Privacy Policy.
Effective Date: May 4, 2026
Platform Operator: PermaShip, Inc., a Delaware corporation
Support: hello@permaship.ai · Legal & Privacy: legal@permaship.ai
This Privacy Policy explains how PermaShip, Inc. and CEO Arcade collect, use, disclose, retain, and protect personal information when you access or use CEO Arcade, including the CEO Arcade website, catalogue, Mission Control, credit ledger, cabinet operating tools, AI advisors, App Factory, PermaShip-powered execution services, domain and DNS services, customer-support tools, payments and cashout features, and related products, services, software, dashboards, documentation, and tools.
This Privacy Policy is incorporated into the CEO Arcade Terms of Service, Operator Agreement, Credit & Economy Policy, Refund Policy, Domain Policy, and any other policy, agreement, checkout disclosure, quote, or cabinet-specific rule that applies to your use of CEO Arcade.
For purposes of this Privacy Policy:
- “CEO Arcade,” “we,” “us,” or “our” means CEO Arcade and its operating entity, PermaShip, Inc.
- “Platform” means CEO Arcade and related PermaShip-powered systems used to provide CEO Arcade.
- “Operator” means a person or entity that reserves, manages, or operates a cabinet through CEO Arcade.
- “Cabinet” means a platform-managed SaaS business, brand package, microsite, app, operating dashboard, or related business property made available through CEO Arcade.
- “Mission Control” means the CEO Arcade operator dashboard.
- “End Customer” means a customer, lead, visitor, subscriber, purchaser, support contact, or user of a cabinet operated through CEO Arcade.
- “Personal Information” means information that identifies, relates to, describes, can reasonably be associated with, or could reasonably be linked to an individual or household, depending on applicable law.
This Privacy Policy does not create any ownership, payout, credit, or operational rights. Those rights are governed by the CEO Arcade Terms of Service, Operator Agreement, Credit & Economy Policy, Refund Policy, and any applicable cashout, domain, marketplace, or buyout terms.
1. Scope of This Privacy Policy
This Privacy Policy applies to Personal Information we collect when you:
- visit CEO Arcade websites or landing pages;
- browse the CEO Arcade catalogue;
- use the guided matcher or Chief of Staff selection experience;
- create an account;
- reserve, manage, or operate a cabinet;
- enter or use Mission Control;
- purchase credits or approve credit-spend actions;
- use or request App Factory, PermaShip, QA Agent, AI advisor, or agentic services;
- approve domains, DNS, hosting, infrastructure, payments, email, or other platform-managed services;
- receive cabinet revenue, earned credits, reserves, or cashout-related services;
- interact with a cabinet as an End Customer;
- communicate with us by email, chat, form, support request, or other channel;
- participate in surveys, promotions, tests, demos, competitions, beta programs, or feedback loops; or
- otherwise interact with the Platform.
This Privacy Policy also applies to information collected through internal CEO Arcade systems that support the Platform, including telemetry, logs, QA reports, deployment records, app-health data, security events, credit ledgers, revenue ledgers, support records, and operational-cost records.
2. Controller and Processor Roles
Depending on the context, PermaShip, Inc. may act as a controller, business, processor, service provider, or similar role under applicable privacy laws.
2.1 Where We Typically Act as Controller
We generally decide the purposes and means of processing for information related to:
- CEO Arcade account registration;
- catalogue browsing;
- Mission Control access;
- Operator onboarding;
- billing, subscriptions, credits, refunds, and platform accounting;
- fraud prevention, risk scoring, KYC, tax, cashout, and compliance;
- product analytics, security, service improvement, and support;
- App Factory, PermaShip, QA Agent, and agentic workflow operations;
- platform-owned domains, DNS, infrastructure, app registry, and resource provisioning;
- communications with Operators; and
- legal, business, and platform operations.
2.2 Where We May Act as Processor or Service Provider
For some End Customer information collected through a cabinet, we may process information on behalf of the Operator or cabinet. This may include information submitted by End Customers through forms, checkout flows, onboarding flows, booking flows, support messages, or customer portals.
