Privacy Policy

Last updated: February 26, 2026

RaiderBuddy ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use the RaiderBuddy desktop application, web application, and Chrome browser extension (collectively, the "Services").

1. Legal Bases for Processing

We process your personal data on the following legal bases under Art. 6 GDPR:

  • Art. 6(1)(b) GDPR – Processing necessary for the performance of a contract (account management, authentication, subscription processing via Stripe).
  • Art. 6(1)(a) GDPR – Your freely given consent (analytics cookies via Google Analytics and Vercel Analytics, obtained through our cookie consent banner).
  • Art. 6(1)(f) GDPR – Our legitimate interests in ensuring the security and proper operation of our Services (security logging, fraud prevention).

2. International Data Transfers

Some of our service providers are located outside the European Economic Area (EEA), in particular in the United States. These transfers are covered by appropriate safeguards:

  • Supabase – EU Standard Contractual Clauses (SCCs)
  • Stripe – EU Standard Contractual Clauses (SCCs)
  • Google (Analytics) – EU Standard Contractual Clauses (SCCs)
  • Vercel (Analytics) – EU Standard Contractual Clauses (SCCs)

You may request a copy of the applicable safeguards by contacting us at raiderbuddyapp@gmail.com.

3. Information We Collect

Account Information

When you sign in using Discord or Google OAuth, we receive limited profile information from these services, including:

  • Your username or display name
  • Your email address
  • Your profile picture (if available)
  • A unique identifier from the OAuth provider

Local Application Data

RaiderBuddy stores the following data locally on your device:

  • Application settings (overlay position, hotkey configurations, notification preferences)
  • Authentication tokens (securely stored for session management)
  • Event notification subscriptions
  • User preferences and customizations
  • Cookie consent preference (key: raiderbuddy-cookie-consent)

Subscription Data

If you subscribe to RaiderBuddy Premium, we process subscription information through Stripe. We store your subscription status and related metadata, but we never store your payment card details—those are handled exclusively by Stripe.

Chrome Extension Data

The RaiderBuddy Chrome extension stores the following data locally in your browser:

  • OAuth state parameters (temporarily, for secure authentication)
  • PKCE code verifiers (temporarily, deleted after authentication completes)
  • Embark account connection status

The extension requires access to specific websites (Embark's authentication servers and RaiderBuddy domains) solely to facilitate the OAuth authentication flow. The extension does not track your browsing activity or collect any data outside of the authentication process.

4. How We Use Your Information

We use the collected information to:

  • Provide and maintain the RaiderBuddy application
  • Authenticate your account and manage your session
  • Process and manage your Premium subscription
  • Send event reminders and notifications you've opted into
  • Sync your preferences across sessions
  • Improve our services and user experience (only with your consent for analytics)

5. Analytics & Tracking

Desktop Application

The RaiderBuddy desktop application uses Google Analytics 4 (via the Measurement Protocol) to help us understand how the app is used. Analytics are only activated after you give your explicit consent via the consent banner shown on first launch (legal basis: Art. 6(1)(a) GDPR).

  • Google Analytics 4 (Measurement Protocol): We collect anonymized usage data including app opens, page views within the app, and feature interactions. A randomly generated, persistent client ID (UUID) is stored locally to attribute sessions — it contains no personal information.

You can withdraw your consent at any time via Settings in the app (Analytics section) or by reinstalling the application (which clears local storage). You may also prevent Google Analytics tracking globally by installing the Google Analytics Opt-out Browser Add-on.

Chrome Extension

The RaiderBuddy Chrome extension does not collect any analytics or tracking data. It does not monitor your browsing history, collect usage statistics, or transmit any data to external servers beyond what is necessary for the Embark OAuth authentication flow. All data stored by the extension remains local to your browser.

Web Application

The RaiderBuddy web application uses analytics services to help us understand how users interact with our website. These services are only activated after you give your explicit consent via the cookie consent banner shown on your first visit (legal basis: Art. 6(1)(a) GDPR).

  • Google Analytics 4: We collect anonymized usage data including page views, feature interactions, session duration, and general engagement metrics. Google Analytics is configured with Consent Mode v2 and will not send tracking data until you accept.
  • Vercel Analytics: Anonymous page-view and performance data collected by our hosting provider Vercel. Only activated after consent.

You can withdraw your consent at any time by clearing your browser's localStorage (key: raiderbuddy-cookie-consent) or by contacting us. You may also prevent Google Analytics tracking at the browser level by installing the Google Analytics Opt-out Browser Add-on.

