Legal

Privacy Policy

Last updated: August 12, 2026

Overview

pickle.cx (“pickle,” “we,” “us”) provides an embeddable feedback widget, inbox, and MCP tools for product builders. This policy explains what we collect and why.

Account information

When you sign in with Google, we receive your Google account email, name, and profile image. We use these to create and secure your account, show your identity in the app, and contact you about the service when needed.

Feedback data

When visitors use your widget, we store the message they submit and optional fields such as email, name, category, rating, page URL, user agent, and tags or responses you add in the inbox. This data belongs to your project; we process it to provide the product (inbox, search, triage, MCP/API access).

Project & widget settings

We store project metadata you configure: domain, path include/exclude rules, widget appearance, board stages, and install settings. Widget config may be fetched by the public embed script so the widget can render correctly on your site.

Billing

Paid plans are processed by Stripe. We store subscription status, plan, and Stripe customer/subscription identifiers needed to enforce limits and open the billing portal. Payment card details are handled by Stripe, not stored on pickle servers.

MCP & API access

If you connect Claude or other clients via MCP/OAuth or API keys, we store tokens, client registrations, and audit metadata required to authorize tool calls against your projects. Revoking access disables further use of those credentials.

Analytics

We may use lightweight analytics on marketing pages to understand traffic. App, admin, and auth flows are kept out of marketing analytics where configured.

Cookies

We use an HTTP-only session cookie to keep you signed in after Google OAuth. We may use short-lived cookies during the OAuth redirect flow.

Sharing

We do not sell personal data. We share data with infrastructure providers that host and operate the service (for example database, hosting, and Stripe) under agreements that limit use to providing their services. We may disclose information if required by law or to protect the service and its users.

Retention & deletion

We retain account and feedback data while your account is active. You can delete projects and feedback from the product. To delete your account or request export of your data, email hello@pickle.cx.

Security

We use industry-standard practices appropriate for a small SaaS (HTTPS, hashed API keys, origin checks on ingest, admin allowlisting). No method of transmission or storage is 100% secure.

Children

pickle is not directed to children under 13, and we do not knowingly collect data from them.

Changes

We may update this policy as the product evolves. Material changes will be reflected by updating the date above.

Contact

Questions: hello@pickle.cx. Site: pickle.cx.