Privacy Policy
Effective Date: January 1, 2025
1. Introduction and Acceptance
This Privacy Policy ("Policy") describes how Real Estate Financial Planner™ LLC, operating as REFP Apps ("we", "us", "our", or "the Platform") collects, uses, discloses, and protects personal information obtained from users ("you", "your", or "User") of our web applications and related services (collectively, the "Services"). By accessing or using our Services, you acknowledge that you have read, understood, and agree to be bound by the terms of this Privacy Policy. If you do not agree with this Policy, please do not use our Services.
2. Information We Collect
2.1 Information You Provide Directly
We collect information that you voluntarily provide when you:
- Create an Account: Username, email address, password (stored in encrypted/hashed form), first name, and last name.
- Update Your Profile: Any additional information you choose to provide in your user profile.
- Purchase Apps: Payment information is processed securely by our payment processor, Stripe. We do not store your full credit card number on our servers.
- Use Our Apps: Property data, financial figures, and analysis inputs you enter into our real estate analysis tools. This data is stored to provide the Services and is associated with your account.
- Contact Us: Name, email address, and any information contained in communications you send to us.
- Join as a Sponsored User: When you accept a sponsorship, we associate your account with your Sponsor. See Section 14 for details on what information your Sponsor may access.
2.2 Information Collected Automatically
When you access our Services, we automatically collect certain technical information, including:
- Device Information: IP address, browser type and version, operating system, device type, and unique device identifiers.
- Usage Data: Pages visited, apps used, time and date of visits, time spent on pages, login times, and other analytics regarding your use of the Services.
- Cookies and Similar Technologies: We use session cookies and authentication tokens. See Section 6 for more details.
- Log Files: Server logs that may include IP addresses, browser types, referring/exit pages, and timestamps.
2.3 Payment Information
REFP Apps uses Stripe as our payment processor. When you make a purchase, your payment information is sent directly to Stripe and processed according to Stripe's Privacy Policy. We receive only a limited set of information from Stripe, such as the last four digits of your card, card type, and transaction confirmation. We do not store your full payment card details on our servers.
3. How We Use Your Information
We use the collected information for legitimate business purposes, including:
- Service Provision: To create and manage your account, authenticate users, provide access to purchased apps, and fulfill our contractual obligations.
- Communications: To send transactional emails (account verification, password resets, subscription confirmations, system notifications), respond to inquiries, and provide customer support.
- Service Improvement: To analyze usage patterns, troubleshoot technical issues, enhance functionality, and develop new real estate analysis tools.
- Security and Fraud Prevention: To detect, prevent, and address security incidents, fraudulent activity, unauthorized access, and violations of our Terms of Service.
- Legal Compliance: To comply with applicable laws, regulations, legal processes, and enforceable governmental requests.
- Platform Health and Fair Use: To monitor aggregate usage patterns — such as property counts, transaction volumes, and record creation rates — for platform health, capacity planning, and enforcement of our Fair Use Policy. This monitoring is limited to record counts and usage patterns; we do not review the content of individual data records for this purpose.
4. Legal Basis for Processing (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, our legal bases for processing your personal information include:
- Contractual Necessity: Processing is necessary to perform our contract with you (providing the Services and purchased apps).
- Legal Obligation: Processing is required to comply with applicable laws and regulations.
- Legitimate Interests: Processing is necessary for our legitimate business interests, such as security, fraud prevention, and service improvement, provided these interests do not override your fundamental rights.
- Consent: You have provided explicit consent for specific processing activities, which you may withdraw at any time.
5. Information Sharing and Disclosure
We do not sell, rent, or trade your personal information to third parties. We may share your information only in the following limited circumstances:
5.1 Service Providers
We share information with trusted third-party service providers who perform services on our behalf, including Stripe (payment processing) and our email delivery provider. These providers are contractually obligated to use your information only for the purposes we specify and to maintain appropriate security measures.
