Privacy Policy
What we collect
When you sign up:
- Email address
- Account password (hashed; we never see plaintext)
- Optional: persona + willingness-to-pay signal you provide on the waitlist form
- Inbound traffic source (UTM parameters from the URL when you signed up)
When you use the product:
- Your claimed venue (license number you associate with your account)
- Your deal pipeline, watchlists, and notes
- Subscription state (tier, payment status — handled by Stripe)
- Anonymized usage analytics if a provider is configured (PostHog / Plausible / Vercel Analytics)
What we don't collect
- Your venue's real-time machine data (IGB data is monthly)
- Your customers' information (we operate on aggregate venue-level data)
- Behavioral data outside FloorRadar (we don't track you across the web)
- Browser fingerprints or persistent ad-tracking identifiers
How we use what we collect
- To run the product (authenticate you, surface your data, deliver features)
- To send transactional + lifecycle emails (welcome, trial-end warnings, payment failures, receipts)
- To send editorial / "insider" emails per your tier — opt-out per tier
- To improve the product (aggregate analytics; we never identify individual users in product decisions)
Who we share with
Subprocessors:
- Supabase — database hosting
- Vercel — application hosting
- Stripe — payment processing
- Resend — transactional and lifecycle email delivery
- Sentry — error monitoring
- Mapbox — map tile rendering
- Anthropic — AI scorecard generation (Acquirer tier)
We do not sell your data. We do not share it with advertisers. We do not surface customer data on public marketing pages.
Your rights
You can:
- Export your data anytime via CSV export
- Delete your account anytime via the billing portal
- Request deletion of all associated data via support@floorradar.com
- Update your email or password via account settings
If you're in a jurisdiction with formal data-rights frameworks (GDPR, CCPA), email us to exercise those rights — we'll comply within the regulatory window.
Cookies
We use cookies for authentication and session management. Optional analytics cookies are set only if a provider is configured and you haven't opted out.
Data retention
Active accounts: retained while subscription is active. Cancelled accounts: data retained for 90 days post-cancellation in case you reactivate. After 90 days inactive, cached enrichment data may be purged; account claims, deals, and notes are retained per legal requirement (currently 7 years for accounting records).