The short version. We store your account, your scanner settings, and the public Reddit posts your scanners matched. We send post text to an AI provider to score it. We don't sell anything to anyone. Email us and we'll delete it all.
1. Who we are
Reddit Scanner ("we", "the service") is operated from India and reachable at hello@redditscanner.xyz. We are the data controller for the information described below.
We are not affiliated with, endorsed by, or connected to Reddit, Inc. "Reddit" is a trademark of Reddit, Inc., used here only to describe what the service reads.
2. What you give us
When you create an account and configure a scanner, we store:
| Data | Why we hold it |
|---|---|
| Email address | Identifies your account and receives sign-in and confirmation mail. |
| Password | Handled by Supabase Auth and stored only as a hash. We never see it. |
| Company name | Labels your workspace. |
| Product description | Sent to the AI provider as the thing each post is scored against. |
| Subreddits, keywords, competitor names | Defines what each scanner listens to. |
| Score threshold | Decides what's worth showing you. |
| Google Sheet ID | Only if you connect a sheet. Blank means the sync never runs. |
If you write to us through the contact form, we keep your name, email, chosen topic and message for as long as it takes to answer you and keep a record of the exchange. We use it only to reply.
We do not take payment details, and we run no advertising, analytics or tracking cookies. The only thing stored in your browser is your sign-in session.
3. What we collect from Reddit
This is the part worth reading carefully, because it concerns people who never signed up for anything.
Our scanners read publicly visible Reddit posts from the subreddits you nominate. We never read private messages, private subreddits, deleted content, or anything behind a login. For each post we retain its Reddit ID, subreddit, title, body text, URL, timestamp, and the author's public username.
When a post matches, we also store the score we gave it and the model's written reasoning. In competitor mode we group matches by the author's username so repeat mentions roll up into one lead, which may include the competitor named, the frustration expressed, and whether the post suggests they are considering switching.
If you post publicly on Reddit, your username and post text may be stored here even though you have no account with us. Section 8 explains how to have that removed.
4. Who else sees it
We use a small number of processors. We do not sell, rent, or trade personal data, and we run no ad networks.
- Supabase — authentication and the database where everything above is stored.
- Railway — runs the API and the scheduled scanner.
- Netlify — serves this website, and receives anything you send through the contact form.
- Groq and/or Google (Gemini) — receives post text and your product description in order to score it. Post content leaves our systems at this step.
- Arctic Shift or the Reddit API — the source we read posts from.
- Google Sheets — only if you connect a sheet, in which case matched leads are appended to the sheet you own.
These providers operate outside India, including in the United States and the European Union, so the data described here is transferred and processed abroad.
5. Why we're allowed to
Where the UK or EU GDPR applies, we rely on:
- Contract — for your account and scanner settings. Without them there is no service.
- Legitimate interests — for reading and scoring public Reddit posts, which is the function you asked for. We have weighed this against the interests of the people who wrote those posts, and limit ourselves to public content, retain little, and delete on request.
- Consent — for the optional Google Sheets sync, withdrawable by disconnecting the sheet.
6. How long we keep it
- Account and scanner settings — until you delete your account.
- Posts, matches and leads — until you delete them, or your account is closed.
- The record of which posts were already judged — kept so we don't repeatedly re-read the same thread. It holds post identifiers, not post content.
Deleting your account removes your company, scanners, matches and leads. Ask us and we'll confirm when it's done.
7. Your rights
Depending on where you live, you can ask us to give you a copy of your data, correct it, delete it, restrict or object to how we use it, or hand it to another provider. Email hello@redditscanner.xyz and we'll respond within 30 days. There's no charge.
If you're in the UK or EU and think we've got it wrong, you can complain to your local data protection authority.
8. If you were scanned and want out
You don't need an account to ask. Use the contact form or email hello@redditscanner.xyz with your Reddit username and we will delete every post, match and lead associated with it, and add the username to a list that stops it being collected again. We'll confirm when it's done.
We ask for nothing beyond the username, and we don't require you to prove the account is yours, because the alternative would mean collecting more identifying information than the request itself is worth.
9. Security
Traffic is served over HTTPS. Passwords are hashed by Supabase Auth and are never visible to us. Database access is restricted to the service and its operator. Each company's data is separated by ownership checks in the API.
We're a small operation, not a bank. If we ever discover a breach affecting your data, we'll tell you what happened and what was exposed, without waiting to have a tidy explanation.
10. Changes
If this policy changes materially, we'll update the date at the top and email account holders. Continuing to use the service after that means you accept the revised policy.
11. Contact
Questions, requests, or corrections: hello@redditscanner.xyz.