Because CEO Arcade is platform-managed and cabinets may be owned or controlled by CEO Arcade until a buyout or approved transfer, we may also process End Customer information for our own legitimate platform purposes, such as security, payment processing, fraud prevention, operational-cost accounting, service delivery, support, compliance, refunds, disputes, QA, and platform improvement.
Operators are responsible for understanding and honoring any privacy promises, notices, customer commitments, or legal obligations that apply to their cabinet, unless CEO Arcade expressly agrees in writing to handle them.
3. Personal Information We Collect
We may collect the categories of Personal Information described below.
3.1 Account and Contact Information
We may collect:
- name;
- email address;
- username;
- login credentials or password hash;
- phone number, if provided;
- company name;
- role or title;
- profile information;
- account settings;
- communication preferences; and
- support contact details.
3.2 Operator Profile and Matching Information
To recommend cabinets and tailor Mission Control, we may collect information such as:
- interests;
- skills;
- professional background;
- business experience;
- sales comfort level;
- industry preferences;
- audience size or audience description;
- influencer, creator, agency, parent, student, local-operator, or business-owner profile information;
- stated goals;
- preferred customer types;
- time availability;
- risk tolerance;
- LinkedIn URL, resume, biography, or similar information if you choose to provide it; and
- answers submitted through guided matching, onboarding, surveys, or Chief of Staff conversations.
You should not submit sensitive personal information, confidential third-party information, or information you are not authorized to share.
3.3 Cabinet, Brand, and Business Information
We may collect and store information about cabinets, including:
- cabinet selection and reservation history;
- Brand Packs;
- business names;
- logos, taglines, images, colors, copy, and positioning;
- business cases and competitive analysis;
- customer segments and ideal-customer profiles;
- business model information;
- pricing and plan settings;
- domain suggestions and domain decisions;
- feature requests and approved work;
- Mission Control missions;
- advisor recommendations;
- app configuration and feature flags;
- business performance metrics;
- revenue and operational-cost information;
- marketplace, buyout, or transfer status; and
- cabinet history, decision logs, and work logs.
3.4 Credit, Billing, Revenue, and Cashout Information
We may collect and process information related to:
- subscriptions;
- one-time purchases;
- credit purchases;
- credit classes and balances;
- credit reservations, deductions, refunds, locks, holds, and settlements;
- Operational Costs;
- usage-based charges;
- revenue events;
- payment processing fees;
- platform fees;
- refunds;
- disputes and chargebacks;
- hard costs;
- earned credits;
- pending earned credits;
- locked credits;
- cashout eligibility;
- KYC and tax status;
- payout information;
- invoices and receipts; and
- payment method metadata.
Payment card details are generally handled by payment processors, such as Stripe, and are not stored directly by CEO Arcade except where a provider returns limited tokenized or metadata information.
3.5 Identity, KYC, Tax, and Compliance Information
When required for cashout, payout, high-risk activity, fraud prevention, regulatory compliance, payment processing, marketplace activity, or continued use of certain features, we or our service providers may collect:
- legal name;
- date of birth;
- address;
- country or region;
- tax identification information;
- business registration information;
- beneficial ownership information;
- identity-document information;
- payment-account information;
- sanctions, fraud, compliance, or risk-screening information; and
- verification status.
Some of this information may be collected directly by third-party providers, such as payment, KYC, tax, or compliance providers.
3.6 Domain, DNS, Hosting, and Provisioning Information
If you approve domain, DNS, hosting, database, app build, infrastructure, or deployment actions, we may collect and process:
- requested domains;
- domain availability checks;
- domain registration information;
- domain ownership and renewal status;
- DNS records;
- Cloudflare, registrar, hosting, or deployment metadata;
- app URLs;
- app subdomains;
- database connection metadata;
- deployment identifiers;
- environment-variable and secret references;
- health-check results;
- infrastructure usage;
- logs;
- error reports;
- deployment reports;
- QA Agent reports;
- screenshots, recordings, or browser logs generated during QA or support; and
- provider-resource identifiers.
