1. Information we collect
We collect the following categories of information:
- Account information: name, display name, email address, password credentials handled by our authentication provider, and role.
- Profile and listing information: organization details, descriptions, locations, service areas, media, team members, and professional credentials you choose to publish.
- Verification documents: incorporation records, licenses, credentials, and similar files, stored in a private bucket accessible only to the submitting organization's authorized managers and assigned reviewers.
- Marketplace activity: service requests, provider matches, proposals, messages, leads, appointments, reviews, and moderation records.
- AI Concierge conversations: the messages you send, the tool results returned, and outcome events used for quality and safety review.
- Usage analytics: page paths, referrers, searches, listing views, contact clicks, and conversion events, tied to an account id when signed in or an anonymous session identifier otherwise.
- Payment records: subscription status, orders, invoices, and amounts received from our payment processor. Full card numbers never reach our systems.
2. How we use information
We use personal information to operate accounts and listings, run search and matching, deliver the AI Concierge, process payments and entitlements, review verification applications, moderate content, prevent abuse and fraud, send transactional and (with consent) marketing messages, measure product performance, and meet legal obligations.
[ATTORNEY: confirm the lawful bases relied upon under GDPR/UK GDPR and the disclosures required for [GOVERNING STATE / JURISDICTION] and for US state privacy laws (CCPA/CPRA, VCDPA, CPA, and equivalents).]
3. How we share information
Published listing content is public by design. When you contact an organization, submit a service request, or are matched with a provider, the details you supply are shared with that organization so it can respond.
We share information with service providers who operate the platform on our behalf: our cloud and database provider, our authentication provider, our payment processor, our email and messaging providers, and our AI model gateway. Each processes data under contract and only for the services provided to us.
We may disclose information when required by law, to enforce our terms, or to protect the rights and safety of users. We do not sell personal information, and we do not share it for cross-context behavioral advertising.
4. AI processing
AI Concierge messages are sent to our model provider to generate a response. Recommendations are grounded in records already stored in our database; the model is not permitted to invent organizations, credentials, or contact details. Conversations are retained for safety review, quality measurement, and dispute resolution. See the AI Concierge Disclosure for details and limits.
5. Retention
We keep account and listing data while the account is active. Verification documents are retained for the badge lifecycle plus the appeal window. Financial records are retained as required by tax and accounting rules. Moderation records and audit logs are retained as an immutable trail. Concierge conversations and analytics events are retained for [RETENTION PERIOD].
When you request deactivation, we disable access and begin the deletion or de-identification of data not subject to a legal retention requirement.
6. Your choices and rights
You can review and edit your profile, manage notification preferences, export or request a copy of your data, and request deactivation from account settings.
Depending on where you live you may have rights to access, correct, delete, port, restrict, or object to processing, and to withdraw consent. Submit requests to [LEGAL CONTACT EMAIL]; we verify identity before acting. [ATTORNEY: add jurisdiction-specific appeal rights and response deadlines.]
7. Security
Access to data is enforced at the database level with row-level security so that members reach only their own records, organization managers reach only their organization's records, and staff reach only what their assigned administrative role permits. Sensitive actions are written to an immutable audit log. Verification documents are stored in a private bucket with time-limited access. Service credentials and AI keys are held server-side and are never exposed to the browser.
No system is perfectly secure. Report a suspected vulnerability to [SECURITY CONTACT EMAIL].
8. Children
The platform is not directed to children under 13, and we do not knowingly collect their personal information. Youth events and programs listed on the platform are operated by third-party organizations that are responsible for their own participant data.
9. International transfers and contact
Our providers may process data in the United States and other countries. [ATTORNEY: confirm transfer mechanism — SCCs, UK addendum, adequacy.] Questions and privacy requests go to [LEGAL CONTACT EMAIL] or [REGISTERED BUSINESS ADDRESS].