Privacy Policy
Last updated: February 1, 2026
1. Introduction
Welcome to BuilderAI.tools ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services.
By accessing or using BuilderAI.tools, you agree to the terms of this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not access the site.
This policy applies to all users worldwide, including those in the European Economic Area (EEA), United Kingdom (UK), Switzerland, California (USA), Brazil, Canada, Australia, and other jurisdictions with specific data protection requirements.
2. Information We Collect
2.1 Information You Provide Directly
Account Registration (Email/Password)
When you create an account using email and password:
- Email address: Used for account authentication, password recovery, email verification, and service communications
- Password: Securely hashed and stored; we never store or have access to your plain-text password
- Display name: Your chosen username, displayed publicly on leaderboard and tool submissions
OAuth Authentication (Google/GitHub)
When you sign in using Google or GitHub OAuth 2.0, we receive:
- From Google: Email address, display name, profile picture URL, and unique Google ID
- From GitHub: Email address, username, profile picture URL, and unique GitHub ID
What we do NOT receive: We do not access your Google Drive files, Gmail, Google Calendar, contacts, private GitHub repositories, code, issues, pull requests, or any other data beyond basic profile information. We only request the minimum OAuth scopes necessary for authentication.
Tool Submissions
When you submit a tool (requires account):
- Tool name, website URL, GitHub URL
- Description and category selection
- Tags you provide
- Your user ID (linking submission to your account)
Ratings and Reviews
When you rate a tool (requires account):
- Your rating (1-5 stars)
- Optional comments
- Your user ID and timestamp
User Preferences and Activity
- Favorites: Tools you save to your favorites list
- Hidden tools: Tools you choose to hide from your browsing experience
- Theme preference: Your light/dark mode selection
- Leaderboard data: Aggregated from your submissions and activity
2.2 Information Collected Automatically
When you access our website, we automatically collect:
- IP Address: Used for security, spam prevention, abuse detection, and basic analytics. IP addresses are not used to personally identify you.
- Device Information: Browser type and version, operating system, device type, screen resolution
- Usage Data: Pages visited, time spent on pages, click patterns, referring URLs, timestamps
- Cookies and Local Storage: See our Cookie Policy for details
2.3 Information from Third Parties
We may receive information from third-party services we use:
- Vercel: Hosting provider - provides aggregated analytics and performance data
- Supabase: Database and authentication provider - processes authentication and stores data on our behalf
- Google OAuth: Provides basic profile information when you choose to sign in with Google
- GitHub OAuth: Provides basic profile information when you choose to sign in with GitHub
2.4 Advertising and Google AdSense
When advertising is enabled, third-party vendors (including Google) may use cookies to serve ads based on your visits to this site and other sites on the Internet. These cookies may be used for personalized or non-personalized advertising depending on your consent and applicable law.
You can control ad personalization through Google Ads Settings or opt out of interest-based advertising through aboutads.info.
3. Legal Basis for Processing (GDPR)
For users in the EEA, UK, and Switzerland, we process your personal data based on the following legal grounds:
- Contract Performance: Processing necessary to provide our services (account creation, tool submissions, ratings)
- Consent: Where you have given explicit consent (e.g., optional marketing communications, OAuth sign-in)
- Legitimate Interests: For fraud prevention, security, service improvement, and analytics, balanced against your rights
- Legal Obligation: Where required by applicable law
4. How We Use Your Information
We use the information we collect for:
- Provide Services: Operate our AI tools directory, process submissions, display ratings, manage accounts
- Personalization: Remember your preferences (theme, favorites, hidden tools), customize your experience
- Authentication: Verify your identity, manage account access, process OAuth sign-ins
- Communication: Send account verification emails, password resets, security alerts, service updates
- Leaderboard: Calculate and display your public leaderboard ranking and statistics
- Security: Prevent fraud, spam, abuse, and unauthorized access; protect users and the service
- Analytics: Understand usage patterns, improve our service, fix bugs, optimize performance
- Legal Compliance: Comply with applicable laws, respond to legal requests
5. Email Communications
By creating an account, you consent to receive the following transactional emails:
- Account Verification: Confirmation email to verify your email address
- Password Reset: When you request a password reset
- Security Notifications: Important alerts about your account security
- Service Updates: Essential changes to our service or policies
We do not send marketing emails unless you explicitly opt in. You can unsubscribe from optional communications at any time.
