Privacy Policy
Last Updated: December 10, 2025
ReviewGetter is a product operated by AppEcho Labs, LLC ("Company," "we," "us," or "our"). We operate the ReviewGetter platform, including our website, mobile applications, and related services (collectively, the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
Please read this Privacy Policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with this Privacy Policy, please do not use the Service.
1. Information We Collect
1.1 Personal Information
When you register for an account or use the Service, we may collect the following personal information:
- Email Address: Used for account registration, authentication, and service communications
- Business Name: The name of your business as it appears in your Google Business Profile
- Google Business Profile Link: Your unique Google review link (Place ID)
- Custom SMS Templates: Message templates you create for review requests
- Sender Name: Optional employee/worker name for tracking purposes
1.2 SMS and Communication Data
When you use our SMS service, we collect and store:
- Recipient Phone Numbers: Phone numbers in E.164 format (+1XXXXXXXXXX) to which you send messages
- Message Content: The full text of SMS messages sent through the Service
- Delivery Status: Whether messages were successfully delivered or failed
- Timestamps: Date and time of each message sent
- Sender Name: Optional identifier of the employee who sent each message
1.3 Click Tracking Data
We track engagement with review links sent through our Service:
- Click Counts: Number of times each review link was clicked
- First Click Timestamp: When the link was first clicked
Note: We do NOT collect IP addresses, device information, or other identifying information about link clickers (your customers).
1.4 Payment Information
Payment processing is handled by our third-party payment processor, Stripe, Inc. We store:
- Stripe Customer ID (a unique identifier, not your actual payment details)
- Stripe Subscription ID
- Subscription Status (active, trialing, past_due, canceled)
We do NOT store credit card numbers, CVV codes, or complete payment card details. All sensitive payment information is handled directly by Stripe in accordance with PCI-DSS standards.
1.5 Technical Data
We may automatically collect certain technical information:
- Device type (iOS, Android, web browser)
- App version
- Browser type and version
- Operating system
- Language preferences
1.6 Google Analytics
Our website uses Google Analytics to collect aggregated, anonymous data about how visitors use our site, including:
- Page views and navigation patterns
- Geographic region (country/city level)
- Device and browser information
- Referral sources
2. How We Use Your Information
We use the information we collect for the following purposes:
- Provide the Service: To send SMS messages, track engagement, and display analytics
- Process Payments: To manage subscriptions and billing
- Account Management: To create, maintain, and secure your account
- Communications: To send service-related emails, updates, and notifications
- Support: To respond to your inquiries and provide customer support
- Improvement: To analyze usage patterns and improve the Service
- Legal Compliance: To comply with legal obligations and protect our rights
3. Third-Party Service Providers
We share your information with the following third-party service providers who assist us in operating the Service:
| Service Provider | Purpose | Data Shared |
|---|---|---|
| Supabase | Authentication & Database | Email, user data, SMS logs |
| Stripe | Payment Processing | Email, payment information, subscription data |
| Twilio | SMS Delivery (Primary) | Phone numbers, message content |
| Telnyx | SMS Delivery (Backup) | Phone numbers, message content |
| Google Places API | Business Lookup | Business search queries, location (optional) |
| Google Analytics | Website Analytics | Anonymized usage data, page views |
| Google OAuth | Authentication (optional) | Email address, basic profile |
Each of these providers has their own privacy policy governing their use of your data. We encourage you to review their policies.
SMS Consent and Phone Numbers: No mobile information will be shared with third parties/affiliates for marketing/promotional purposes. All the above categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties.
4. Data Retention
We retain your information for as long as necessary to provide the Service and fulfill the purposes described in this Privacy Policy:
- Account Data: Retained until you delete your account
- SMS Logs: Retained until you delete your account (cascade deletion)
- Payment Records: Retained as required by law (typically 7 years for tax purposes)
- Analytics Data: Retained per Google Analytics retention settings
When you delete your account, we will delete or anonymize your personal information within 30 days, except where we are required by law to retain certain data.
5. Data Security
We implement appropriate technical and organizational measures to protect your personal information:
- Encryption in Transit: All data is transmitted over HTTPS/TLS encrypted connections
- Secure Authentication: We use JWT tokens and secure session management
- Password Protection: Passwords are hashed using industry-standard algorithms
- Access Controls: Data access is restricted on a need-to-know basis
- Environment Protection: API keys and sensitive credentials are stored securely
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
6. Your Privacy Rights
Depending on your location, you may have certain rights regarding your personal information:
6.1 Access and Portability
You have the right to request a copy of the personal information we hold about you. You can access most of your data directly through your account dashboard.
6.2 Correction
You have the right to request correction of inaccurate personal information. You can update most account information directly through the Service.
6.3 Deletion
You have the right to request deletion of your personal information. You can delete your account through your dashboard settings, which will remove your personal data and SMS logs.
6.4 California Residents (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to say no to the sale of personal information
- Right to equal service and price (non-discrimination)
We do NOT sell your personal information to third parties.
6.5 Data Deletion
You have the right to request the deletion of your personal data. To request deletion of your account and associated data, please contact us at support@reviewgetter.app. We will process your request within 30 days.
6.6 Exercising Your Rights
To exercise any of these rights, please contact us at support@reviewgetter.app. We will respond to your request within 30 days.
7. Children's Privacy
The Service is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information promptly.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us at support@reviewgetter.app.
8. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. Our service providers, including Supabase, Stripe, Twilio, and Telnyx, may process data in the United States and other jurisdictions.
When we transfer data internationally, we ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy and applicable law.
9. Do Not Track Signals
Some web browsers transmit "Do Not Track" signals. We currently do not respond to "Do Not Track" signals because there is no industry standard for how to handle such signals. However, you can opt out of Google Analytics tracking by using the Google Analytics Opt-out Browser Add-on.
10. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to:
- Essential Cookies: Required for authentication and security
- Analytics Cookies: Used by Google Analytics to understand site usage
- Preference Cookies: Remember your settings and preferences
You can control cookies through your browser settings. Note that disabling certain cookies may affect the functionality of the Service.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you by:
- Sending an email to the address associated with your account
- Posting a prominent notice on the Service
- Updating the "Last Updated" date at the top of this page
Your continued use of the Service after the effective date of any changes constitutes your acceptance of the modified Privacy Policy.
12. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
For privacy-related inquiries, please include "Privacy" in your email subject line to help us route your request appropriately.