We do not intend for agents or public app code to receive raw secrets unless needed inside controlled execution or deployment environments.
3.7 End Customer Information
End Customers may provide information through cabinets, including:
- name;
- email address;
- phone number;
- account or login information;
- billing or subscription status;
- purchase history;
- booking, request, order, project, profile, or form information;
- support messages;
- preferences;
- feedback;
- usage data;
- transaction information;
- refund or dispute information; and
- other information submitted through the cabinet.
The exact categories depend on the cabinet type, enabled modules, approved features, business model, and customer interactions.
3.8 Communications and Support Information
We may collect:
- support emails;
- chat messages;
- form submissions;
- feedback;
- bug reports;
- call notes;
- survey responses;
- Discord, Slack, or community interactions where applicable;
- internal support notes;
- escalation history; and
- communications with Operators, End Customers, vendors, and service providers.
3.9 AI, Agent, App Factory, QA, and PermaShip Information
CEO Arcade uses AI-assisted and agentic systems to provide guidance, generate business assets, build applications, analyze code, execute tickets, run QA, test workflows, fix bugs, and operate cabinets.
We may collect and process:
- prompts;
- conversations with the Chief of Staff or advisors;
- mission requests;
- feature requests;
- bug reports;
- QA reports;
- code diffs;
- PermaShip tickets and job records;
- agent proposals;
- work outputs;
- model usage metadata;
- screenshots, logs, and test artifacts;
- app specifications;
- generated copy, brand assets, plans, and recommendations;
- verification results;
- deployment results; and
- summaries or transcripts of AI-assisted interactions.
Do not submit secrets, highly sensitive personal information, confidential third-party information, regulated health data, legal privileged information, financial account credentials, government identifiers, or other restricted data unless CEO Arcade expressly instructs that such data is supported and necessary.
3.10 Technical, Device, Log, and Usage Information
We may automatically collect:
- IP address;
- device identifiers;
- browser type;
- operating system;
- pages viewed;
- referring URLs;
- actions taken;
- clickstream data;
- timestamps;
- session data;
- cookie identifiers;
- analytics events;
- error logs;
- security logs;
- app-health logs;
- usage metrics;
- API usage;
- rate-limit events;
- fraud, abuse, or risk signals; and
- approximate location inferred from IP address.
3.11 Cookies and Similar Technologies
We may use cookies, pixels, local storage, session storage, analytics tags, and similar technologies to:
- authenticate users;
- maintain sessions;
- remember preferences;
- measure traffic and conversions;
- understand catalogue interest;
- track checkout and reservation funnels;
- improve recommendations;
- detect fraud and abuse;
- debug the Platform;
- measure product performance; and
- support advertising, attribution, or retargeting where used.
You can control cookies through your browser settings and any cookie controls we provide. Blocking cookies may affect login, Mission Control, checkout, analytics, and other Platform features.
4. Sources of Personal Information
We may collect Personal Information from:
- you directly;
- Operators;
- End Customers;
- cabinet visitors;
- payment processors;
- KYC, tax, fraud, compliance, and risk providers;
- domain registrars and DNS providers;
- hosting, deployment, database, and infrastructure providers;
- analytics and observability providers;
- email, support, and communication providers;
- PermaShip, App Factory, QA Agent, and AI execution systems;
- public sources, such as websites, LinkedIn pages, public profiles, or public business information you provide or direct us to use;
- third-party integrations you connect or approve;
- internal logs and telemetry; and
- service providers acting on our behalf.