6. Data Sharing and Disclosure
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
We may share your information in the following circumstances:
- Service Providers: Third-party services that help operate our platform:
- Vercel (hosting and deployment)
- Supabase (database, authentication, storage)
- Public Information: Your display name, leaderboard rank, and submission attribution are publicly visible
- Legal Requirements: When required by law, court order, subpoena, or governmental authority
- Protection of Rights: To protect our rights, safety, or property, and that of our users
- Business Transfers: In connection with a merger, acquisition, bankruptcy, or sale of assets
- With Your Consent: When you explicitly authorize sharing
7. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence, including the United States. These countries may have different data protection laws.
For transfers from the EEA, UK, or Switzerland, we rely on:
- Standard Contractual Clauses approved by the European Commission
- Data Processing Agreements with our service providers
- Other legally recognized transfer mechanisms
8. Data Retention
We retain your information for as long as necessary to fulfill the purposes outlined in this Privacy Policy:
- Account Data: Retained until you request account deletion
- Tool Submissions: Retained indefinitely as part of the directory (may remain after account deletion)
- Ratings/Reviews: Retained indefinitely to maintain rating accuracy
- Favorites/Hidden Tools: Deleted when you remove them or delete your account
- Usage Logs: Retained for up to 90 days for security and analytics
- Backup Data: May persist in backups for up to 30 days after deletion
We may retain certain data longer if required by law or for legitimate business purposes (e.g., fraud prevention, dispute resolution).
9. Data Security
We implement appropriate technical and organizational security measures to protect your personal information:
- Encryption of data in transit using TLS/SSL (HTTPS)
- Encryption of data at rest in our databases
- Secure password hashing (bcrypt) - we never store plain-text passwords
- Row-level security policies in our database
- OAuth 2.0 for third-party authentication (no password storage for OAuth users)
- Regular security assessments and updates
- Access controls limiting who can access your data
- Secure infrastructure provided by Vercel and Supabase
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
10. Your Privacy Rights
10.1 Rights for All Users
- Access: Request access to the personal information we hold about you
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your account and personal data
- Data Portability: Request a copy of your data in a portable format
- Withdraw Consent: Withdraw consent where processing is based on consent
- Revoke OAuth: Revoke our access through your Google or GitHub account settings at any time
10.2 European Economic Area, UK, Switzerland (GDPR)
If you are located in the EEA, UK, or Switzerland, you have additional rights under GDPR:
- Right to Object: Object to processing based on legitimate interests
- Right to Restriction: Request restriction of processing in certain circumstances
- Right to Erasure: Request deletion ("right to be forgotten")
- Right to Lodge Complaint: File a complaint with your local data protection authority
10.3 California Residents (CCPA/CPRA)
California residents have additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
- Right to Know: Know what personal information is collected, used, and shared
- Right to Delete: Request deletion of personal information
- Right to Opt-Out: Opt out of the sale of personal information (we do not sell personal information)
- Right to Non-Discrimination: Not be discriminated against for exercising your rights
- Right to Correct: Correct inaccurate personal information
- Right to Limit: Limit the use of sensitive personal information
Do Not Sell My Personal Information: We do not sell your personal information to third parties.
10.4 Brazil (LGPD)
Brazilian residents have rights under the Lei Geral de Proteção de Dados (LGPD), including access, correction, deletion, and portability rights similar to GDPR.
10.5 How to Exercise Your Rights
To exercise any of these rights, please contact us at admin@tpsworldwide.net. We will respond within the timeframes required by applicable law (generally within 30 days). We may need to verify your identity before processing your request.
11. Children's Privacy
Our website is not intended for children under the age of 13 (or 16 in the EEA, UK, and Switzerland). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately at admin@tpsworldwide.net, and we will take steps to delete such information.
12. Third-Party Links
Our website contains links to third-party websites, including the AI tools listed in our directory. We are not responsible for the privacy practices of these external sites. We encourage you to review the privacy policies of any third-party sites you visit.
13. Do Not Track Signals
Some browsers have a "Do Not Track" (DNT) feature. Our website does not currently respond to DNT signals. However, you can manage your privacy preferences through our cookie settings and your browser controls.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- Posting the new Privacy Policy on this page
- Updating the "Last updated" date at the top
- Sending an email notification for significant changes (if you have an account)
Your continued use of the website after any changes constitutes acceptance of the updated Privacy Policy.
15. Contact Us
If you have any questions about this Privacy Policy, your personal information, or wish to exercise your rights, please contact us at:
BuilderAI.tools
Email: admin@tpsworldwide.net
For EU/UK data protection inquiries, you may also contact your local supervisory authority.
This Privacy Policy is part of and should be read in conjunction with our Terms of Service and Cookie Policy.