How PromptTide collects, uses, and protects your personal information.
Last updated: March 2026
When you create a PromptTide account, we collect your email address, display name, and password (stored as a salted hash). If you sign up via Google or GitHub OAuth, we receive your name, email address, and profile picture from those providers.
You may optionally provide additional profile details such as a bio, location, website URL, and avatar image. This information is displayed publicly on your profile page.
We collect the prompts you create, comments you post, ratings you give, and other interactions with the platform. We also collect usage analytics such as pages visited, features used, and session duration to improve the service.
We automatically collect your IP address, browser type, operating system, device identifiers, and referring URLs when you access PromptTide. This data helps us maintain security, prevent abuse, and optimize performance.
If you subscribe to a paid plan, payment processing is handled by Stripe. We do not store your full credit card number or banking details on our servers. Stripe may collect billing information in accordance with their own privacy policy.
We use the information we collect to: provide, maintain, and improve the PromptTide platform; process your prompt executions against large language models via our integration with OpenRouter; personalize your feed and recommendations; send transactional emails (account verification, password resets, notifications); detect and prevent fraud, abuse, and security incidents; comply with legal obligations; and communicate product updates and changes to our service.
When you execute a prompt, we send the prompt text to OpenRouter, which routes it to the selected language model (e.g., GPT-4, Claude, Gemini). OpenRouter processes the prompt in accordance with their privacy policy. We do not send your personal account information to OpenRouter — only the prompt content required for execution.
Stripe processes all payments on our behalf. When you enter payment details, that information goes directly to Stripe and is subject to Stripe's privacy policy. We receive only a token reference and basic transaction details (amount, status, last four digits of your card).
If you choose to sign in with Google or GitHub, those providers share your basic profile information (name, email, avatar) with us. We do not receive your passwords from these providers. You can revoke access at any time through your Google or GitHub account settings.
We use industry-standard infrastructure providers to host and monitor our services. These providers may process technical data (IP addresses, request logs) as part of delivering their services. We ensure all providers meet appropriate data protection standards.
We do not sell your personal information. We may share data with: service providers who assist in operating the platform (hosting, email, analytics) under strict contractual obligations; law enforcement or regulatory authorities when required by law, court order, or to protect the safety of our users; a successor entity in the event of a merger, acquisition, or sale of assets (you will be notified of any such change). Public prompts, comments, ratings, and profile information are visible to other users and may be indexed by search engines.
We retain your account data for as long as your account is active. If you delete your account, we will remove your personal information within 30 days, except where retention is required by law or for legitimate business purposes (e.g., fraud prevention, audit logs). Anonymized or aggregated data that cannot identify you may be retained indefinitely for analytics and product improvement.
You have the right to: access the personal data we hold about you; correct inaccurate information; delete your account and associated data; export your data in a portable format; and opt out of non-essential communications.
If you are located in the European Economic Area or the United Kingdom, you also have the right to: restrict processing of your personal data; object to processing based on legitimate interests; lodge a complaint with your local data protection authority; and withdraw consent at any time (where processing is based on consent). To exercise any of these rights, contact us at privacy@prompttide.space.
California residents have the right to know what personal information is collected, request deletion, and opt out of the sale of personal information. As noted above, we do not sell personal information.
We implement industry-standard security measures to protect your data, including: encryption in transit (TLS/HTTPS) and at rest; salted password hashing (argon2); httpOnly, secure cookies for authentication tokens; rate limiting and brute-force protection; regular security audits and monitoring; and role-based access controls for internal systems. No system is 100% secure. If you discover a security vulnerability, please report it responsibly to security@prompttide.space.
PromptTide is not intended for users under the age of 13 (or 16 in the EEA). We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
We may update this Privacy Policy from time to time. If we make material changes, we will notify you via email or a prominent notice on the platform at least 14 days before the changes take effect. Your continued use of PromptTide after changes are effective constitutes acceptance of the updated policy.
If you have questions about this Privacy Policy or your personal data, please contact us at privacy@prompttide.space.
Return to PromptTide Home or read our Terms of Service.