← Back to Repped

Privacy Policy

Last updated: 15 August 2026

Who we are

This website is operated by Chelsea Jade Osner trading as Repped (“we”, “us”, or “our”). Repped is the data controller for the personal data we collect when you use our tools and services.

What we collect

  • Account information: email address, name, and login credentials.
  • Profile information: creator handle, platform, and follower range.
  • Deal information: brand names, deliverables, usage terms, rates, and any notes you add.
  • Contract information: contract files or text you upload for review.
  • Communication: support messages and feedback.
  • Usage and technical data: feature usage, IP address, browser type, device identifiers, and error logs.

Payment information is processed by our Merchant of Record, Paddle. We do not store your full payment card details.

How we use your data

  • To create and manage your account and provide the Repped tools.
  • To generate rate calculations, contract explanations, and email drafts.
  • To process billing and subscription management via Paddle.
  • To provide customer support and respond to your requests.
  • To maintain security, prevent fraud, and enforce our terms.
  • To improve our products and build anonymised market benchmarks.

Legal basis

We process your personal data on the basis of: (a) performance of a contract with you, (b) our legitimate interests (e.g. security and product improvement), (c) your consent where required, and (d) compliance with legal obligations.

Who we share data with

  • Service providers and subprocessors: hosting, analytics, AI/LLM providers, and customer support tooling.
  • Paddle.com, our Merchant of Record, for payment processing, tax compliance, subscription management, and invoicing.
  • Professional advisers: legal, accounting, and insurance providers when necessary.
  • Authorities where required by law or to protect our rights.

International transfers

Some of our service providers operate outside the UK and EEA. When we transfer data internationally, we use appropriate safeguards such as Standard Contractual Clauses or adequacy decisions to protect your data.

Data retention

We keep your personal data for as long as your account is active, or as long as necessary to provide the service, comply with legal obligations, resolve disputes, or enforce agreements. When data is no longer needed, we delete or anonymise it. Anonymised market data may be retained for research and benchmarking.

Your rights

Depending on your location, you may have the right to: access, correct, delete, or restrict processing of your personal data; request data portability; object to processing; withdraw consent; and complain to a supervisory authority. We aim to respond to requests within one month.

To exercise your rights, contact us at your account settings or by emailing hello@repped.app.

Security

We use appropriate technical and organisational measures to protect your data, including encryption in transit and at rest, access controls, and regular security reviews. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.

Cookies

We use essential cookies to keep you signed in and keep the service running. We may use analytics cookies to understand how Repped is used. You can manage your cookie preferences through your browser settings.

Changes to this policy

We may update this Privacy Policy from time to time. The latest version will always be available at this page, and we will update the “Last updated” date at the top.