Privacy Policy

Last updated: April 2026

1. Information We Collect

We collect information you provide directly: business name, owner name, email address, phone number, Google Maps link, Google Business Profile data, social media URLs, and payment information (processed by Stripe — we never store full card numbers). We also collect usage analytics to improve the Service.

2. How We Use Your Data

We use your data to: (a) provide the Reputix service; (b) send transactional emails (reports, alerts, billing); (c) improve our AI models using aggregated, anonymized data; (d) detect and prevent fraud or abuse of the Service.

3. Third-Party Services

Reputix relies on: Google APIs (Maps, Business Profile), OpenAI (AI responses), Supabase (EU-based database and auth), Stripe (payments), Resend (transactional email), and SerpAPI (search data). Each third-party processor has its own privacy policy governing their handling of your data.

4. Data Storage and Security

All data is stored in Supabase servers located in the European Union. We use SSL/TLS encryption in transit, encryption at rest, row-level security, strict access controls, and audit logging to protect your information.

5. Data Retention

Active accounts: data is retained for as long as your account is active. Cancelled accounts: data is retained for 90 days after cancellation, then permanently deleted. Free reports: retained for 12 months before deletion.

6. Your Rights

You have the right to access, correct, export, or delete your personal data. To exercise any of these rights, email privacy@reputix.io. You may also opt out of marketing communications at any time via the unsubscribe link in our emails.

7. Cookies

We use only essential cookies required for authentication and anonymous analytics. We do not use advertising cookies, third-party trackers, or cross-site tracking technologies.

8. Children

Reputix is not intended for users under the age of 18. We do not knowingly collect data from minors.

9. International Data Transfers

All data processing occurs on servers located within the European Union. We apply appropriate safeguards for any transfers outside the EU.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated via email at least 30 days before taking effect.

11. Contact

For any privacy-related questions, contact privacy@reputix.io.