5. How We Use Personal Information
We use Personal Information to:
- provide, operate, and improve CEO Arcade;
- create and manage accounts;
- authenticate users;
- recommend cabinets;
- personalize Mission Control;
- reserve, prepare, build, deploy, maintain, and operate cabinets;
- provide AI advisor, Chief of Staff, App Factory, QA Agent, and PermaShip-powered services;
- process credit purchases, subscriptions, Operational Costs, hard costs, and other payments;
- maintain the credit ledger, revenue ledger, reserves, holds, and cashout workflows;
- provide domain search, domain purchase, DNS, hosting, email, app, and infrastructure services;
- run QA, testing, bug detection, app-health checks, and verification workflows;
- detect, prevent, and respond to fraud, abuse, spam, chargebacks, security incidents, and platform misuse;
- provide customer support;
- communicate with Operators and End Customers;
- process refunds, disputes, chargebacks, reserves, and support escalations;
- comply with legal, tax, payment, sanctions, anti-fraud, and regulatory requirements;
- enforce our Terms of Service, Operator Agreement, Credit & Economy Policy, Refund Policy, and other policies;
- analyze catalogue interest, conversion, usage, revenue, costs, and product performance;
- improve models, prompts, agents, workflows, and platform systems where permitted and appropriate;
- operate promotions, beta tests, competitions, surveys, or research;
- support marketplace, transfer, buyout, reclaim, or portfolio features if available;
- maintain audit logs and business records;
- protect the rights, safety, property, and security of CEO Arcade, PermaShip, Operators, End Customers, service providers, and others; and
- carry out other purposes disclosed at the time information is collected.
6. AI and Automated Processing
CEO Arcade uses AI and automated systems to support business selection, Mission Control recommendations, cabinet building, code execution, QA, infrastructure monitoring, support, billing analysis, fraud detection, cost forecasting, and other platform operations.
AI and automated systems may:
- recommend cabinets based on your profile or answers;
- generate business names, taglines, copy, logos, or brand suggestions;
- propose missions;
- estimate credit costs;
- generate App Factory plans;
- create PermaShip tickets;
- analyze code, logs, errors, app state, and usage;
- run QA scenarios and summarize issues;
- recommend operational-cost or infrastructure changes;
- flag unusual usage or fraud risk;
- summarize customer feedback;
- generate support drafts;
- create product, growth, or revenue recommendations; and
- help internal teams operate and improve the Platform.
You should review AI-generated recommendations before acting on them. AI outputs may be incomplete, incorrect, or inappropriate for your specific business. CEO Arcade does not guarantee the accuracy, legality, profitability, completeness, or suitability of AI-generated recommendations or outputs.
Where required by law or platform policy, certain automated decisions may be reviewed by humans, especially where they involve account suspension, cashout eligibility, high-risk fraud signals, or significant platform restrictions.
7. How We Share Personal Information
We may share Personal Information as described below.
7.1 Service Providers and Vendors
We may share information with service providers that help us operate CEO Arcade, including providers of:
- payment processing;
- Stripe Connect, cashout, refunds, and disputes;
- KYC, tax, fraud, sanctions, and compliance;
- domain registration;
- DNS and CDN services;
- hosting, deployment, database, and infrastructure;
- secrets management;
- email and messaging;
- customer support;
- observability, logging, error tracking, analytics, and monitoring;
- AI model and agent infrastructure;
- App Factory, QA Agent, and PermaShip execution;
- security and abuse prevention;
- data storage and backups;
- accounting, legal, and business operations; and
- other services used to provide the Platform.
These providers may process Personal Information according to our instructions, their agreements with us, and applicable law.
7.2 Operators and Cabinet Participants
If you are an End Customer, information you submit through a cabinet may be visible to the Operator of that cabinet and to CEO Arcade. This may include your account, purchase, booking, support, form, feedback, or usage information.
If you are an Operator, certain cabinet information may be visible to End Customers, support staff, payment providers, service providers, or future operators in connection with support, marketplace transfers, buyouts, disputes, or platform operations.
7.3 Payment, Revenue, and Cashout Providers
We may share information with payment processors, tax providers, KYC providers, compliance providers, and banks or payout providers to:
- process payments;
- create checkout sessions;
- manage subscriptions;
- process refunds;
- handle disputes and chargebacks;
- operate earned-credit and cashout workflows;
- complete identity and tax checks;
- comply with legal and payment-network requirements; and
- manage fraud and risk.
7.4 Domain, DNS, Hosting, and Infrastructure Providers
When domain, DNS, hosting, app deployment, database, email, monitoring, or infrastructure actions are approved or required, we may share information with providers that register domains, create DNS records, host apps, operate databases, manage logs, deliver email, or provide monitoring and infrastructure.
