Legal — Privacy Policy
Privacy Policy
Last updated: April 27, 2026
This Privacy Policy describes how DealSense (“we”, “us”) collects, uses, and shares information when you use our service. We aim to collect only what we need to operate the product and to be transparent about how it’s handled.
What We Collect
Account info. Email address and authentication identifiers when you sign up. Passwords are stored only as salted hashes by our auth provider (Supabase).
Vehicle queries. The VIN, listing URL, asking price, mileage, and ZIP code you submit for analysis, plus the resulting report. We retain this so you can revisit prior reports.
Payment info. Stripe handles all card data. We never see or store your full card number; we receive only Stripe identifiers, the last four digits, and transaction status.
Usage data. Standard server logs (IP address, user agent, timestamps) and product analytics about how features are used. We do not sell this data.
How We Use It
- To generate and deliver your reports.
- To bill you for credits and prevent fraud.
- To improve the product (debugging, scoring accuracy, UX).
- To send transactional emails (receipts, account notices). Marketing email is opt-in.
Third-Party Data Provider
To produce a report we send the VIN you submit (and, where applicable, the ZIP and mileage) to ClearVin, our vehicle data and history provider. ClearVin processes the VIN under its own privacy terms in order to return market and history data. We do not share your name, email, or payment data with ClearVin.
Service Providers We Use
- Supabase — auth, database, storage.
- Stripe — payments and billing.
- Vercel — application hosting and edge delivery.
Cookies
We use a small number of first-party cookies for authentication and session state. We do not use third-party advertising cookies.
Your Choices
You can request a copy or deletion of your account data at any time by emailing privacy@dealsense.app. We will respond within 30 days. Note that we may need to retain certain records (e.g., transaction logs) to meet our legal and accounting obligations.
Security
We use HTTPS everywhere, encrypt data at rest in our database, and follow the principle of least privilege for internal access. No system is perfectly secure — if you discover a vulnerability, please report it to security@dealsense.app.
Children
DealSense is not directed to children under 13, and we do not knowingly collect personal information from children.
Changes
We may update this Policy. Material changes will be announced in the app or by email. Continued use after a change indicates acceptance.
Contact
Questions? Reach us at privacy@dealsense.app.