6. Data Storage & Security

Local Storage

Most of your data is stored locally on your device using encrypted storage. This includes your application settings, preferences, and session tokens. This data remains on your computer and is not transmitted to our servers unless necessary for account functionality.

Cloud Storage

Account data and subscription information are stored securely on Supabase, a trusted cloud platform with enterprise-grade security measures including:

  • Encryption at rest and in transit
  • Row-level security policies
  • Regular security audits

7. Third-Party Services

RaiderBuddy integrates with the following third-party services:

Supabase

Provides authentication, database storage, and real-time features. View their privacy policy

Stripe

Handles payment processing for Premium subscriptions. View their privacy policy

Discord

Optional OAuth provider for account sign-in. View their privacy policy

Google

Optional OAuth provider for account sign-in, and Google Analytics (with consent). View their privacy policy

Embark Studios

OAuth provider for linking your Embark ID (ARC Raiders account) via the Chrome extension. View their privacy policy

Vercel

Hosting provider for the web application. Vercel Analytics is only activated with your consent. View their privacy policy

NitroPay

Advertising partner that serves ads on the web application. NitroPay may collect device identifiers and browsing data for ad personalization. California residents can opt out via the "Do Not Sell My Personal Information" link in the footer. View their privacy policy

8. Data Sharing

We do not sell, trade, or rent your personal information to third parties. Your data may only be shared:

  • With service providers who assist in operating our application (Supabase, Stripe)
  • When required by law or to protect our rights
  • With your explicit consent

9. Your Rights

Under the GDPR, you have the following rights regarding your personal data. To exercise any of these rights, please contact us at raiderbuddyapp@gmail.com:

  • Access (Art. 15 GDPR) – Obtain a copy of the personal data we hold about you.
  • Rectification (Art. 16 GDPR) – Correct inaccurate or incomplete data.
  • Erasure (Art. 17 GDPR) – Request deletion of your account and associated data.
  • Restriction (Art. 18 GDPR) – Request that we restrict the processing of your data.
  • Portability (Art. 20 GDPR) – Receive your data in a structured, machine-readable format.
  • Objection (Art. 21 GDPR) – Object to processing based on legitimate interests.
  • Withdrawal of consent (Art. 7(3) GDPR) – Where processing is based on your consent, you may withdraw it at any time without affecting the lawfulness of prior processing.
  • Lodge a complaint (Art. 77 GDPR) – You have the right to lodge a complaint with the supervisory authority responsible for our location, the Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen (LDI NRW).

10. California Privacy Rights (CCPA)

If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with additional rights regarding your personal information:

  • Right to Know – You have the right to request that we disclose the categories and specific pieces of personal information we have collected about you, the categories of sources, the business purpose for collecting it, and the categories of third parties with whom we share it.
  • Right to Delete – You have the right to request deletion of your personal information, subject to certain exceptions.
  • Right to Opt Out of Sale – You have the right to opt out of the "sale" of your personal information. Our advertising partner NitroPay may share device identifiers and browsing data with third parties for ad personalization, which may constitute a "sale" under the CCPA. You can opt out by clicking the "Do Not Sell My Personal Information" link in the footer of our website.
  • Non-Discrimination – We will not discriminate against you for exercising any of your CCPA rights.

To exercise your rights, please contact us at raiderbuddyapp@gmail.com. We will respond to verifiable requests within 45 days.

11. Data Retention

We retain your account data for as long as your account is active. If you delete your account, we will remove your personal data within 30 days, except where we are required to retain it for legal or business purposes.

Local data stored on your device can be cleared at any time by uninstalling the application or using the "Reset to Defaults" option in settings.

12. Children's Privacy

RaiderBuddy is not intended for children under the age of 16. In accordance with Art. 8 GDPR, we do not knowingly collect personal information from children under 16 without verifiable parental consent. If you believe we have collected such information, please contact us immediately at raiderbuddyapp@gmail.com.

13. Automated Decision-Making

We do not make any automated decisions about you that produce legal or similarly significant effects within the meaning of Art. 22 GDPR. No profiling is used to make such decisions.

14. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any significant changes by posting the new policy on this page and updating the "Last updated" date. We encourage you to review this policy periodically.

15. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us:

16. Data Controller

The controller responsible for processing your personal data within the meaning of the General Data Protection Regulation (GDPR) is:

Tim Langner
Erbdrostenweg 30A
48531 Nordhorn
Germany
Email: raiderbuddyapp@gmail.com