Effective: 2026-08-17 00:00 UTC
This Privacy Policy explains how GRAND VOYAGER TECHNOLOGY CORP (“Pokerai,” “we,” “us,” or “our”) handles personal information when you use pokerai.bet, the Pokerai API and web dashboard, or the MelaGTO macOS application (collectively, the “Services”). It also explains your privacy choices and rights.
We are the controller or business responsible for the personal information covered by this Policy, except where this Policy identifies another party’s independent role.
Stripe processes Web/API payments and may act as our processor/service provider for payment activities we direct and as an independent controller for certain fraud prevention, compliance, and Stripe service activities. Apple processes MelaGTO App Store purchases under Apple’s own notices. Their handling of information for their independent purposes is governed by their privacy notices.
This Policy does not cover a third-party service merely because the Services link to it.
Depending on how you use the Services, we collect:
• Account and contact information: email address, account identifier, login and verification state, communication preferences, and information you provide to support or privacy teams. - Credentials and access metadata: API key metadata (not public display of secret values), session records, authentication events, and account security state. - Usage and entitlement information: plan, quota counters, API usage totals, feature access, subscription periods, and entitlement status. Pokerai API hand or spot content is processed to provide a stateless response and is not intentionally stored as an application record. - Stripe billing information: Stripe Customer, Checkout Session, Subscription, Invoice, Payment Intent, Charge, Refund, and Dispute identifiers and statuses; purchased plan and price; billing period; currency; subtotal, discount, tax, and amount paid; limited billing contact, address, or tax information if supplied; payment failure and retry state; cancellation state; and Terms acceptance. We do not receive or store the complete payment card number or CVC. - Promotion information: eligibility snapshot, claim and grant status, Stripe Coupon/Promotion Code identifiers, a one-way code digest rather than local plaintext code, delivery state, expiration, original recipient, successful redeemer, related invoice, and anti-abuse records. - Apple purchase information: product identifier, transaction and subscription status, environment, entitlement state, and records needed to verify and support MelaGTO purchases. We do not receive your Apple account password or complete payment-card details from Apple. - Support and communications: messages, attachments, request status, replies, and information you choose to provide. Please do not send payment-card details, passwords, API secrets, or unnecessary sensitive information. - Device, network, security, and log information: browser or app type, operating system, timestamps, request route and status, error and reliability events, security signals, and network information such as IP address where processed for delivery, authentication, rate limiting, abuse prevention, or server security. - Website and consent information: pages or features viewed, referring source, performance and aggregate-usage measurements, Cookie or similar-storage state, and consent choices, depending on the tags and settings described in Section 6.
We receive information directly from you; automatically from your browser, app, device, or use of the Services; from Stripe or Apple when they process a transaction; and from service providers that help us authenticate users, deliver email, host and secure the Services, provide analytics, or handle support.
If another user shares a Promotion Code with you, we receive the code you submit. We do not reveal the original recipient to the redeemer or reveal the redeemer to the original recipient through the public Dashboard merely because a code was shared.
We use personal information to:
• create, authenticate, secure, and administer accounts and API keys; - provide API results, apply quotas, and deliver Free or paid plan functionality; - create and administer Checkout, subscriptions, invoices, renewals, cancellation, refunds, disputes, payment recovery, and accounting records; - determine Promotion Code eligibility, issue and redeem codes, prevent duplicate use, and investigate fraud or abuse; - verify Apple purchases and provide MelaGTO entitlements; - send login codes, receipts, billing and renewal notices, security alerts, service messages, and support replies; - send product guidance or plan reminders where permitted, and honor unsubscribe or consent choices; - operate, debug, secure, monitor, and improve reliability and user experience; - enforce our Terms, prevent prohibited real-time assistance and other abuse, protect rights and safety, and establish or defend legal claims; and - comply with legal, tax, accounting, regulatory, and law-enforcement obligations.
Where the law requires a legal basis, we rely as applicable on performance of a contract or steps you request before a contract; compliance with legal obligations; our legitimate interests in operating, securing, supporting, and improving the Services and preventing fraud; consent for processing that requires consent; and establishment or defense of legal claims. You may withdraw consent at any time for future processing, without affecting processing already lawfully performed.
Stripe hosts the Web/API payment interface and collects payment-method information directly. We send Stripe the information needed to create and manage a Customer, Checkout Session, subscription, Portal session, discount, and related billing operation. Stripe returns the billing and transaction metadata described in Section 2 so we can provision access, reconcile accounts, provide support, prevent fraud, and meet financial obligations.
Stripe may process information in multiple countries and may use information for its own fraud, security, compliance, and service purposes as explained in the Stripe Privacy Center. Contact us first for a privacy request about Pokerai billing records; where Stripe independently controls information, Stripe’s own request process may also apply.
We use Cookie or similar browser storage where needed for authentication, security, language or other preferences, and consent state.
Public Pokerai pages currently load Cloudflare Web Analytics to measure aggregate page visits and performance. Cloudflare describes this service as not collecting or using visitors’ personal data; the browser nevertheless communicates with Cloudflare to deliver the analytics beacon and associated network requests.
Public pages use Google Tag Manager (GTM) to deploy Google Analytics 4 (GA4), measurement ID G-ZZEZW1CLRR. After you affirmatively accept optional analytics, GA4 may process page views, scroll events, feature interactions, page and referrer information, browser and device characteristics, coarse location derived from IP address, consent state, and analytics identifiers. We use this information only to understand website visits, feature usage, and performance. We do not connect GA4 to Google Ads or use it for remarketing, targeted advertising, or cross-site profiling.
