Sevil Turan LLC

listingtool Privacy Policy

listingtool runs on your own computer. Your designs, your listings, and your artwork stay on your machine, and we cannot see them. If you connect your shop through our optional relay server, your Etsy sign-in tokens are held there instead of on your machine — see below for exactly what that means.

Who we are

listingtool is published by Sevil Turan LLC, a limited liability company registered in Texas, United States. In this policy, “we”, “us” and “our” mean Sevil Turan LLC, and “you” means the person using the application.

You can reach us at sevilturan@outlook.com.

What this policy covers

This policy covers the listingtool desktop application for Windows and macOS. It does not cover Etsy, Google, or any other service you connect the application to — those services handle your data under their own privacy policies, and we encourage you to read them.

Where your data lives

listingtool is a desktop application, not a hosted service. Everything it stores is written to your own computer, in your operating system's standard application data folder. The one exception is the relay connection option described below, which stores your shop's Etsy sign-in tokens on our server instead. Nothing else — no designs, no listings, no images — is ever transmitted to us.

What the application keeps on your machine:

  • Your shop connection. The access and refresh tokens Etsy issues when you authorise the application, plus your shop's numeric id and name — unless you use the relay connection option, in which case these are held on the relay server instead (see below).
  • Your settings and category defaults. Output folder, chosen shipping profile and return policy, and similar preferences.
  • Your artwork and product photographs, and the composited images the application produces from them.
  • Your generated listing text and any Design Studio conversations.
  • Local diagnostic logs and usage records — timestamps, model names and token counts used to show you what a run cost.

If you connect more than one shop, each shop's data is stored separately and is never combined.

Credentials and how they are protected

You never type an Etsy password into listingtool. Connecting a shop uses Etsy's own OAuth sign-in page, which runs in your browser; the application only ever receives a token.

Tokens and any API keys you enter are encrypted using your operating system's secure credential storage — Keychain on macOS, DPAPI on Windows — and are never written to disk in readable form. They are bound to your machine and user account, so copying the files to another computer does not carry your sign-in with them.

The relay connection option. listingtool can optionally connect your shop through a relay server we operate (hosted on Fly.io), instead of storing our application's Etsy credentials on your machine. If you use this option: your shop's Etsy access and refresh tokens are stored on that server, encrypted at rest; your listing text and images pass through it to Etsy in transit only and are not stored there; and your desktop application authenticates to the relay using a separate token of its own, not an Etsy credential. Disconnecting your shop — in the app or from your Etsy account — deletes the tokens held on the relay.

What is sent to other companies

To do its job, the application sends specific data to the services you have connected. If you use the relay connection option above, your Etsy traffic passes through our server on its way to Etsy; every other row below goes directly from your machine to that service, and nothing passes through us.

ServiceWhat is sentWhy
Etsy Your listing text, images, price, quantity and category To create the draft listing in your shop, under the authorisation you granted
Anthropic Your design or product image, and the product category To generate the listing title, tags and description. Anthropic processes this under its own terms
Web search Short search queries about your product category Only when you turn on the research option, to ground tag suggestions in current results
Google Drive A read-only request for your design files Only if you choose to connect Drive. The application cannot modify or delete anything in your Drive

If you use your own Anthropic API key, or run the application against a Claude installation already on your computer, that traffic goes directly from your machine to Anthropic under your own account.

What we collect

Apart from the relay connection option above, we do not operate a server that receives your designs, listings, shop data or credentials. We do not track your use of the application, and we do not sell, rent or share personal information with anyone for advertising.

If you contact us for support, we will hold whatever you choose to send us — your email address, and any description or screenshot you attach — for as long as needed to help you and to keep a record of the issue.

Your choices

  • Disconnect at any time. Use Disconnect in Settings, or revoke the application directly from your Etsy account. Revoking on Etsy's side takes effect immediately and does not depend on us.
  • Delete your data. Deleting a shop account inside the application permanently removes that shop's settings, library and stored sign-in from your computer, and — if you used the relay connection option — the tokens held for that shop on the relay server. Uninstalling the application and deleting its application data folder removes everything stored locally.
  • Work without an account connection. The application can generate mockups and listing text without connecting to Etsy at all.

Retention

Because your data is stored on your own computer, you control how long it is kept. The one exception is a shop connected through the relay option above: we hold that shop's Etsy tokens until you disconnect it, and will delete them on request. Otherwise we do not hold copies and cannot delete anything on your behalf, except support correspondence you have sent to us directly.

Your rights

Depending on where you live, you may have rights to access, correct, delete or obtain a copy of personal information a business holds about you, and to object to certain uses of it. This includes residents of Texas under the Texas Data Privacy and Security Act, residents of California under the California Consumer Privacy Act, and residents of the European Economic Area and United Kingdom under the GDPR.

In practice we hold very little: the application stores your data locally, so most such requests are satisfied directly on your own computer. For anything we do hold — support correspondence — write to sevilturan@outlook.com and we will respond within the period the applicable law requires. We will not discriminate against you for exercising any of these rights.

Children

listingtool is a tool for operating a business and is not directed at children. We do not knowingly collect personal information from anyone under 16.

Changes to this policy

If we change how the application handles data — for example by introducing accounts or new server-side processing beyond the relay option described above — we will update this policy and change the effective date above before that change takes effect. Continued use after that date means you accept the updated policy.

Contact

Questions about this policy, or about your data, go to sevilturan@outlook.com.