casel
Mulai bikin

Casel

Kebijakan privasi

Effective 18 August 2026 · English controlling version

Casel is a product of Offstage Labs, an unregistered sole proprietorship based in India.

What Casel collects, why, who processes it with us, how long it is kept, and how to have it deleted.

Who this covers

This policy applies to the Casel website at getcasel.com, the application at app.getcasel.com, and the websites Casel generates for you.

Casel is a product of Offstage Labs, an unregistered sole proprietorship based in India. Offstage Labs decides how the information described here is used, is the controller of it, and is the party to contact about it: offstagelabs@gmail.com. We are one small operation rather than a large company, and no request needs a form.

What we collect

Account details: the email address you sign up with, or the Google account you sign in with, and a password hash if you set one. We never see a Google password.

What you ask for: the prompts you write, the answers you give in the design interview, files you attach, the language you chose to write in, and the language you chose to publish in.

What we build: the generated site, its files, its previews, and its version history.

Payment status: whether a project has been paid for, and the provider's transaction reference. Card numbers, bank details and billing addresses go to Paddle and never reach our servers.

Product events: which screens were reached, whether a build succeeded, whether the paywall converted, plus the technical basics any web server sees — IP address, browser, approximate region, timestamps.

Why we use it

To run the product: to generate what you asked for, save it, show it back to you, and let you return to it.

To take payment and honour it: to know which project a payment unlocked, and to answer questions about a charge.

To keep it working and safe: to find faults, to stop abuse and fraud, and to enforce the acceptable-use rules in our terms.

To understand whether the product works: aggregate counts of what people reached and where they stopped.

To meet legal and accounting obligations.

We do not sell personal information and we do not advertise to you. We do not train any model of our own on your prompts or your generated sites: they go to our model provider only to produce what you asked for, and are processed there under that provider's API terms.

Who processes it with us

Supabase — authentication, database and storage, where accounts, prompts and generated files live.

Google — the Gemini models that do the generation, and Google Cloud Run, which serves the application. Prompts and interview answers are sent to the model to produce your site.

Paddle — payments, tax and invoicing, as merchant of record. Paddle receives your billing and payment details directly.

RevenueCat — purchase and entitlement analytics. Where it is connected it receives an internal user identifier rather than your email address.

Mixpanel and Microsoft Clarity — product analytics and session replay on our own surfaces, used to see where the product fails people.

Hostinger — hosting for this marketing site.

Each of these processes data only to provide its part of the service, under its own security and contractual obligations. Some of them operate outside your country, so operating Casel involves international transfers; where the law requires a transfer mechanism, we rely on the provider's standard contractual clauses.

Cookies and similar technology

Strictly necessary cookies keep you signed in, protect the session, remember your language, and carry a checkout through. The product does not work without them.

Analytics and session-replay scripts are used on our own pages, as named above. You can block non-essential cookies in your browser without losing access to anything you have paid for.

The websites Casel generates for you carry no Casel analytics of their own. They carry a small “Made with Casel” badge, which is a link and not a tracker, and paid plans remove it.

How long we keep it

Account and project data: while the account exists. Delete a project and it goes; ask us to delete the account and the projects go with it.

Payment records: as long as tax and accounting law requires, which is longer than the account may last, and is the one category deletion cannot clear.

Analytics events: in aggregate, for as long as they are useful; session recordings for a short retention window set in the provider.

Your rights

Depending on where you live, you may ask for a copy of your information, correction of it, export, deletion, restriction of processing, or an objection to it — and you may withdraw consent where consent is what we relied on.

Ask at offstagelabs@gmail.com from the account address. We do not charge for a request and we do not make you explain why.

If you believe we have handled a request badly, you may complain to your local data-protection authority. We would rather you told us first.

Security, and the honest limit of it

Passwords are hashed by our authentication provider, traffic is encrypted in transit, and access to production data is limited to the people who operate it.

No online service can promise absolute security. Do not paste passwords, keys, card numbers or anyone else's confidential information into a prompt — it becomes part of a project record, and it never needed to be there.

Children

Casel is not for children under 13, or under the minimum digital-consent age where they live if it is higher. We do not knowingly collect their information, and we delete it if we find it.

Changes and contact

We will post material changes on this page and move the effective date above. Continuing to use Casel after a change means the updated policy applies.

Write to offstagelabs@gmail.com. Include the email address on the account and, for anything to do with a payment, the Paddle receipt or transaction reference — it is the only identifier that ties a charge to a build. We answer within five working days.