GLOW MED SPA · 4.9★ · 247 REVIEWSAI REPLY GENERATED IN 0.8sQUICK FIX AUTO · 4.8★ · 189 REVIEWSRESPONSE RATE: 98%BRIGHT SMILE DENTAL · 4.7★ · 312 REVIEWSNEW REVIEW IMPORTEDSUMMIT AUTO REPAIR · 5.0★ · 88 REVIEWS+1.1★ AVG RATING INCREASERENATA MED SPA · 4.9★ · 201 REVIEWSSMS REQUEST SENTCOASTAL DENTAL · 5.0★ · 94 REVIEWSAI REPLY APPROVEDGLOW MED SPA · 4.9★ · 247 REVIEWSAI REPLY GENERATED IN 0.8sQUICK FIX AUTO · 4.8★ · 189 REVIEWSRESPONSE RATE: 98%BRIGHT SMILE DENTAL · 4.7★ · 312 REVIEWSNEW REVIEW IMPORTEDSUMMIT AUTO REPAIR · 5.0★ · 88 REVIEWS+1.1★ AVG RATING INCREASERENATA MED SPA · 4.9★ · 201 REVIEWSSMS REQUEST SENTCOASTAL DENTAL · 5.0★ · 94 REVIEWSAI REPLY APPROVED
Legal

Privacy Policy

We believe privacy is a right, not a checkbox. Here's exactly what we collect, why, and how we protect it.

01

Information We Collect

Account Information

When you create an account, we collect your name, email address, and business information. This is provided directly by you during sign-up and onboarding.

Business Data

We collect your Google Business profile information, including business name, address, phone number, and category. We also import your customer reviews from connected platforms.

Usage Data

We collect information about how you interact with TrustMetric — pages visited, features used, actions taken, and time spent. This helps us improve the product.

Payment Information

Payment processing is handled by Stripe. We never store your full card number, CVV, or banking details. We only receive a tokenized payment reference.

Communications

If you contact us via email or support, we retain those communications to help resolve issues and improve our service.

02

How We Use Your Information

Providing the Service

We use your data to operate TrustMetric — generating AI review responses, sending SMS requests, syncing reviews, and providing analytics.

AI Response Generation

Your review content and business information is sent to our AI provider to generate responses. This data is processed in real-time and is not used to train external AI models.

Communications

We use your email to send product updates, billing notifications, and important security alerts. You can opt out of marketing emails at any time.

Product Improvement

Aggregated, anonymized usage data helps us understand what features to build and improve. We never sell individual user data.

03

Data Sharing & Third Parties

Service Providers

We share data with trusted third-party providers who help us operate: Clerk (authentication), Supabase (database), Twilio (SMS), Anthropic (AI), Stripe (payments), and Vercel (hosting). Each is bound by data processing agreements.

Google

When you connect your Google Business profile, we access your business data and reviews via the Google Places API under Google's terms of service.

No Data Sales

We do not sell, rent, or trade your personal data to third parties for marketing purposes. Full stop.

Legal Requirements

We may disclose data if required by law, court order, or to protect the rights, property, or safety of TrustMetric, our users, or the public.

04

Data Retention

Active Accounts

We retain your data for as long as your account is active. Review data, AI responses, and SMS history are stored to provide analytics and historical context.

Account Deletion

When you delete your account, we permanently delete your personal data within 30 days. Anonymized, aggregated data may be retained for product analytics.

Backups

Data may remain in encrypted backups for up to 90 days after deletion as part of our disaster recovery process.

05

Your Rights

Access & Portability

You can request a copy of all personal data we hold about you at any time by contacting privacy@trustmetric.io.

Correction

You can update your account information directly in your dashboard settings. For other corrections, contact us.

Deletion

You can delete your account from dashboard settings. This triggers permanent deletion of your personal data within 30 days.

GDPR & CCPA

If you are located in the EU or California, you have additional rights under GDPR and CCPA respectively. Contact us to exercise these rights.

06

Security

Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256. API keys and secrets are stored using industry-standard secret management.

Access Controls

Access to production systems is restricted to essential personnel, protected by MFA, and audited regularly.

Incident Response

In the event of a data breach, we will notify affected users within 72 hours and take immediate remediation steps.

07

Cookies

Essential Cookies

We use cookies required for authentication and session management. These cannot be disabled without breaking the service.

Analytics

We may use privacy-respecting analytics tools to understand usage patterns. These do not track you across other websites.

No Ad Tracking

We do not use advertising cookies or cross-site tracking technologies.

08

Contact

Privacy Questions

For any privacy-related questions, requests, or concerns, contact us at privacy@trustmetric.io. We respond within 5 business days.

Mailing Address

TrustMetric Inc. · privacy@trustmetric.io