CreditPerk

Privacy Policy

Last updated September 28, 2026

This Privacy Policy explains how Guy Hazak, an individual doing business as CreditPerk ("CreditPerk," "we," "us"), collects, uses, and shares information when a business ("you," "Customer") uses the CreditPerk audit tool, browser extension, and dashboard (the "Service"). CreditPerk is a company under formation in Israel; upon its incorporation and registration, our obligations under this Policy will transfer to that entity.

This Policy is written for our current customer base - small and medium businesses located in the United States - and separately addresses rights available to California residents. If we expand to the EU/UK or other jurisdictions, this Policy will be updated before those users are onboarded.

1. Information We Collect

  • Account and business information: business name, your name, email, role, and similar identifiers you provide when signing up.
  • Statement files you upload: you choose which card statement files to submit for an audit. We do not connect to your bank, and we never ask for banking credentials, card numbers, or login details.
    • CSV and Excel files are not stored. The file contents are sent directly to our parsing function, read in memory, and discarded when the request ends. No copy is written to storage.
  • Financial and transaction data: the transaction rows extracted from your statement - merchant name, amount, date, and derived spend category. During an audit these extracted rows are held only in your browser's session storage for the current browser tab and are not written to our database; closing the tab discards them.
  • Merchant names we could not categorize: when a merchant is not in our category database, we store the merchant name, how many times it has been seen, and its merchant category code, in order to improve categorization for everyone. We do not store the amount, the date, or any link between that merchant record and you.
  • Audit summary: when you sign in to see your audit, we store your email address together with summary figures only (your annual card spend, estimated annual value, number of recommended cards and a plan summary) and how you reached us (for example, which ad or link you clicked) - not your individual transactions.
  • Usage data: how you interact with the dashboard and browser extension, pages viewed, and features used.
  • Browser extension data: at the point of checkout, the merchant/category context needed to recommend a card - we do not collect full browsing history unrelated to this function.
  • Device and cookie data: IP address, browser type, and cookies/similar technologies on our marketing site.

2. How We Use Information

  • To analyze your spending and recommend which card(s) to use or open, and to estimate the additional reward value (ROI) available to you.
  • To operate, maintain, and improve the recommendation engine and card catalog.
  • To communicate with you about your account, the audit results, and service updates. These service communications are not marketing.
  • To send you emails about new CreditPerk features and the full product launch. Agreeing to receive emails from CreditPerk is a condition of use of the free audit: the audit cannot be run without this agreement. You can unsubscribe at any time using the link in any email.
  • Using the free audit requires agreeing to receive emails from CreditPerk, including your audit results and occasional product news and tips. You can unsubscribe at any time with the link in any email.
  • To detect fraud, secure the Service, and comply with legal obligations.

3. How We Share Information

We do not sell your personal information, and we do not share it for cross-context behavioral advertising.

  • Service providers: our hosting and application platform (Base44) and analytics/communications tools, under contracts limiting their use of your data to providing services to us.
  • Card issuers: we do not currently share your personal information with card issuers, because our affiliate referral program is not yet active. When we launch a referral program, we will update this section to describe exactly what - if anything - is shared, before it goes live.
  • Legal and safety: where required by law, subpoena, or to protect the rights, property, or safety of CreditPerk, our customers, or others.
  • Business transfers: if CreditPerk is involved in a merger, acquisition, incorporation, or asset transfer, your information may be transferred as part of that transaction, subject to this Policy or a successor policy of which you'll be notified.

4. Cookies and Tracking Technologies

Our marketing website uses cookies and similar technologies for analytics and to remember your preferences. The Service dashboard uses only essential cookies required for you to stay logged in.

5. Data Retention

  • CSV/Excel statement files: not retained at all - never written to storage.
  • Extracted transaction rows: held in your browser session only for the duration of the audit; discarded when you close the tab.
  • Account, email, and audit summary data: retained for as long as your account is active, and for up to 24 months after account closure to support year-over-year comparisons and resolve disputes, unless a longer period is required by law.
  • Uncategorized merchant names: retained indefinitely as reference data, because they contain no information that identifies you or your business.

You may request earlier deletion of anything above; see Section 6.

6. Your Privacy Rights - California Residents (CCPA/CPRA)

If you are a California resident (including an individual using the Service on behalf of a business, such as an owner or employee), you have the right to:

  • Know what personal information we have collected, used, and disclosed about you in the past 12 months.
  • Delete personal information we have collected from you, subject to certain exceptions.
  • Correct inaccurate personal information.
  • Opt out of the sale or sharing of personal information - we do not currently sell or share personal information, so there is nothing to opt out of today, but you may still submit a request.
  • Limit the use of sensitive personal information - we use financial/transaction data only to provide the Service, which is a permitted use that does not require an opt-out.
  • Non-discrimination for exercising any of these rights.

To exercise these rights, contact us at admin@creditperk.io or through the contact form on our website. We do not knowingly collect personal information from anyone under 16.

7. Your Privacy Rights - Israel

CreditPerk is based in Israel and is subject to Israel's Privacy Protection Law. You may request access to, or correction/deletion of, information we hold about you by contacting us at the address in Section 12.

8. International Users (Forward-Looking)

This Service is currently offered only to businesses located in the United States. If we begin offering the Service to users in the European Economic Area or United Kingdom, this Policy will be updated to describe the legal bases for processing under GDPR, your rights, our international transfer safeguards, and contact details for a representative, before any such users are onboarded.

9. Data Security

We maintain administrative, technical, and physical safeguards designed to protect your information. No system is perfectly secure, and we cannot guarantee absolute security.

10. Automated Decisions

Card recommendations are generated by an automated analytics engine based on your historical transaction data and publicly available card reward terms. These recommendations are informational; you decide whether to act on them, and no automated decision by CreditPerk approves or denies you credit.

11. Children's Privacy

The Service is intended for business use by adults and is not directed to children. We do not knowingly collect personal information from anyone under 18.

12. Changes to This Policy and Contact

We will post updates here with a new "Last Updated" date and notify you of material changes. Contact us at: admin@creditperk.io

Back