Plain-language privacy
Your hypothetical bad purchase stays hypothetical.
The calculators and Return Clock
Price, brand, condition, cancellation or refusal stage, and clock-start date calculations run in your browser. Skinflint.ai does not receive those inputs. When you deliberately calculate, Skinflint may record that a calculation occurred, but not the price, brand, condition, cancellation or refusal stage, purchase date, delivery date, or receipt date.
The Refund Audit also keeps the optional seller quote, comparison, gap, and generated itemization questions in the browser. A generic completion event can be recorded without the seller, price, quote, condition, result, or gap. A copied audit link includes only seller, price, and condition in the private URL fragment; it never includes the seller quote.
The return-request preflight also keeps the seller, ordinary/damage/defect path, condition, clock-start date, and packaging status in the browser. It does not ask for an order number, contact the seller, or store the preflight inputs.
The No-Box Rescue seller, request path, and packaging status stay in the browser. It does not ask for an address, contact a bike shop or seller, or transmit the selected inputs. Skinflint may record only that a generic no-box plan was completed.
If the No-Box Rescue shows a professional-packing resource, the link is not opened until you choose it. A deliberate click may record only the resource name, placement, current Skinflint page, campaign labels, and referring hostname; the seller, request path, packaging status, and any shop you contact are not attached.
The Return Evidence Pack reads, renames, hashes, and packages selected photos, videos, and documents in the browser. Files, filenames, case labels, classifications, hashes, and ZIP contents are not uploaded or stored by Skinflint. A generic completion event may be recorded without those inputs.
On the private paid receipt page, the route, order number, model, mileage, packaging status, generated seller request, and complete Return Rescue File also stay in your browser. They are not submitted to Skinflint, Netlify Forms, analytics, or the optional policy-watch form.
A private result or Return Clock link stores its calculator state after the # in the URL. Browsers do not send that fragment in the HTTP request. Anyone who receives the copied link can read the values in it.
Regret Lens
The bookmarklet recognizes a supported retailer hostname and reads a structured product price on the current page. It makes no network request, injects no remote code, and opens Skinflint with brand and price in the URL fragment. The retailer URL and page contents are not sent. The resulting Skinflint visit includes generic bookmarklet campaign labels and ordinary hosting metadata.
Links and attribution
If you deliberately follow a tracked source, retailer, guide, sample, checkout, share, calendar, or skill-download action, Skinflint records the action name, current page, campaign labels in the URL, and referring hostname. Calculator inputs are not attached to that event.
Free brief, Policy Watch, and corrections
If you submit a form, Netlify stores the email address, selected brand, consent choice, attribution labels, and text you provide so we can deliver the requested brief or watch, reply, or process a correction. The free brief is optional and can be stopped by replying from the subscribed address. Paid watch submissions are retained through the 30-day service period and routine support reconciliation, then removed from active records. Do not send order numbers, payment information, medical information, or identity documents.
Ordinary hosting data
Like ordinary web hosting, Netlify may process request metadata such as IP address, browser details, referrer, and time for security and operations.
Affiliate links
When affiliate links become active, the retailer or affiliate network may use cookies or similar identifiers to attribute a purchase. The destination's privacy policy governs that activity. Commercial links will be marked.
Deletion
Submit a deletion request from the address used in a form. We will remove the matching submission from active records.
Effective July 22, 2026.