PayTask← Back to tasks

Last updated 25 July 2026

Privacy policy

Harry Ross(sole trader, United Kingdom) is the data controller for PayTask. This page explains exactly what we collect and where it goes. It's written to be read, not to be impenetrable.

What we collect

  • What you submit. The text, URLs and documents you paste into a task. For the CV task that includes your employment history; for outreach tasks it includes whatever you write about your offer.
  • What we generate.The result produced for you, plus a record of whether it's been paid for.
  • Your email address, if you complete a checkout. This is collected by Stripe and shared with us so we can support you and handle refunds.
  • Information fetched from websites you name. For the outreach and audit tasks, we fetch public pages from the URL you give us and extract things like contact email addresses, social links and performance measurements.
  • Standard server logs kept by our host for security and reliability.

We do notuse advertising or tracking cookies, and we don't run third-party analytics that profile you. There are no accounts, so there is no password to lose.

Card details

We never see them. Payment happens on Stripe's own checkout page and card data goes directly to Stripe.

Why we're allowed to hold it

  • Performing our contract with you— we can't deliver a result without processing what you submitted.
  • Legal obligation — payment and tax records must be kept.
  • Legitimate interests— keeping the service secure and working, and fetching public business information you've asked us to look up.

Data about other people

This matters and most services gloss over it. When you paste a prospect's website into PayTask, we fetch publicly available business contact information from it. That can include a named person's work email address, which is personal data under UK GDPR.

We process it to fulfil your request. Once you take that information away and use it — to send an email, for example — youbecome the controller of it, and you're responsible for having a lawful basis for contacting that person and for complying with marketing rules (UK GDPR and PECR). If someone asks us to stop processing information about them, email us and we will.

Who we share it with

Only the processors needed to run the service:

  • Anthropic — the AI model provider. Your task input is sent to their API to generate your result.
  • Supabase — the database storing jobs and results, hosted in the London (eu-west-2) region.
  • Stripe — payment processing.
  • Vercel — hosting.

Some of these are US-headquartered, so data may be transferred outside the UK under appropriate safeguards such as standard contractual clauses. We don't sell your data to anyone, ever.

How long we keep it

Jobs and results are retained so you can return to a result you paid for. If you want yours deleted, email us and we'll remove it — usually within a few days. Records tied to a payment are kept as long as tax law requires (currently six years).

Your rights

You can ask for a copy of your data, ask us to correct or delete it, object to processing, or ask us to restrict it. Email harry@nivoai.netand we'll deal with it within one month.

If you think we've handled your data badly, you can complain to the Information Commissioner's Office at ico.org.uk. We'd rather you told us first so we can fix it.

Contact

harry@nivoai.net. Postal address available on request.

PayTask

Pay only for what's good.

Operated by Harry Ross, a sole trader based in the United Kingdom.
Questions, refunds or complaints: harry@nivoai.net

Legal
  • Terms of service
  • Privacy policy
  • Refund policy
Pricing
  • Buy credits
Payments processed securely by Stripe. We never see or store your card details.