Last updated September 14, 2026
Privacy Notice
This notice covers tcgtapi.com account registration, sign-in, shipper profiles, marketplace and developer use, address verification, postage, wallets, and payment disputes. It is written for US visitors.
Information we collect
- Account email, password hash, and email one-time codes for verification and two-factor sign-in.
- Whether the account is used as a developer app or as a marketplace/platform that resells or embeds the APIs.
- Shipper identity you enter: name, company, phone, and return address. On a platform account this may include identity you collect from sellers.
- Addresses submitted for verification, standardized results, and operator overrides.
- Postage requests, option ids, ZIP pairs, mail date, buy responses, and indicia files keyed to the account.
- Wallet balances, ledger rows, funding attempts, failed payments, chargebacks, and collection notes.
- API key identifiers, service scopes, and internally assigned request limits. We do not store the full key after creation.
- Technical logs: IP address, user agent, timestamps, and abuse or fraud signals.
How we use it
- Create and operate your account, keys, wallet, and shipper profile.
- Approve, restrict, or suspend access; apply per-key AVS or First Class limits; prevent fraud and unpaid postage.
- Issue postage, keep an audit trail, and store the day’s rate catalog and each buy response.
- Verify addresses you or your sellers submit.
- Recover failed payments and respond to chargebacks or disputes where the law allows.
- Meet postal, tax, and legal duties.
Platform and seller data
If you are a marketplace or other platform, you are responsible for telling your sellers what you send to TCGTapi. We process seller and recipient data as needed to provide the APIs to you. We do not become their account provider unless they register with us directly. You must have a lawful basis to send us their information.
Sharing
We may share information with USPS, the address-verification provider, payment processors, banks, card networks, collection agents, or law enforcement when required to provide the APIs, collect funds, contest a chargeback, or respond to a lawful request. We do not sell personal information or share it for cross-context advertising.
Retention
Account, shipper, postage, payment, and dispute records are kept as long as needed to operate the service, reconcile funds, and meet postal, tax, or network recordkeeping. You may request access or deletion where the law allows. Postage, fraud, chargeback, and similar records may be retained longer. Recourse and deletion rights do not erase a legal hold or a duty to keep postal or payment evidence.