Who we are
Impact Six, LLC operates the KDrop product brand (website at getkdrop.com and the KDrop Chrome extension). Contact: hello@getkdrop.com.
What we collect
- Account: email and name when you sign up or are invited (Firebase Authentication).
- Drop preferences: which rumored-drop products you Queue, Pokemon Center auto-open prefs, Free weekly open usage, alert sound and Walmart direct-join toggles.
- Billing: Stripe customer and subscription status if you upgrade (payment details stay with Stripe).
- Participation telemetry: whether your Chrome extension armed alarms, opened tabs at fire time, or reported sold out for a scheduled drop (aggregated for ops Live counts).
- Walmart in-line status (optional): when you use the extension on Walmart, we may store a throttled summary of queue ticket status (item ids, join/buy state) so /app/live can show the same chips. We do not upload cookies, tokens, or page HTML.
- Uninstall survey: optional anonymous reason/detail when you remove the extension.
- Debug reports (opt-in): if you submit Report a problem, structured local drop-log events (no cookies/tokens/HTML) are uploaded so we can fix timing bugs.
- Beta waitlist: name and email if you join from the marketing page.
- Analytics: basic site usage via Google Analytics on getkdrop.com (not inside the extension bundle).
Chrome extension on retailer pages
The extension’s single purpose is to alert you to rumored drops and open the product tabs you chose at the rumored time. On Walmart pages it may:
- Detect press-and-hold human-check UI and notify you (never completes it).
- Observe queue banners / ticket APIs the page already uses, for Live status.
- Optionally (off by default; Settings + ops flag) race the same issueTicket URL Walmart embeds on /qp, using your browser session only - never CAPTCHA, Hold, or Buy.
- Reload a product tab a limited number of times after fire if not yet in line.
Extension logic is bundled locally. We do not load remote executable code into the extension. Firebase is used for auth and sync only.
What we do not collect
- Browsing history outside the features above
- Retailer passwords, payment card numbers, or CAPTCHA solutions
- Sale of personal data to third parties for advertising
How we use data
To run KDrop (sign-in, drops, entitlements, billing), improve reliability, respond to support and uninstall feedback, and operate the product legally and securely.
Processors
Firebase / Google (Auth, Firestore), Stripe (payments), Vercel (hosting), OpenAI (admin-only AI tools on the website, not required for Chrome tab opens), and Google Analytics on the marketing site.
Retention and your choices
Account and preference data last while your account exists. You can sign out, change Settings toggles, or request deletion by emailing us. Uninstalling the extension stops local storage on that browser; cloud prefs remain until the account is removed.
Children
KDrop is not directed at children under 13. We do not knowingly collect their personal information.
Changes
We may update this policy. The “Last updated” date above will change when we do. Continued use after a change means you accept the updated policy.