GA4 is blocked by default and operates only after separate, affirmative analytics consent. Accepting the Terms is not analytics consent. You can refuse or later withdraw without losing access to the Services. We treat a recognized Global Privacy Control signal as a refusal or withdrawal of optional analytics. Google Consent Mode may communicate and apply your choice, but it is not itself the consent interface. Necessary authentication and security storage may continue where permitted.
We do not sell personal information or share it for cross-context behavioral advertising. We will update this Policy and the applicable choices before introducing a materially different analytics or advertising purpose.
MelaGTO is designed for local poker study on your Mac. Study files, imported hands, custom trees, and solver outputs remain on your device unless you choose to send information to support or use an online Pokerai API feature. Local content is subject to your device, backup, and operating-system settings.
We disclose personal information only as reasonably necessary:
• to payment and marketplace providers, including Stripe for Web/API billing and Apple for App Store purchases; - to vendors that provide hosting, infrastructure, security, authentication, email delivery (including Resend), support tooling, diagnostics, and analytics (including Cloudflare and Google for the consented GA4 processing described above); - to professional advisers, auditors, insurers, and financial institutions under appropriate duties; - to authorities or other parties when reasonably necessary to comply with law, enforce agreements, protect rights and safety, prevent fraud or abuse, or establish or defend claims; and - in a merger, financing, acquisition, reorganization, bankruptcy, or sale of assets, subject to appropriate confidentiality and notice requirements.
Service providers may use information only for contracted services and permitted legal purposes. We do not disclose complete payment-card details because Stripe or Apple collects those details directly.
We and our service providers may process information outside the country where you live. Where law requires, we use an approved transfer mechanism, such as adequacy decisions, contractual safeguards, or another lawful basis. Stripe describes its applicable transfer mechanisms, including certifications and contractual safeguards, in its Privacy Center. Contact privacy@pokerai.bet to request information about safeguards relevant to your information, subject to legal and confidentiality limits.
We retain information only for as long as reasonably necessary for the purposes described in this Policy, including to provide an account or paid period, maintain transaction and entitlement history, resolve support requests, prevent fraud, enforce agreements, and meet legal, tax, accounting, audit, and dispute obligations.
Retention depends on the record:
• account and entitlement records are generally retained while the account is active and for an appropriate period afterward; - Stripe Customer, Subscription, Invoice, Refund, and Dispute minimum records are retained for the applicable financial, tax, limitation, and audit periods; - complete Stripe webhook event payloads are intended to be deleted or reduced to necessary fields and integrity hashes after the operational reconciliation period, subject to the final approved schedule; - Promotion Code grants and redemption records are retained as needed to prevent duplicate redemption, handle support, and document the campaign; - support and security records are retained according to request, safety, abuse, and limitation needs; and - local MelaGTO study content remains under your control on your device.
When information is no longer needed, we delete, de-identify, or isolate it as appropriate. Deletion requests may not remove records we must retain or information already de-identified. Backup deletion may occur on a delayed cycle.
We use technical and organizational safeguards designed to protect personal information, including access controls, secret-management boundaries, payment-data minimization, webhook verification, logging restrictions, and reconciliation controls. No online service can guarantee absolute security. If you believe your account or information is at risk, contact security@pokerai.bet or support@pokerai.bet and do not send secrets in the message.
Depending on where you live, you may have rights to request access to or a copy of information, correct it, delete it, restrict or object to processing, receive portable data, withdraw consent, opt out of certain sale/sharing or targeted advertising, or appeal a refusal. You may also complain to your local data-protection authority. California residents may have rights to know, delete, correct, opt out of sale or sharing, limit certain uses of sensitive personal information, and receive non-discriminatory treatment, where the CCPA applies.
To make a request, email privacy@pokerai.bet or use the Contact page. Describe the account and right involved without sending passwords, full payment-card details, or unnecessary sensitive information. We may verify your identity and authority, request only information reasonably necessary for that verification, and deny or limit a request where permitted by law. An authorized agent may submit a request where applicable, subject to verification. We will respond within the period required by law.
You can unsubscribe from product-guidance and plan-reminder emails using the link in the message. Login codes, receipts, billing, security, and necessary service messages are not promotional opt-in messages and may continue while relevant to your account or transaction.
The Services are not directed to anyone under 18, and we do not knowingly collect personal information from a child. If you believe a child provided information improperly, contact privacy@pokerai.bet so we can review and take appropriate action.
We may update this Policy to reflect changes in the Services, law, or our practices. We will post the updated Policy with its effective date and provide additional notice or obtain consent where required. Material changes apply prospectively unless law requires otherwise.
Controller/business: GRAND VOYAGER TECHNOLOGY CORP
Address: 950 TOWER LN FL 21 UNIT 4, FOSTER CITY, CA 94404-2121, UNITED STATES
Privacy requests and questions: privacy@pokerai.bet
General and billing support: support@pokerai.bet
We have not appointed a data-protection representative or DPO. Privacy requests are handled through privacy@pokerai.bet; we will update this Policy if an appointment becomes applicable.
The English version is controlling. Translations are provided for convenience. If applicable law requires a local-language version to control, that law prevails.