Privacy Policy
Last Updated: September 24, 2026
The Gist
We collect some information about you to provide our services, but we try to keep it minimal. We don't sell your data. We use industry-standard security. You can request access to or deletion of your data anytime.
Questions? Email us at admin@mellowstate.com.
1. Who We Are
This Privacy Policy applies to services provided by:
- MellowState LLC: brand identity and community
- MellowTools LLC: software, platform, and NotBot
Throughout this policy, "we," "our," and "us" refer to both entities. By using our services, you agree to the collection and use of information as described here.
2. Information We Collect
2.1 Personal Information
We collect personal information that you voluntarily provide when you:
- Register for an account
- Subscribe to NotBot
- Communicate with us
- Process transactions
This information may include:
- Name and contact information (email address)
- Account credentials (username, password)
- Payment information for subscriptions
- Profile information and preferences
2.2 NotBot Usage Data
When you use NotBot (operated by MellowTools LLC), we collect:
- Live show auction data accessed by the desktop application
- Organization labels generated by the application
- Print job history and statistics
- Application usage patterns
2.3 Automatically Collected Information
When you access our platform, we automatically collect:
- Device information (IP address, browser type, operating system)
- Usage data (pages visited, features used, time spent)
- Log data (access times, errors, system activity)
- Cookies and similar tracking technologies
3. How We Use Your Information
3.1 Service Delivery
- Operate and maintain the NotBot desktop application
- Process and manage subscriptions
- Facilitate automatic label printing
- Provide customer support
3.2 Account Management
- Create and maintain your account
- Authenticate users and prevent fraud
- Send account-related notifications
- Process password resets and security updates
3.3 Communications
- Send transactional emails (subscription confirmations, receipts)
- Provide customer service responses
- Send administrative information and updates
- Market our services (with your consent, where required)
4. Information Sharing and Disclosure
We do not sell your personal information.
We may share your information in the following circumstances:
4.1 Service Providers
We may share information with third-party service providers who perform services on our behalf:
- Cloud hosting and storage (Amazon Web Services)
- Payment processing
- Email delivery services
- Analytics providers
- Authentication services (OAuth providers)
4.2 Legal Requirements
We may disclose information when required by law or to:
- Comply with legal processes or government requests
- Enforce our Terms of Use
- Protect our rights, property, or safety
- Prevent fraud or security threats
5. Data Security
We implement appropriate technical and organizational security measures to protect your information, including:
- Encryption of data in transit and at rest
- OAuth 2.0 and JWT-based authentication
- Regular security audits and updates
- Access controls and authentication requirements
- Secure file storage with Amazon Web Services
However, no method of transmission over the Internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
6. Your Rights
You have the following rights regarding your data:
- Access: Request a copy of the data we have about you
- Correction: Request we fix inaccurate information
- Deletion: Request we delete your data
- Portability: Request your data in a portable format
- Opt-out: Unsubscribe from marketing emails anytime
To exercise any of these rights, email us at admin@mellowstate.com. We'll respond within 30 days.
7. Cookies and Tracking
We use cookies and similar technologies to:
- Maintain user sessions
- Remember preferences
- Analyze usage patterns
- Improve platform functionality
You can control cookies through your browser settings. Disabling cookies may affect platform functionality.
8. Third-Party Services
NotBot integrates with third-party services:
- Payment processors for subscription billing
- OAuth providers for authentication (Google, Apple)
- Amazon Web Services for file storage
- Whatnot for auction data access
These third parties have their own privacy policies governing their use of your information.
9. MellowState Pay and the Mellowtools Browser Extension
MellowState Pay works out what a seller's team is paid from each live show. The Mellowtools extension for Chrome is how a finished Whatnot show gets into Pay.
9.1 What the extension reads
- It runs only on Whatnot's seller dashboard, and does anything only on the Shipments page.
- When you click "Send to Mellowtools", it reads the text of the Shipments panel for the show you are viewing: the show title, date and time, sales, completed earnings, shipping spend, items sold, and the other text that panel shows.
- It reads the Whatnot seller name the dashboard is signed in as, so it can suggest the right team. That name is saved to your team only when you send a show.
- It does not read other websites, other Whatnot pages, your browsing history, or anything on the page before you click.
9.2 Where it goes
- The panel text is sent over HTTPS to your MellowState account, to the Pay team shown as "Sending to" before you send.
- The team's owner and admins can see every show sent to the team. A helper can see only their own shows and pay.
- If a panel cannot be read (for example after Whatnot changes its page), we keep a copy of that panel's text in our service logs so we can fix the reader. If the extension cannot find the panel at all, it sends us a short note saying so, without any panel text.
9.3 What it never does
- It never clicks, types, bids, messages, or changes anything on Whatnot.
- It never sends a show's panel text without your click.
- It runs no code downloaded from the internet.
9.4 What stays in your browser
The extension keeps your MellowState sign-in and your default team in the browser's extension storage. Signing out of the extension removes them. It asks Chrome only for storage, sign-in, a timer to renew your sign-in, and access to mellowstate.com.
9.5 Pay data
The shows, work, payroll and consigner payouts in Pay belong to the team and are stored with the team. When a team is deleted, its Pay data is removed after 30 days, and the team's owner is emailed a copy first. We never sell Pay data or use it for advertising.
10. Data Retention
We retain your personal information for as long as necessary to:
- Provide our services
- Comply with legal obligations
- Resolve disputes
- Enforce our agreements
When your account is closed or information is no longer needed, we will securely delete or anonymize it, unless retention is required by law.
11. Where Your Data Is Stored
Your data is stored and processed in the United States using Amazon Web Services. If you're accessing our services from outside the US, your information will be transferred to and processed in the US.
12. Children's Privacy
Our services are not intended for individuals under the age of 18. We do not knowingly collect information from children. If we discover that a child has provided personal information, we will promptly delete it.
13. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes by:
- Posting the updated policy on our platform
- Updating the "Last Updated" date
- Sending email notifications (for material changes)
Your continued use of the platform after changes constitutes acceptance of the updated policy.
14. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy, please contact us:
By using MellowState LLC or MellowTools LLC services, you acknowledge that you have read and understood this Privacy Policy.