Privacy Policy
Last Updated: July 2026
1. Minimal Data Collection
Shrimp Check is built around privacy and minimal data collection. We only collect the minimal information necessary to deliver posture check notifications to your designated channels:
- Account Identifiers: Your email address and/or single-sign-on ID (WorkOS/AuthKit).
- Connector Endpoints: The channel endpoints you explicitly provide (e.g. Slack Member ID or Webhook URL, Discord User ID, Telegram Chat ID, ntfy topic name).
- Preferences & Logs: Your posture schedule settings, selected persona, timezone, and timestamp logs of posture check responses ("vertical" vs. "shrimping") to maintain your streak metrics.
2. How We Use Data
Your data is used strictly for operating the service—scheduling and delivering surprise posture pings, calculating your streaks, and compiling your weekly report cards.
We NEVER sell, rent, monetize, share, or trade your personal data, email address, or notification endpoints with any third parties or advertisers.
3. Third-Party API Transports
To deliver notifications, endpoint data is transmitted to the specific provider you selected (e.g. Slack API for Slack DMs, Resend for email, Discord API for Discord DMs, Telegram API for Telegram). Third-party services process data in accordance with their own respective privacy policies.
4. Data Retention & Explicit Data Deletion Requests
Your account data and channel endpoints remain stored only while your account is active. You may disable or remove any connected notification channel at any time from your Profile Settings page.
How to Request Complete Data Deletion: In compliance with global privacy standards and Slack Marketplace guidelines, any user or Slack workspace administrator may request the full, permanent deletion of their account data, workspace webhooks, and associated posture check logs.
To initiate a deletion request, email help@shrimpcheck.com with the subject line Data Deletion Request. All associated records, endpoint credentials, and historical logs will be permanently deleted from our databases within 30 days.
5. Third-Party Sub-processors
Shrimp Check engages select infrastructure and service providers ("sub-processors") to host our cloud application, store database records, and deliver notifications. Each sub-processor is evaluated for data security and compliance:
- Vercel Inc. — Cloud hosting & serverless application execution (USA).
- Neon Inc. — Managed PostgreSQL database storage (USA).
- Upstash Inc. — Serverless QStash cron job scheduling (USA).
- WorkOS Inc. — Authentication & Single-Sign-On user account management (USA).
- Resend Inc. — Transactional email notification delivery (USA).
6. Contact & Support
If you have questions about your privacy, data deletion, or sub-processors, contact us at help@shrimpcheck.com. As a non-commercial hobby project, support inquiries receive a response within 2 business days.