's why the tools work.
  • Logs → security, abuse prevention, performance troubleshooting. Only our hosting providers handle this.

Who sees your data

  • You — see "Your rights" below for what we can return to you and how.
  • iScaleLabs staff — for operation, support, and aggregate analysis.
  • Our processors — Clerk, Supabase, Vercel (listed above), and optional AI/API providers only when a tool feature you use requires them. They are contractually bound not to use the data for their own purposes.
  • Nobody else. We do not sell, rent, or share your data with third parties beyond those processors.

Data retention

  • Account data: kept while your account is active. Email us to remove it.
  • Product data: retained as long as it is useful to operate aggregate research features. Anonymous extension observations may be kept as aggregate product facts. Account-linked records can be exported or deleted on request where they can be matched to your account.
  • Operational logs: retained by our hosting providers and app databases according to their policies, plan settings, and our operational needs.

Your rights

Depending on your location, you have the right to access, correct, export, or delete data we hold about you. Here's specifically what we can and can't do for each kind of data:

  • Account info (Clerk): your email, name, sign-in history. We can export or delete this on request.
  • Account-linked app records: settings, feature-access records, API activity, scan sessions, and iScale Merch product snapshots associated with your account. We can export or delete these on request where they are tied to your account.
  • Pintwist pin observations: stored against a random install ID generated locally in your browser. By design we cannot match these to your identity — that's the whole point of the anonymization. If you want yours exported or deleted, you'll need to find your install ID and send it to us. To find it: open chrome://extensions, click the PinTwist details, click "Inspect views: service worker", and run chrome.storage.local.get('pintwist_install_id', console.log) in the console.
  • Aggregate product facts: public product and pin facts that have been aggregated across users may remain in the shared research dataset after account deletion, unless we can still identify and remove a specific account-linked or install-linked record.
  • Sale of data: we don't sell data to anyone.

Email contact@iscalelabs.com from the address on your account to exercise any of these. We aim to respond within 30 days.

Children

iScaleLabs is not intended for users under 16. If you're under 16, please don't create an account or use our tools. If we learn we've collected data from someone under 16, we'll delete it promptly.

Security

  • HTTPS everywhere
  • Encrypted password storage (via Clerk — we never see or store passwords)
  • Database access controls and server-side permission checks
  • Periodic review of security configuration, dependencies, and provider advisories
  • No private API keys in client code. Clerk publishable keys and Supabase anon keys shipped with our website or extensions are designed to be public; sensitive keys live only on the server or in provider-managed environments.

No system is perfectly secure. If a breach occurs that affects you, we'll notify you as required by law.

Changes to this policy

We may update this policy. The date at the top of this page reflects the most recent change. We may notify users of material changes via the apps or email when we have a reasonable way to do so.

Contact

Questions, concerns, data requests — email contact@iscalelabs.com.

Our legal entity is Pix on Demand LLC, a Wyoming limited liability company doing business as iScaleLabs.