Some domain-registration information may be required by registrars, registries, ICANN-related processes, or applicable law.
7.5 AI and Execution Providers
We may share prompts, specifications, code, logs, screenshots, QA reports, tickets, summaries, and related content with AI model providers, coding-agent systems, QA systems, App Factory systems, PermaShip systems, and other execution tools used to provide the Platform.
We attempt to limit what is shared to what is reasonably needed for the relevant task. You are responsible for not submitting information that you are not authorized to share.
7.6 Legal, Safety, Compliance, and Enforcement
We may disclose information when we believe disclosure is reasonably necessary to:
- comply with law, subpoena, court order, government request, regulator request, or legal process;
- enforce our agreements and policies;
- protect rights, property, safety, or security;
- prevent fraud, abuse, spam, chargebacks, unlawful activity, or security incidents;
- investigate misuse of the Platform;
- resolve disputes;
- respond to payment-network, bank, registrar, hosting, or provider requirements;
- comply with tax, sanctions, anti-money-laundering, or identity-verification requirements; or
- protect CEO Arcade, PermaShip, Operators, End Customers, service providers, and others.
7.7 Business Transfers
We may share or transfer information in connection with an actual or proposed merger, acquisition, financing, investment, corporate transaction, reorganization, bankruptcy, sale of assets, transfer of platform assets, or similar business transaction involving CEO Arcade, PermaShip, cabinets, marketplace assets, or related business operations.
7.8 With Your Direction or Consent
We may share information when you direct us to do so, approve a workflow, connect an integration, approve a domain or infrastructure action, approve a cashout or KYC workflow, invite a team member, connect a provider, or otherwise consent.
8. Cookies, Analytics, Advertising, and Tracking
We may use analytics, attribution, advertising, and product-measurement tools to understand how people discover, browse, reserve, and operate cabinets. These tools may collect information such as pages visited, conversion events, checkout events, device information, browser information, IP address, identifiers, and actions taken.
We may use this information to:
- measure catalogue interest;
- improve business recommendations;
- understand conversion funnels;
- debug product issues;
- prevent fraud;
- improve pricing and credit mechanics;
- analyze feature usage;
- improve Mission Control; and
- market CEO Arcade.
Some analytics or advertising activities may be considered “sharing,” “targeted advertising,” or similar concepts under certain privacy laws. Where required, we will provide applicable notices and opt-out mechanisms.
You may also use browser-level controls, cookie settings, or opt-out tools where available. Blocking cookies may limit functionality.
9. Data Retention
We retain Personal Information for as long as reasonably necessary for the purposes described in this Privacy Policy, including to:
- provide the Platform;
- maintain accounts and cabinets;
- operate Mission Control;
- maintain credit, revenue, refund, dispute, reserve, and cashout records;
- maintain audit logs;
- support App Factory, PermaShip, QA Agent, and CI/CD operations;
- comply with tax, accounting, legal, payment, domain, registrar, security, and regulatory obligations;
- prevent fraud, abuse, chargebacks, and disputes;
- resolve support issues;
- enforce agreements;
- handle marketplace, buyout, transfer, suspension, reclaim, or cancellation workflows; and
- maintain backups and business records.
Retention periods vary depending on the type of information, the cabinet status, legal requirements, payment and tax requirements, domain and DNS requirements, security requirements, and operational needs.
If your account or cabinet is closed, cancelled, suspended, reclaimed, sold, transferred, or bought out, we may retain certain information as needed for legal, accounting, security, operational, fraud-prevention, chargeback, dispute, marketplace, or platform-continuity purposes.
Backups and logs may persist for a limited period after deletion from active systems.
10. Security
We use administrative, technical, and organizational measures designed to protect Personal Information. These may include access controls, authentication, encryption, secret management, audit logs, vendor controls, security monitoring, rate limits, provider isolation, CI/CD checks, and controlled execution environments.
