Effective September 19, 2026 · Current release has no paid checkout.
Data Processing and Vendor List
Version September 19, 2026
OpenAI API — optional photo scanning
Prepared integration; requires the operator to connect API credentials and billing before scans are available. When enabled, OpenAI processes the front/back card or receipt photos a user explicitly submits to suggest card details or expense amounts. Account email, cash, and the inventory ledger are not included. The app does not store the photos and requests no stored API response; provider security and abuse-monitoring retention may apply. See OpenAI API data controls.
Scope and roles
This list describes the current deployment of CardTrackt as of September 19, 2026. Card Trade Tracker LLC operates the service. It describes vendors and software roles; it is not a signed customer data-processing agreement or a certification of compliance. A customer needing a processor agreement should contact cardtradetracker@gmail.com before uploading third-party personal data.
OpenAI / ChatGPT Sites — hosting
The published website is hosted through ChatGPT Sites. Hosting involves serving the app and processing account, ledger, branding, request, and operational information required to run it. OpenAI’s hosting terms and applicable data-processing terms govern its role. Its own subprocessors may assist in providing hosting. Development assistance through ChatGPT is distinct from the optional card or receipt photo scanning integration described below.
Cloudflare infrastructure — application and database
The deployment uses Cloudflare-compatible Workers and D1 infrastructure through the hosting arrangement. The application executes there and stores authentication and ledger records. Request/security information may also be processed. This statement does not imply that each app user has a direct contract with Cloudflare or that we operate a separate user-owned Cloudflare account.
Google Fonts — font delivery
The website requests DM Sans and Manrope fonts from Google Fonts. Your browser sends normal network-request information, including an IP address and browser/request headers, to Google’s font-serving endpoints. Inventory, account passwords, and ledger entries are not intentionally sent in these font requests.
Embedded libraries, not separate hosted services
Better Auth handles authentication within the deployed app. Drizzle ORM provides database access within the app. Their presence as software dependencies does not mean your records are sent to Better Auth or Drizzle as separate hosted vendors. Other build-time dependencies support development and packaging; they are not themselves customer-facing payment or email services.
Not currently connected
Stripe or another payment processor, a transactional email provider, an external error-alert destination, third-party marketing analytics, and advertising networks are not currently active. Billing webhook/cancellation, email, and redacted error-alert integrations are prepared but require configuration. Recommended future products are not current vendors. Password-reset and verification delivery is implemented but inactive until an email provider and verified sender are connected.
Data handling and updates
Account data includes email, authentication/session details, and security metadata. Ledger data includes cards, money amounts, show and transaction notes, and business branding. Access is limited by account authentication, with provider processing necessary to operate the service. Hosting may involve processing outside your state or country; we do not promise a specific residency or backup deletion timetable. Consult the Privacy Policy for retention and rights requests. We will update this list when the deployment or providers materially change.
Operated by Card Trade Tracker LLC · cardtradetracker@gmail.com
Google Sheets — private account reporting
We use a restricted Google spreadsheet to track account IDs, names, email addresses, signup dates, email-verification status, and subscription identifiers, status, cancellation flags, and dates for customer administration. Passwords, session tokens, customer inventories, and customer expense records are not exported to this report. Account deletion removes the account row on the next successful synchronization; Google may retain document history and backups under its retention practices. Access is restricted to the operator and the service account used for synchronization.