Privacy Policy

Last updated: July 14, 2026

1. Who we are

Gigster ("we", "us") operates gigster.website and the Gigster Chrome extensions for Fiverr and Freelancer (collectively, the "Service"). This Privacy Policy explains how we collect, use, store, and share information when you use our website, dashboard, and browser extensions.

Gigster is an invite-only platform for freelancers. By using the Service, you agree to this Privacy Policy. Our Terms of Service also apply.

2. Information we collect

Account data. When you sign up, we collect your email address, @nickname (username), password (stored securely via our authentication provider), invite/referral metadata, and account status (e.g. free, active member).

Marketplace conversation data. When you use a Gigster Chrome extension, the extension reads the visible text of client conversations in your open Fiverr or Freelancer inbox tab — only after you log in and press Start (or enable Auto mode). This text is sent to our servers to generate AI reply drafts, track negotiation progress, and produce client briefs when a deal is confirmed.

AI persona and project data. Your agent persona settings (name, tone, specialty, rules) and structured project records (requirements, budget, deadlines, brief scores) are stored in our database to power reply drafting and project site builds.

Extension settings (local). The Chrome extension stores your login session tokens, manual/auto mode preference, and related settings locally in your browser using Chrome's storage API so you stay signed in between sessions.

Payment and subscription data. If you activate a paid membership, we record your chosen plan, USDT transaction hash (submitted by you), and subscription dates. We do not store cryptocurrency wallet private keys.

Technical and security data. We may collect IP addresses at signup and login for abuse prevention, and standard server logs (timestamps, request metadata) for security and reliability.

Optional integrations. If you connect Telegram, we store a link code and your Telegram chat ID to send you notifications (new clients, brief ready, site ready). Email delivery uses our transactional email provider.

3. How we use your information

  • Authenticate you on the website and in Chrome extensions.
  • Generate AI reply drafts in your configured persona.
  • Track client negotiations and produce brief documents and project sites when you choose (paid features after membership activation).
  • Operate subscriptions, payments verification, and support.
  • Send optional Telegram and email notifications you enable.
  • Prevent abuse, enforce invite rules, and maintain security.

We do not sell your personal data to third parties. We do not use your marketplace inbox content for advertising or unrelated profiling.

4. Chrome extensions (Fiverr and Freelancer)

The Gigster Chrome extensions are the primary way members use the Service. Each extension is limited to one marketplace and requests only the permissions needed for its function:

  • Storage — session tokens and extension preferences, stored locally in your browser.
  • Tabs — detect when you have the correct marketplace inbox open.
  • Scripting — read visible inbox message text on pages you are already viewing.
  • Alarms — periodic checks only when Auto mode is enabled and the extension is running; no alarms when stopped.
  • Host permissions — limited to the relevant marketplace domain (fiverr.com or freelancer.com), gigster.website, and our API at gigsterbackend-production.up.railway.app.

No remote code. The extensions do not download or execute external JavaScript or other executable code. They communicate with our API over HTTPS and receive draft text as JSON.

Manual mode is the default: you review each draft before sending. Auto mode is optional and requires explicit opt-in plus acceptance of a ban-risk disclaimer.

You control when the extension runs. Stop the extension at any time from the popup. Logging out removes the local session from your browser.

5. Where data is processed and stored

Data is stored in Supabase (PostgreSQL) and processed on our backend hosted on Railway. AI drafting uses server-side models (Anthropic Claude and OpenAI) — prompts and persona logic never run inside the extension or public website bundle.

Client project sites are deployed to *.gigsterr.online via Vercel. Those public sites contain only the client project content you approve for delivery, not your Gigster account credentials.

6. Data retention

We retain account and project data while your membership is active or while you use the free tier. Conversation messages and project records are kept to maintain thread continuity and negotiation history. You may request deletion of your account and associated data by contacting us (see Section 10).

Extension-local data (tokens, settings) remains on your device until you uninstall the extension, clear browser data, or log out.

7. Third-party services

We use trusted providers to operate the Service:

  • Supabase — authentication and database
  • Railway — API hosting
  • Vercel — website and client project site hosting
  • Anthropic / OpenAI — AI drafting (server-side only)
  • Resend — transactional email
  • Telegram Bot API — optional notifications
  • Cloudflare — DNS, security, and bot protection

These providers process data only as needed to deliver the Service and are bound by their own privacy and security obligations.

8. Security

We use industry-standard measures including HTTPS encryption, row-level database access controls, server-only API keys, invite gates, rate limiting, and email verification. No system is perfectly secure; use a strong unique password and keep your extension login private.

9. Your choices and rights

You can:

  • Update your persona and password in the dashboard.
  • Stop or uninstall the Chrome extension at any time.
  • Decline Auto mode and use Manual mode only.
  • Choose not to connect Telegram.
  • Request access, correction, or deletion of your account data by emailing us.

If you are in the European Economic Area or UK, you may have additional rights under applicable data protection law (access, rectification, erasure, restriction, portability, objection). Contact us to exercise these rights.

10. Children

Gigster is not intended for users under 18. We do not knowingly collect data from children.

11. Changes to this policy

We may update this Privacy Policy from time to time. The "Last updated" date at the top will change when we do. Material changes may be communicated via the website or email.

12. Contact us

For privacy questions, data requests, or Chrome Web Store inquiries:

Email: privacy@gigster.website

Website: https://www.gigster.website

Setup help: gigster.website/guide