Effective Date: August 21, 2025
1. Introduction
EstateGPT ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our home inspection management platform and services.
By using EstateGPT, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Information You Provide
- Account Information: Name, email address, phone number, business name, and professional credentials
- Property Information: Property addresses, inspection details, and property characteristics
- Client Information: Contact details of your clients including names, emails, and phone numbers
- SMS Data: Phone numbers, SMS consent records, message content, opt-in/opt-out preferences, and messaging logs
- Payment Information: Processed securely through Stripe; we do not store credit card details
- Inspection Reports: Content, photos, and data you create within inspection reports
2.2 Information from Third-Party Services
- Google Calendar: When you connect your Google Calendar, we access calendar events, availability, and basic profile information
- Google Account: Basic profile information (name, email) when you authenticate with Google
- Stripe: Payment and billing information for transaction processing
- Twilio: SMS delivery status, carrier information, and messaging analytics
2.3 Automatically Collected Information
- Device information (browser type, operating system)
- IP address and approximate location
- Usage data (pages visited, features used, time spent)
- Cookies and similar tracking technologies
3. How We Use Your Information
We use your information to:
- Provide and maintain our inspection management services
- Process inspections and generate reports
- Manage scheduling and calendar synchronization
- Process payments and billing
- Send service-related notifications and updates
- Provide customer support
- Improve our services and develop new features
- Comply with legal obligations
- Protect against fraud and unauthorized access
4. Google User Data Usage
Google OAuth Compliance Statement
EstateGPT's use and transfer of information received from Google APIs adheres to theGoogle API Services User Data Policy, including the Limited Use requirements.
4.1 Google Calendar Data Collection
When you connect your Google Calendar to EstateGPT, we collect and access:
- Calendar Events: Event titles, descriptions, dates, times, and attendee information
- Calendar Metadata: Calendar names, time zones, and sharing settings
- Basic Profile Information: Your Google account email and name
- Availability Data: Free/busy information from your calendars
4.2 How We Use Google Data
We use Google Calendar data exclusively for the following purposes:
- Scheduling: Create, update, and manage inspection appointments on your calendar
- Availability Management: Display your availability to clients for booking inspections
- Reminders: Send notifications about upcoming inspections
- Conflict Prevention: Check for scheduling conflicts before booking
- Synchronization: Keep EstateGPT appointments synchronized with your Google Calendar
4.3 Google Data Sharing and Disclosure
We handle your Google data with strict limitations:
- No Sale of Data: We NEVER sell your Google user data to third parties
- No Advertising: We do not use Google data for advertising purposes
- Limited Sharing: Google data is only shared with:
- You, the account owner
- Clients you explicitly share appointment details with
- Service providers necessary for calendar functionality (e.g., notification services)
- Legal Compliance: We may disclose data only when required by law or valid legal process
4.4 Google Data Security and Retention
- Encryption: All Google data is encrypted in transit using TLS and at rest using AES-256
- Access Controls: Limited to authorized personnel on a need-to-know basis
- Retention Period: Calendar data is retained only while your Google account is connected
- Deletion: When you disconnect Google Calendar, we delete all cached Google data within 7 days
- Audit Logs: We maintain logs of access to Google data for security purposes
4.5 Your Rights Regarding Google Data
You have complete control over your Google data:
- Disconnect Anytime: Revoke EstateGPT's access through your Google Account settings
- Data Deletion: Request immediate deletion of your Google data by contacting us
- Data Export: Request a copy of how we've used your Google Calendar data
- Limit Permissions: You can limit which calendars EstateGPT can access
For questions about our use of Google data, contact our Data Protection Officer at privacy@estategpt.io
5. SMS Data Processing and Privacy
5.1 SMS Data Collection
When our customers (inspection companies) use SMS features, we process:
- Phone Numbers: End-user phone numbers provided for SMS communications
- Consent Records: Documentation of opt-in consent including timestamp, method, and exact language used