No system is perfectly secure. We cannot guarantee that information will never be accessed, disclosed, altered, lost, or destroyed by a breach of our safeguards. You are responsible for using strong account credentials, safeguarding your login information, and promptly notifying us if you suspect unauthorized access to your account, cabinet, Mission Control, payment, or cashout features.
11. International Data Transfers
CEO Arcade is operated by PermaShip, Inc., a Delaware corporation. We and our service providers may process information in the United States and other countries. These countries may have data-protection laws that differ from the laws of your jurisdiction.
Where required, we use appropriate safeguards for international transfers, such as contractual commitments, provider data-processing agreements, standard contractual clauses, or other legally recognized mechanisms.
12. Your Choices and Privacy Rights
Depending on where you live and applicable law, you may have rights to:
- access Personal Information we hold about you;
- correct inaccurate Personal Information;
- delete Personal Information;
- restrict or object to certain processing;
- receive a portable copy of certain information;
- opt out of certain sharing, targeted advertising, or sale-like uses;
- limit certain uses of sensitive Personal Information;
- withdraw consent where processing is based on consent;
- appeal a privacy-rights decision; and
- lodge a complaint with a privacy regulator.
To submit a request, contact legal@permaship.ai. We may need to verify your identity or authority before responding. If you are making a request on behalf of someone else, we may require proof of authorization.
Some requests may be denied or limited where information is needed for security, fraud prevention, legal compliance, payment processing, tax records, dispute handling, chargebacks, cashout records, operational records, account administration, cabinet operation, or other legally permitted purposes.
If you are an End Customer of a cabinet and you contact us about information controlled by an Operator, we may direct the request to the relevant Operator or handle it as required by law and platform policy.
13. Notice to California Residents
This section provides additional information for California residents under the California Consumer Privacy Act, as amended, and related California privacy laws, to the extent they apply.
13.1 Categories of Personal Information Collected
In the past 12 months, we may have collected the following categories of Personal Information:
| Category | Examples |
|---|---|
| Identifiers | Name, email, IP address, account identifiers, customer identifiers, device identifiers |
| Customer records information | Billing contact details, support records, payment metadata, business contact information |
| Commercial information | Purchases, subscriptions, credits, refunds, revenue events, Operational Costs, cabinet activity |
| Internet or network activity | Page views, clicks, usage data, logs, analytics events, app-health data |
| Geolocation information | Approximate location inferred from IP address |
| Professional or employment-related information | Role, company, LinkedIn URL, resume, professional background, if provided |
| Inferences | Cabinet recommendations, operator profile, risk indicators, preference signals |
| Sensitive personal information | KYC, tax, identity-verification, payment, fraud, or compliance information when required |
| Audio/visual/electronic information | Screenshots, QA recordings, support attachments, user-submitted media, where applicable |
| Other information you provide | Messages, support requests, cabinet configuration, feedback, prompts, AI interactions |
13.2 Sources
We collect information from the sources described in Section 4 of this Privacy Policy.
13.3 Purposes
We use information for the purposes described in Section 5 of this Privacy Policy.
13.4 Disclosures
We may disclose the categories above to service providers, contractors, payment processors, infrastructure providers, domain and DNS providers, AI and execution providers, analytics providers, support providers, professional advisors, legal authorities, and other parties described in Section 7.
13.5 Sale or Sharing
We do not sell Personal Information for money. We may use analytics, advertising, attribution, or tracking technologies that could be considered “sharing” or “targeted advertising” under certain laws. Where required, we will provide a method to opt out of such activities.
13.6 Sensitive Personal Information
We use sensitive Personal Information only as reasonably necessary for permitted business purposes, such as identity verification, fraud prevention, payment processing, security, compliance, tax, cashout, and platform safety, unless otherwise disclosed or permitted by law.
13.7 California Rights
California residents may have rights to know, access, correct, delete, opt out of sale or sharing, limit use of sensitive Personal Information, and not be discriminated against for exercising privacy rights. To exercise rights, contact legal@permaship.ai.
