Privacy Policy

Last updated: March 14, 2026

1. Who We Are

Bucko ("we", "us", "our") operates the website bucko.ai and the Bucko Oracle Chrome extension. This privacy policy explains how we collect, use, and protect your information when you use our services.

2. Information We Collect

Account Information

  • Email address (via Google OAuth or email/password signup)
  • Display name
  • Subscription status (free, Pro, or Oracle tier)

Chrome Extension Data

  • Authentication token stored locally in chrome.storage.local to keep you logged in
  • Market data scraped from the current page (settlement prices, odds, timer) — sent to our API for analysis, not stored on your device
  • Prediction history (direction, confidence, outcome) for performance tracking

Usage Data

  • Firebase Analytics (anonymized usage patterns, page views)
  • API request logs (IP address, timestamp, endpoint) retained for 30 days

What We Do NOT Collect

  • Browsing history outside of supported market pages
  • Kalshi or Polymarket account credentials
  • Wallet addresses or financial account information
  • Personal files or device data

3. How We Use Your Information

  • Authenticate you and manage your subscription
  • Provide AI-powered market analysis and predictions
  • Track prediction performance (win rate, streak, P&L)
  • Process payments via Stripe (we never see your full card number)
  • Improve our product and fix bugs

4. Data Storage & Security

Your data is stored in Google Firebase (Firestore) with encryption at rest and in transit. Authentication tokens are stored locally in your browser's extension storage. Payments are processed by Stripe — we never store credit card numbers.

5. Third-Party Services

  • Firebase — authentication, database, analytics
  • Stripe — payment processing
  • Vercel — website hosting
  • OpenRouter — AI analysis (market data sent for analysis, not stored by them)
  • Polygon / Binance — market price data
  • Kalshi API — prediction market data

6. Data Retention

Account data is retained while your account is active. Prediction history is retained for performance tracking. You can request deletion of your data at any time by contacting us or using Delete Account in your Bucko profile. Before an in-app deletion completes, Bucko asks Stripe and Whop to stop any linked Bucko renewals. If either provider cannot confirm that billing is stopped, the account and its data remain intact. API logs are automatically deleted after 30 days.

7. Chrome Extension Permissions

  • storage — save your login token and cached stats locally
  • activeTab — read market data from the current Kalshi/Polymarket page
  • tabs — detect navigation between market pages (SPA support)
  • alarms — schedule periodic data refresh
  • Host permissions (kalshi.com, polymarket.com) — inject the prediction overlay on supported pages
  • Host permissions (bucko.ai) — authenticate with our backend

8. Your Rights

You can:

  • Request a copy of your data
  • Request deletion of your account and all associated data
  • Uninstall the Chrome extension at any time (local data is cleared automatically)
  • Opt out of analytics by disabling Firebase Analytics in your browser

9. Contact

For privacy questions or data requests, email us at support@bucko.ai

10. Changes

We may update this policy from time to time. Changes will be posted on this page with an updated date. Continued use of our services after changes constitutes acceptance.