- Message Content: Text of messages sent including appointment reminders and notifications
- Messaging Metadata: Send times, delivery status, and carrier information
- Opt-Out Records: STOP requests and unsubscribe preferences
5.2 SMS Data Usage
SMS data is used exclusively for:
- Sending inspection-related notifications as authorized by end users
- Processing opt-out requests automatically
- Maintaining compliance records for TCPA requirements
- Preventing duplicate messages and managing delivery
- Providing delivery analytics to inspection companies
5.3 SMS Data Security
- Encryption: Phone numbers and message content encrypted at rest and in transit
- Access Control: Limited to authorized personnel and the specific inspection company account
- Secure Transmission: Messages sent via Twilio's secure API infrastructure
- Audit Logging: All SMS operations logged for security and compliance
5.4 SMS Data Retention
- Consent Records: Retained for 4 years per TCPA requirements
- Message Logs: Kept for 4 years for compliance purposes
- Opt-Out Lists: Maintained indefinitely to prevent re-subscription
- Phone Numbers: Deleted upon account termination except as required for compliance
5.5 End-User SMS Rights
If you receive SMS messages from an inspection company using EstateGPT:
- Opt-Out: Reply STOP to any message to unsubscribe immediately
- Help: Reply HELP for assistance and support information
- Data Access: Request your SMS data by contacting privacy@estategpt.io
- Complaints: Report SMS issues to sms-compliance@estategpt.io
- Deletion: Request removal of your phone number from our systems
5.6 SMS Data Sharing Restrictions
We NEVER:
- Sell phone numbers or SMS data to third parties
- Use SMS data for our own marketing purposes
- Share phone numbers between different inspection companies
- Use SMS data for any purpose other than providing the service
For detailed SMS compliance information, visit our SMS Compliance Guide
6. Information Sharing and Disclosure
We share your information only in the following circumstances:
6.1 With Your Clients
Inspection reports and related communications are shared with clients you designate.
6.2 Service Providers
- Amazon Web Services (AWS): Cloud hosting and storage
- Supabase: Database and authentication services
- Stripe: Payment processing
- Google: Calendar integration and authentication
6.3 Legal Requirements
We may disclose information if required by law, court order, or government regulation.
6.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction.
7. Data Security
We implement appropriate technical and organizational measures to protect your information:
- Encryption of data in transit and at rest
- Regular security audits and updates
- Access controls and authentication requirements
- Secure cloud infrastructure (AWS)
- PCI-compliant payment processing through Stripe
8. Data Retention
We retain your information for as long as necessary to:
- Provide our services to you
- Comply with legal obligations (typically 7 years for business records)
- Resolve disputes and enforce agreements
You may request deletion of your account and associated data at any time, subject to legal retention requirements.
9. Your Rights and Choices
You have the right to:
- Access: Request a copy of your personal information
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your information (subject to legal requirements)
- Portability: Receive your data in a portable format
- Withdraw Consent: Disconnect Google Calendar or other integrations at any time
- Opt-out: Unsubscribe from marketing communications
To exercise these rights, contact us at privacy@estategpt.io
10. Cookies and Tracking
We use cookies and similar technologies to:
- Maintain your session and authentication state
- Remember your preferences
- Analyze usage patterns to improve our service
- Provide security features
You can control cookies through your browser settings, but disabling cookies may limit functionality.
11. Children's Privacy
EstateGPT is not intended for users under 18 years of age. We do not knowingly collect information from children.
12. International Data Transfers
Your information may be transferred to and processed in the United States where our servers are located. By using EstateGPT, you consent to such transfers.
13. California Privacy Rights
California residents have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to opt-out of the sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising privacy rights
14. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the effective date.
15. Contact Information
For questions about this Privacy Policy or our privacy practices, contact us at:
EstateGPT
Email: privacy@estategpt.io
Support: support@estategpt.io
Website: https://estategpt.io
Last updated: August 21, 2025