5.2 Legal Requirements and Protection
We may disclose your information when we believe in good faith that disclosure is necessary to:
- Comply with applicable laws, regulations, legal processes, or enforceable governmental requests.
- Enforce our Terms of Service, including investigation of potential violations.
- Detect, prevent, or address fraud, security, or technical issues.
- Protect the rights, property, or safety of REFP Apps, our users, or the public as required or permitted by law.
5.3 Business Transfers
In the event of a merger, acquisition, reorganization, bankruptcy, or sale of assets, your personal information may be transferred to the successor entity. You will be notified via email and/or prominent notice on the Platform of any such change in ownership or control.
5.4 Sponsors
If you are a Sponsored User (meaning a business has paid for your access to certain apps), certain personal information and property data will be visible to your Sponsor as described in detail in Section 14. This sharing requires your acknowledgment when the sponsorship is activated and can be ended at any time by switching to an individual plan. Your Sponsor is an independent third party, not an agent or representative of REFP Apps.
6. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your experience, maintain sessions, and improve our Services. Cookies are small text files stored on your device.
Types of Cookies We Use:
- Essential Cookies: Necessary for authentication and basic functionality. These cannot be disabled without affecting service operation.
- Functional Cookies: Remember your preferences and settings.
You can control cookies through your browser settings. However, disabling certain cookies may limit your ability to use some features of our Services. Our session cookies expire after 24 hours of inactivity for security purposes.
7. Data Security
We implement and maintain reasonable administrative, technical, and physical security measures designed to protect your personal information against unauthorized access, disclosure, alteration, and destruction. These measures include:
- Encryption of passwords using industry-standard hashing algorithms.
- Use of secure database connections and prepared statements to prevent SQL injection.
- Session-based authentication with automatic expiration.
- CSRF protection on all forms.
- Payment processing handled entirely by Stripe (PCI-DSS compliant).
- Protection of configuration files from direct web access.
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security. You are responsible for maintaining the confidentiality of your account credentials.
8. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law:
- Account Information: Retained while your account is active and for a reasonable period thereafter to comply with legal obligations.
- Analysis Data: Property and investment data you enter into our apps is retained while your account is active. You may request deletion at any time.
- Transaction Records: Retained as required by financial record-keeping regulations.
- Usage Data and Logs: Typically retained for security and analytical purposes and deleted in accordance with our data retention schedule.
Account Removal for Undeliverable Email: A valid, deliverable email address is required to maintain your account, as email is our sole means of communicating important account, security, and billing information. If your registered email address becomes permanently undeliverable (i.e., emails consistently bounce back), we reserve the right to suspend or delete your account and associated data after reasonable attempts to resolve the issue. See Section 3.4 of our Terms of Service for full details.
9. Your Privacy Rights
Depending on your jurisdiction, you may have the following rights regarding your personal information:
- Access: Request access to your personal information and obtain a copy of the data we hold about you.
- Correction: Request correction of inaccurate or incomplete personal information.
- Deletion: Request deletion of your account and associated personal information.
- Data Portability: Request a copy of your personal information in a structured, commonly used, machine-readable format.
- Opt-Out: Unsubscribe from marketing communications at any time.
- Withdraw Consent: Withdraw consent at any time where processing is based on consent (without affecting prior processing).
- End Sponsor Data Sharing: If you are a Sponsored User, you can end your Sponsor's access to your data at any time by switching to an individual plan. See Section 14 for details.
Important Disclosure: We do not sell, rent, or trade your personal information. We do not engage in targeted advertising using your personal data.
To exercise any of these rights, please contact us. We will respond to verified requests within the timeframe required by applicable law (typically 30-45 days).
10. International Data Transfers
Your information may be transferred to, stored, and processed in countries other than your country of residence, which may have different data protection laws. When we transfer personal information internationally, we implement appropriate safeguards to ensure your information remains protected in accordance with this Privacy Policy and applicable laws.
11. Children's Privacy
Our Services are not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal information, we will take steps to delete such information. If you believe a child has provided personal information to us, please contact us immediately.
