Privacy Policy
Last updated: March 23, 2026
1. Who we are
GPUs R Us (“the Service”) is operated by an individual based in California, USA. This policy explains what data we collect, why, and your rights.
2. What we collect
We collect the minimum data needed to run the Service:
| Data | Source | Purpose |
|---|---|---|
| GitHub username & email | GitHub login | Account identity, communication |
| GitHub avatar URL | GitHub login | Display in the UI |
| API tokens | Generated by you | Authenticating CLI & API requests |
| GitHub App connection | GitHub App install | Accessing your repositories on your behalf |
| Job metadata | Service usage | Job history, billing, debugging |
| Payment info | Stripe | Processing credit purchases |
We do not collect analytics, run trackers, or sell any data to third parties.
3. How we store your data
Account and job data is stored securely in an encrypted database. All connections use TLS. Payment data is handled entirely by Stripe — we never see or store your card details. GitHub access tokens are never persisted; they are generated on demand and used only for the duration of a request.
4. Third-party services
The Service relies on these third parties, each with their own privacy policies:
- GitHub — authentication and repository access
- Stripe — payment processing
- AWS — GPU compute instances
5. Cookies & local storage
We use a single authentication token stored in your browser’s local storage to keep you logged in. We do not use tracking cookies, advertising cookies, or third-party analytics scripts.
6. Your rights
Regardless of where you are located, you can:
- Access your data — request a copy of everything we store about you.
- Delete your data — request full deletion of your account and all associated data.
- Export your data — request your data in a portable format.
To exercise any of these rights, contact us (see below). We will respond within 30 days.
7. Data retention
We keep your account data for as long as your account is active. Job metadata is retained for billing and debugging purposes. If you delete your account, we will remove all your personal data within 30 days, except where retention is required by law (e.g., billing records).
8. International users
The Service is operated from the United States. If you are in the EU/EEA, UK, or other jurisdiction with data protection laws, your data is transferred to and processed in the US. By using the Service, you consent to this transfer. We handle your data with the same care regardless of where you are located.
9. Children
The Service is not directed at anyone under 18. We do not knowingly collect data from minors. If you believe a minor has created an account, please contact us.
10. Changes to this policy
We may update this policy from time to time. Material changes will be communicated by email or through the Service. The “last updated” date at the top reflects the most recent revision.
Contact
Privacy questions or data requests? Open an issue on our GitHub repository or email us at the address listed on our GitHub profile.