Privacy Policy

Last updated: 2026-05-17

The short version: we collect as little as possible, we don't sell your data, we don't track you across the web. Read on for the details.

1. Information We Collect

We collect only what we need to provide the Service:

  • Email address. Used to sign you in (passwordless one-time code) and to send the price-drop alerts you opt into.
  • Profile fields. Optional first name, last name, display name. You can leave these blank.
  • Wishlists & alerts. Products you save and the alerts you set up.
  • Usage data. Pages you view, products you click. Aggregated and used only to surface better recommendations and improve the Service.
  • Device data. Standard server logs (IP address, browser, referring page). Retained only as long as needed for security and debugging.

We do not collect passwords (we use one-time email codes instead), payment information (your purchase happens on the destination marketplace, not on Diskount), or precise location.

We use Microsoft Clarity to capture how you use and interact with our website through behavioural metrics, heatmaps, and session replay so we can improve the Service. Website usage data is captured using first- and third-party cookies and similar tracking technologies to determine the popularity of pages and products, optimise the site, and protect against fraud and abuse. We do not use Clarity for advertising. Clarity does not capture passwords or credit card numbers, and form input is masked by default. For more information about how Microsoft collects and uses your data, see the Microsoft Privacy Statement, and Clarity's cookie list for the exact cookies set.

2. How We Use Information

  • Provide and operate the Service (sign-in, wishlists, alerts).
  • Send transactional emails (sign-in codes, price-drop alerts you opt into).
  • Improve recommendations and detect bugs.
  • Protect against abuse (rate limiting, fraud detection).

We do not use your data to build advertising profiles, and we do not sell your data to third parties.

3. Cookies & Local Storage

Diskount uses a small number of cookies:

  • Authentication cookie. Set when you sign in. Required to keep you signed in across pages.
  • Theme cookie. Remembers your light / dark / system preference.
  • Session cookie. Used to maintain CSRF protection and keep your session secure.

Microsoft Clarity (see §1 and §4) sets a small number of first-party cookies to stitch together visits within a session for heatmap/replay generation. We do not use third-party advertising or cross-site tracking cookies.

4. Sharing With Third Parties

We share data only with the providers we need to run the Service:

  • Email delivery provider. Sends your sign-in codes and price-drop alerts.
  • Cloud hosting provider. Stores your account data and serves the Service.
  • Affiliate networks. When you click a "Shop" link, the destination marketplace and its affiliate network may receive standard referrer information so the click can be attributed correctly.
  • Microsoft Clarity. Receives anonymised usage signals (pageviews, clicks, scroll behaviour) so we can improve the Service. See §1 for details on what's captured and masked.

We do not sell, rent, or trade your personal data.

5. Marketplace Integrations

Diskount surfaces products from third-party marketplaces (currently Amazon, with Walmart and others coming soon). Clicking a "Shop" link takes you to the destination marketplace, where its own privacy policy governs the rest of your visit. We do not control how those marketplaces collect or use your data once you leave Diskount.

6. Data Retention

We keep your account data for as long as you maintain a Diskount account. You can delete your account at any time from your account settings, which permanently removes your profile, wishlists, and alerts. Server logs are kept for up to 30 days for security purposes.

7. Your Rights

Depending on where you live, you may have the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate or incomplete data.
  • Delete your account and associated data.
  • Export your data in a portable format.
  • Opt out of marketing emails (you can unsubscribe from any email we send).

To exercise any of these rights, email us at [email protected].

8. Security

We use reasonable technical and organisational measures to protect your data, including encryption in transit (HTTPS), encryption at rest for sensitive fields, and access controls. No internet service can guarantee absolute security, so we encourage you to use a strong, unique password for the email account you sign in with.

9. Children's Privacy

Diskount is not intended for users under 16. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it.

10. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date above. Material changes will be communicated to signed-in users via email.

11. Contact

Privacy questions or requests? Reach us at [email protected].