14. Notice to EEA, UK, and Swiss Users
If European data-protection laws apply, we process Personal Information under one or more legal bases, including:
- Contract — to provide CEO Arcade, Mission Control, cabinets, payments, credits, support, and related services;
- Legitimate interests — to operate, secure, improve, and market the Platform; prevent fraud; manage Operational Costs; run analytics; support App Factory and PermaShip workflows; and protect users and the Platform;
- Consent — where required for certain cookies, marketing, optional profile information, or other activities;
- Legal obligation — to comply with tax, accounting, KYC, fraud, sanctions, payment, regulator, and legal requirements; and
- Vital or public interests — where applicable in rare cases involving safety, security, or legal duties.
You may have rights to access, rectify, erase, restrict, object, port data, withdraw consent, and complain to a supervisory authority. To exercise rights, contact legal@permaship.ai.
15. Children
CEO Arcade is not intended for children under 13, and we do not knowingly collect Personal Information from children under 13. If you believe a child under 13 has provided Personal Information to us, contact legal@permaship.ai and we will take appropriate action.
If CEO Arcade is used by a parent, guardian, teacher, or adult to help a minor learn about business, the adult is responsible for supervising the minor's use, ensuring account ownership and payment activity remain under the adult's control, and complying with applicable laws.
16. Marketing Communications
We may send service-related communications, legal notices, security alerts, billing notices, operational-cost notices, Mission Control updates, and support messages. These are transactional or administrative and may be necessary to provide the Platform.
We may also send marketing communications. You may opt out of marketing emails by using the unsubscribe link or contacting hello@permaship.ai. Even if you opt out of marketing, we may still send transactional, legal, security, billing, support, and service-related messages.
17. Third-Party Services and Links
CEO Arcade may link to or integrate with third-party services, including payment processors, domain registrars, DNS providers, hosting providers, database providers, email providers, analytics providers, support tools, AI providers, KYC providers, tax providers, and other services.
Your use of third-party services may be governed by their own terms and privacy policies. We are not responsible for the privacy practices of third parties except where required by law or by our agreements with them.
18. Operator Responsibilities for End Customer Privacy
Operators must use cabinets and End Customer information lawfully. Operators are responsible for:
- providing truthful customer-facing descriptions;
- avoiding deceptive privacy or data-use claims;
- using customer data only for legitimate cabinet purposes;
- responding to customer privacy or support requests where required;
- avoiding spam and unlawful marketing;
- honoring refund and service commitments;
- notifying CEO Arcade of privacy, security, or legal issues;
- avoiding collection of unsupported sensitive information;
- complying with applicable privacy, consumer-protection, email, and payment laws; and
- following CEO Arcade policies and Mission Control guidance.
Operators may not use CEO Arcade to collect or process regulated health data, children's data, financial account credentials, legal privileged information, government identifiers, biometric data, or other high-risk data unless CEO Arcade expressly authorizes the relevant use case in writing and appropriate safeguards are in place.
19. Data in Marketplace, Transfer, Reclaim, and Buyout Scenarios
If a cabinet is sold, transferred, reclaimed, suspended, bought out, or moved to a secondary-market or direct-operation state, we may process and disclose information needed to evaluate, document, execute, and support that transition.
This may include:
- cabinet history;
- domain records;
- app and infrastructure status;
- revenue summaries;
- credit-spend history;
- Operational Costs;
- customer counts;
- refund and dispute history;
- support burden;
- app-health metrics;
- feature history;
- QA and PermaShip work history;
- marketplace listing data; and
- data export or transfer records.
We may withhold, aggregate, redact, or anonymize information where needed to protect privacy, security, fraud controls, legal obligations, platform IP, or other users.
20. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will provide notice by posting the updated policy, changing the effective date, notifying you through Mission Control, sending an email, or using another reasonable method.
Your continued use of the Platform after the updated Privacy Policy becomes effective means you accept the updated policy, to the extent permitted by law.
21. Contact Us
For support questions, contact:
For legal, privacy, data rights, or compliance questions, contact:
CEO Arcade is operated by PermaShip, Inc., a Delaware corporation.