Privacy Policy
How TheTipTrack collects, uses, and protects your data.
Overview
TheTipTrack ("we", "our", or "us") operates the TheTipTrack studio management platform at thetiptrack.com and the TipTrack Browser Chrome extension. This Privacy Policy explains what data we collect, how we use it, and your rights regarding that data.
By using our platform or installing the extension, you agree to the practices described in this policy. If you are using TheTipTrack on behalf of a studio or business, you represent that you have the authority to bind that entity to these terms.
TipTrack Browser Extension
The TipTrack Browser Chrome extension is installed by studio operators or streamers to monitor tip and token activity on supported streaming platforms. It collects the following categories of data:
Authentication information
Your TheTipTrack API key is stored locally in the browser using chrome.storage.local. This key is used to authenticate network requests to the TheTipTrack backend. It is never shared with third parties.
Network activity on streaming platforms
On supported platforms (Chaturbate, BongaCams, StripChat, CAM4), the extension intercepts network requests made by the page — including API calls, WebSocket messages, and chat events — to detect token donations in real time. This data is batched and sent to your TheTipTrack account dashboard.
The extension only captures data on the specific streaming platform tabs where it is active. It does not monitor general browsing activity.
User activity on monitored tabs
When the "mirrow" screen-sharing feature is enabled by a studio operator, the extension captures mouse position, click events, scroll position, window size, and DOM snapshots of the streaming platform page. This data is transmitted via WebRTC to authorized viewers within the studio's TheTipTrack account.
Chat messages (personal communications)
The extension reads chat messages on streaming platform pages to identify tip and token donation events. Chat content is processed locally and only tip-related events are forwarded to the TheTipTrack backend. Raw chat messages are not stored on our servers.
Website content (DOM snapshots)
The mirrow feature serializes the DOM of the streaming platform page and transmits it to authorized studio viewers via WebRTC. Before transmission, all <script> tags and inline event handlers are stripped, password fields are masked, and elements marked with data-private are redacted.
What the extension does not collect: browsing history outside monitored platforms, personally identifiable information (name, address, ID), health or financial data, location data, or any data from tabs not matching the configured streaming platforms.
TheTipTrack Platform (Dashboard)
When you create a TheTipTrack account and use the dashboard, we collect:
- Account information: email address, hashed password, and account settings.
- Studio configuration: streamer profiles, platform links, payout rules, and alert preferences you create.
- Tip and token data: donation events forwarded from the extension, including amounts, timestamps, platform, and streamer identifiers.
- Usage data: login timestamps and feature usage for service improvement.
How We Use Your Data
All data collected is used exclusively for the following purposes:
- Providing real-time tip monitoring and analytics on your studio dashboard.
- Generating payout reports and performance metrics for studio operators.
- Authenticating extension sessions with your TheTipTrack account.
- Enabling the mirrow screen-sharing feature for authorized studio operators.
- Improving service reliability and debugging technical issues.
We do not use your data for advertising, profiling, or any purpose unrelated to the TheTipTrack service.
Data Sharing
We do not sell, rent, or trade your personal data to third parties. Data is shared only in the following limited circumstances:
- Within your studio account: tip data and mirrow streams are shared with other authorized users within your TheTipTrack organization.
- Service providers: we may use hosting and infrastructure providers who process data on our behalf and are bound by confidentiality obligations.
- Legal requirements: we may disclose data if required by law or to protect the rights and safety of our users.
Data Retention & Deletion
Tip and token event data is retained for as long as your account is active or as needed to provide the service. You may request deletion of your account and associated data at any time by contacting us at the email below.
Extension data stored locally (API key, session state) can be cleared at any time by uninstalling the extension or clearing the extension's storage from Chrome's extension settings.
Security
We use industry-standard security measures including HTTPS encryption for all data in transit, hashed credentials, and access controls. The mirrow WebRTC feature uses encrypted peer connections. Sensitive DOM content (passwords, private fields) is masked before any transmission.
No method of transmission over the internet is 100% secure. We encourage users to use strong, unique passwords and keep their API keys confidential.
Your Rights
Depending on your jurisdiction, you may have the right to access, correct, or delete the personal data we hold about you, or to object to or restrict its processing. To exercise any of these rights, contact us at the address below. We will respond within 30 days.
Age Restriction
TheTipTrack is intended exclusively for users who are 18 years of age or older. The platform is designed for use by adult content studios and their operators. By creating an account or installing the TipTrack Browser extension, you confirm that you are at least 18 years old.
We do not knowingly collect personal data from individuals under the age of 18. If we become aware that we have inadvertently collected data from a minor, we will delete it promptly. If you believe a minor has accessed the platform, please contact us immediately at privacy@thetiptrack.com.
Cookies
The TheTipTrack dashboard uses a single session cookie strictly necessary for authentication. This cookie is set by our server when you log in and is used to keep you signed in during your session. It contains no personal data beyond a session identifier and expires when you log out or after a period of inactivity.
We do not use advertising cookies, tracking pixels, or third-party analytics cookies. The landing page at thetiptrack.com does not set any cookies.
International Data Transfers
TheTipTrack servers are located in the United States. If you are accessing the platform from the European Economic Area (EEA), United Kingdom, or other jurisdictions with data protection laws, your data will be transferred to and processed in the United States.
We apply appropriate safeguards for such transfers, including ensuring our infrastructure providers maintain adequate data protection standards consistent with applicable law. By using the service, you acknowledge and consent to this transfer.
Legal Basis for Processing (GDPR)
For users in the European Economic Area, we process personal data on the following legal bases:
- Performance of a contract: processing your account data, tip events, and authentication information is necessary to provide the TheTipTrack service you have subscribed to.
- Legitimate interests: processing usage data to maintain service reliability and debug technical issues, where these interests are not overridden by your rights.
- Consent: where we ask for your agreement before processing, such as optional features or communications.
You have the right to withdraw consent at any time, and to lodge a complaint with your local data protection supervisory authority (for example, the relevant national DPA in your EU member state, or the ICO in the United Kingdom).
Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the "last updated" date at the top of this page. We encourage you to review this policy periodically. Continued use of the service after changes are posted constitutes acceptance of the updated policy.
Contact Us
If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact us: