Privacy Policy
Last updated: 14. April 2026
1. Data Controller
Sterne Hero operates this application. For data-protection enquiries contact [email protected].
2. Data We Collect
- Account data: email, name, role, agency association.
- Usage data: requests, quotes, locations, AI replies, transactions.
- Technical data: IP address, user agent, session cookies.
3. Why We Process It
Service provision, billing, fraud prevention, legal compliance. Legal basis: contract (Art. 6(1)(b) GDPR) and legitimate interest (Art. 6(1)(f)).
4. Sub-processors
Stripe (payments), Postmark/Resend (email), AWS (hosting and storage), Google (Places, Business Profile API), Apify/OutScraper/SerpAPI (review scraping), Anthropic/OpenAI via Ruby LLM (AI replies).
5. Your Rights
You have the right to access, rectify, erase, restrict, port, and object to processing of your personal data. Export your data anytime from account settings.
6. Retention
Account data is retained for the life of the account. IP addresses in logs are anonymised after 90 days. Admin activity logs are purged after 1 year.