Sterp

Privacy Policy

Last updated: March 31, 2026

Sterp (“we,” “us,” “our”) is operated by Cameron Secore. This policy explains what data we collect, why, and what we do with it.

What We Collect

Account information. When you sign up, we collect your email address and, if you use Google sign-in, your name and profile photo. You also choose a username and may add a display name, bio, avatar, and social media links.

Product content. The products you add to your page — names, one-liners, photos, and any archive notes you write — are stored in our database. Photos are stored in Supabase Storage.

Click data.When a visitor clicks a “View Product” link on any Sterp page, we log that click, including the product, the page owner, the referring URL (if available), and a timestamp. We track this to measure how the platform is used and to support future revenue sharing with page owners.

Authentication data. We use Supabase Auth, which handles email/password credentials, magic link tokens, and Google OAuth tokens. We do not store your password directly — Supabase manages this securely.

Basic usage data. Supabase provides basic infrastructure-level analytics (database queries, storage usage). We do not run Google Analytics or any third-party tracking scripts on Sterp.

How We Use Your Data

  • To operate your Sterp page and display it publicly at sterp.com/username
  • To track clicks on product links (for platform analytics and future revenue sharing)
  • To rewrite product links with affiliate tags (see Affiliate Links below)
  • To send transactional emails (magic link sign-in, account-related notices)
  • To fix bugs and improve the product

We do not sell your personal data. We do not run ads.

Affiliate Links

Product links on Sterp pages may include affiliate tags (such as Amazon Associates tags). When a visitor clicks a product link and makes a purchase, Sterp may earn a commission from the retailer. This happens automatically — page owners do not manage affiliate links directly.

We track clicks to measure affiliate performance and to support a future revenue-sharing program with page owners. Click data is associated with the page owner's account and the specific product.

What's Public

Your Sterp page is public by design. Once your page is live (2+ products with photos), anyone with your link can see your username, name, avatar, bio, social links, product photos, product names, one-liners, and archive notes. This is the core product — there's no private mode.

Draft products (without photos) and products you delete are not visible to anyone.

Data Storage and Security

Your data is stored in Supabase (hosted on AWS infrastructure). Photos are stored in Supabase Storage. We use row-level security policies in our database and HTTPS everywhere. We don't store passwords — authentication is handled by Supabase Auth.

Third-Party Services

  • Supabase — database, authentication, file storage
  • Vercel — hosting and deployment
  • Amazon Associates — affiliate link program (clicks that go to Amazon are subject to Amazon's privacy policy)
  • Google OAuth — if you sign in with Google

Your Choices

  • Edit or delete your content. You can edit or delete any product, collection, or profile information from your dashboard at any time.
  • Delete your account. Email cam@sterp.com to request full account deletion. We'll remove your account, all products, photos, and associated data. Click history may be retained in anonymized form for aggregate analytics.
  • Export your data. Email cam@sterp.com and we'll provide a copy of your data.

Children

Sterp is not intended for anyone under 13. We do not knowingly collect data from children under 13. If you believe a child has created an account, contact us and we'll remove it.

Changes to This Policy

We may update this policy. If we make significant changes, we'll note it here with an updated date. Continued use after changes means you accept the new policy.

Contact

Questions? Email cam@sterp.com.