12. Third-Party Links and Services
Our Services may contain links to third-party websites or services that are not owned or controlled by REFP Apps. This Privacy Policy applies only to our Services. We are not responsible for the privacy practices of third parties. We encourage you to review the privacy policies of any third-party services before providing them with personal information.
13. Changes to This Privacy Policy
We reserve the right to modify this Privacy Policy at any time. When we make material changes, we will notify you by updating the "Effective Date" at the top of this Policy and, where appropriate, provide additional notice (such as via email or a prominent notice on the Platform). Your continued use of the Services after any changes become effective constitutes acceptance of the revised Privacy Policy.
14. Sponsorship Program Data Sharing
14.1 What Is the Sponsorship Program
REFP Apps offers a Sponsorship Program that allows businesses ("Sponsors") to pay for app access on behalf of their clients ("Sponsored Users"). This section describes how your personal information and property data are shared with your Sponsor when you participate in the Sponsorship Program. For the full terms governing the Sponsorship Program, see Section 14 of our Terms of Service.
14.2 Data Shared with Sponsors
When you are a Sponsored User, the following categories of information are shared with your Sponsor to enable them to assist you with real estate services:
- Contact and Profile Information: Your name, email address, phone number, and profile data.
- Property and Analysis Data: Property addresses, financial figures, analysis results, portfolio groupings, and all other property-related data you enter into sponsored apps.
- Usage Information: Which sponsored apps you access, how frequently you use them, and general engagement metrics within those apps.
14.3 Data NOT Shared with Sponsors
Regardless of your sponsorship arrangement, the following information is never shared with Sponsors:
- Payment Information: Your credit card details, billing address, or transaction history are never shared with Sponsors under any circumstances.
- Login Credentials: Your username and password.
- Data in Non-Sponsored Apps: If you purchase other apps individually, data in those apps is not visible to your Sponsor.
- Other Users' Data: Sponsors can only see data belonging to their own Sponsored Users.
- Admin and Platform Data: Internal platform data, system logs, and administrative information.
14.4 Consent and Acknowledgment
When a sponsorship is activated, you will receive a clear disclosure that includes: who your Sponsor is, what they are paying for on your behalf, what data they will be able to see, and how to end the sponsorship if you choose. You must accept this disclosure to proceed with the sponsored access. You are free to decline and instead purchase an individual plan.
For users in the European Economic Area or other jurisdictions requiring a legal basis for data processing: the legal basis for sharing your data with your Sponsor is your consent (which may be withdrawn at any time as described in Section 14.6) and our legitimate interest in facilitating the sponsorship arrangement you have accepted.
14.5 Sponsor Obligations Regarding Your Data
Under our Terms of Service, Sponsors are required to: use your data only for legitimate business purposes related to the real estate services they provide to you, not sell or redistribute your data, comply with applicable privacy laws, and maintain reasonable security measures. However, your Sponsor is an independent third party, and REFP Apps is not responsible for a Sponsor's handling of data once that data has been accessed through the Platform.
14.6 How to Stop Sharing Data with a Sponsor
You can end data sharing with your Sponsor at any time by:
- Switching to an Individual Plan: Purchase an individual plan for the same app(s). Your Sponsor's access to your data will be revoked immediately.
- Leaving the Platform: Terminate your REFP Apps account entirely.
Please note that ending a sponsorship does not affect data your Sponsor may have previously viewed or copied during the period when the sponsorship was active. We cannot control or retrieve data once it has been accessed by your Sponsor.
15. Product Availability and Your Data
Release dates and timelines for upcoming or planned apps displayed on the Platform are estimates only and subject to change. We reserve the right to delay, modify, or cancel the release of any planned app at our sole discretion and for any reason, including but not limited to quality standards, technical feasibility, or business considerations. The listing of a planned app does not constitute a commitment to release it. No personal data is collected in connection with apps that have not yet been released. For full details on product availability, see Section 15 of our Terms of Service.
16. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us or email us at [email protected].