Privacy Policy

Last updated: July 25, 2026

This is a working draft prepared to match Kitscore's current product (accounts, evidence uploads, evaluations, Stripe billing, connected YouTube/TikTok/Instagram/Twitch/Discord accounts, and mutual campaign confirmation). It is not legal advice. Have a lawyer review it for GDPR, UK GDPR, and CCPA compliance before relying on it at scale, particularly around evidence retention, cross-border data transfer if you have EU/UK users, and Meta's Platform Terms for the Instagram integration.

1. Who we are

Kitscore is operated by GHG Consulting LLC, a New York State registered limited liability company. This policy explains what data we collect through kitscore.co and our app, why, and what choices you have.

2. What we collect

CategoryExamplesWho it applies to
Account dataName/company name, email, password (hashed), account role (creator or sponsor)Everyone with an account
Profile dataNiche, location, business email, supported platformsCreators
Evidence you submitScreenshots, analytics exports, campaign documentation, brand safety questionnaire answersCreators
Platform connection dataWhen you connect a YouTube, TikTok, Instagram, Twitch, or Discord account, we receive your channel/account ID, display name or handle, and public statistics (follower/subscriber count, view count, video/post count, or server member count, as available from that platform). For YouTube, this is read via the youtube.readonly scope, limited to the channel belonging to the Google account you sign in with. For Instagram, this is read via Meta's Instagram Graph API using read-only scopes tied to the Instagram professional account you authorize. For Twitch, this is read via the Twitch API using read-only scopes tied to the Twitch account you authorize. For Discord, this is read via Discord OAuth2's identify and guilds scopes, and is limited to confirming a server you own and its approximate member count. In every case we never request access to post, upload, edit, or delete anything on your connected account, and we never request a Discord bot installation or access to message content.Creators who connect a platform account
Campaign & evaluation dataCampaign briefs, mutual confirmations, sponsor ratings/endorsements, evaluation requests and outputsCreators & sponsors
Billing dataPayment processed by Stripe — we receive confirmation of payment and a Stripe customer reference, not your full card numberAnyone making a paid purchase
Usage dataPages visited, session activity, basic device/browser info, via essential cookies and standard server logsAll visitors

3. How we use it

We do not sell your data, and we do not share it with advertisers.

4. How creator data is shown to others

If you're a creator, parts of your profile are designed to be visible to sponsors by nature of the product — this includes your Trust Score, Reliability Score, badge tier, niche, location, and (for verified campaigns) the fact that a campaign was mutually confirmed. Evidence files themselves are not made public; they back the score but aren't displayed raw. Self-reported, evidence-submitted, and live-verified data are labeled separately so sponsors can see the source.

If you're a sponsor, submitting endorsement feedback on a completed campaign (ratings, would-hire-again status, and any notes you write) may appear publicly on that creator's profile, visible to anyone browsing Kitscore — not only to the creator. By default this feedback is attributed to "Verified sponsor," not your company name. Your company name is shown alongside your feedback only if you explicitly opt in at the time you submit it.

5. Google and YouTube data specifically

If you connect your YouTube account, Kitscore's use of the resulting Google user data is limited as follows:

Kitscore's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

6. Meta (Instagram) data specifically

If you connect your Instagram account, Kitscore's use of the resulting Meta/Instagram data is limited as follows:

Kitscore's use of information received from Meta APIs adheres to the Meta Platform Terms and Developer Policies.

7. Twitch data specifically

If you connect your Twitch account, Kitscore's use of the resulting Twitch data is limited as follows:

Kitscore's use of information received from the Twitch API adheres to the Twitch Developer Agreement and Twitch Developer Services Agreement.

8. Discord data specifically

If you connect your Discord account, Kitscore's use of the resulting Discord data is limited as follows:

Kitscore's use of information received from the Discord API adheres to Discord's Developer Terms of Service and Developer Policy.

9. Who we share data with

ProviderPurpose
SupabaseDatabase, authentication, and file storage for accounts, evidence, and evaluation data
StripePayment processing for evaluations and subscriptions
YouTube Data API (Google)Source of channel statistics when you connect a YouTube account — see Section 5. This is a data source we read from, not a party we share your Kitscore data with.
TikTok APISource of account statistics when you connect a TikTok account. This is a data source we read from, not a party we share your Kitscore data with.
Instagram Graph API (Meta)Source of account statistics when you connect an Instagram account — see Section 6. This is a data source we read from, not a party we share your Kitscore data with.
Twitch APISource of account statistics when you connect a Twitch account — see Section 7. This is a data source we read from, not a party we share your Kitscore data with.
Discord APISource of server ownership and member-count statistics when you connect a Discord account — see Section 8. This is a data source we read from, not a party we share your Kitscore data with.

Each processes data on our behalf under its own data processing terms. We don't share your information with any other third party except where required by law, to investigate fraud, or to protect the rights and safety of our users.

10. Cookies

We use essential cookies/local storage required to keep you signed in and to operate the Service securely. We do not currently use third-party advertising or tracking cookies. If that changes, we'll update this policy and add a cookie notice.

11. How long we keep data

12. Your choices

You can ask us to access, correct, or delete the data we hold about you by emailing hello@kitscore.co, or, for connected-platform data specifically, using our Data Deletion Instructions. Note that deleting evidence tied to a mutually confirmed campaign may affect the accuracy of your historical score, and we may be required to retain certain billing records regardless of a deletion request. If you're in the EU, UK, or California, you have specific rights under GDPR, UK GDPR, or the CCPA that we'll honor on request.

13. Children's privacy

Kitscore is intended for creators and sponsors who are 18 or older, and is not directed at children. We don't knowingly collect data from anyone under 18.

14. Security

We use reasonable technical and organizational measures to protect your data, including access controls on our database (row-level security) and encrypted payment processing via Stripe. No system is 100% secure, and we can't guarantee absolute security.

15. Changes to this policy

If we materially change how we collect or use your data, we'll update the date at the top of this page and, where appropriate, notify you directly.

16. Contact

General & privacy requests: hello@kitscore.co
Billing-related data: billing@kitscore.co
Platform data deletion requests: see our Data Deletion Instructions