Privacy Policy

Last Updated: December 2025 • We are committed to protecting your privacy and data security.

Summary: This Privacy Policy explains how ReplyzeAI collects, uses, and protects your personal information when you use our real estate AI automation services. We process email content to provide AI-generated responses, but we do not sell your data to third parties.

1. Overview & Scope

ReplyzeAI ("we," "us," or "our") is committed to protecting the privacy of real estate professionals who use our AI-powered email automation and transaction management services. This Privacy Policy applies to information we collect when you use our website, mobile applications, and services (collectively, the "Services").

By using our Services, you consent to the collection, processing, and sharing of your information as described in this Privacy Policy. If you do not agree with our policies and practices, please do not use our Services.

Service-Specific Information: Our Services involve processing email content to generate AI-powered responses. We only access and process emails you explicitly connect to our service (via Gmail OAuth or SMTP/IMAP configuration). We do not access other emails in your account.

2. Information We Collect

2.1 Information You Provide Directly

When you register for an account or use our Services, we collect:

  • Account Information: Name, email address, company name, phone number, billing information
  • Profile Information: Professional details, brokerage information, signature, email templates
  • Transaction Data: Property details, client information, deal terms, document contents
  • Communication Data: Emails you send and receive through connected email accounts
  • Payment Information: Credit card details, billing address (processed by secure third-party processors)

2.2 Information Collected Automatically

When you use our Services, we automatically collect:

  • Usage Data: Pages visited, features used, time spent, actions taken
  • Device Information: IP address, browser type, operating system, device identifiers
  • Log Data: Server logs, error reports, performance metrics
  • Location Data: Approximate location derived from IP address

2.3 Information from Third Parties

We may receive information about you from:

  • Google APIs: When you connect your Gmail account via OAuth
  • Business Partners: CRM integrations, real estate platforms
  • Service Providers: Payment processors, analytics providers

Sensitive Data Notice: Our Services may process sensitive information including client contact details, property information, and transaction terms. We implement additional security measures for such data and only process it as necessary to provide our Services.

3. How We Use Your Information

Purpose Information Used Legal Basis
Provide and maintain Services Account info, email content, transaction data Contractual necessity
Generate AI responses and documents Email content, templates, transaction context Legitimate interest
Process payments and subscriptions Payment information, billing details Contractual necessity
Send service notifications and updates Email address, account preferences Legitimate interest
Improve and optimize Services Usage data, analytics, feedback Legitimate interest
Comply with legal obligations All information as required Legal obligation

AI Processing: When you use our AI email response feature, we process email content through machine learning models to generate contextually relevant responses. This processing happens in real-time and the content is not used to train general models without explicit consent.

4. Information Sharing & Disclosure

4.1 With Your Consent

We share your information when you direct us to do so, such as when integrating with third-party services you authorize.

4.2 Service Providers

We share information with third-party vendors who perform services on our behalf:

  • Hosting & Infrastructure: AWS, Google Cloud Platform
  • Payment Processing: Stripe, PayPal
  • Analytics: Google Analytics, Mixpanel
  • Email Services: SendGrid, Amazon SES
  • AI Processing: OpenAI API, Anthropic Claude

4.3 Legal Requirements

We may disclose your information if required by law, such as to comply with a subpoena or similar legal process.

4.4 Business Transfers

If we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.

We Do Not Sell Your Data: ReplyzeAI does not sell, rent, or trade your personal information to third parties for marketing purposes. We only share information as described in this Privacy Policy.

5. Data Security & Protection

5.1 Security Measures

We implement industry-standard security measures to protect your information:

  • Encryption: Data encrypted in transit (TLS 1.2+) and at rest (AES-256)
  • Access Controls: Role-based access, multi-factor authentication
  • Network Security: Firewalls, intrusion detection, DDoS protection
  • Regular Audits: Security assessments and penetration testing
  • Employee Training: Security awareness and data protection training

5.2 Email Data Protection

For email content processed through our AI systems:

  • Email content is processed ephemerally and not stored longer than necessary
  • AI models are hosted in secure, isolated environments
  • No human reviews of email content except for troubleshooting with consent
  • You can disconnect email integration at any time to stop processing

5.3 Incident Response

We have established procedures to respond to data security incidents. In the event of a breach, we will notify affected users and regulatory authorities as required by law.

6. Data Retention & Deletion

6.1 Retention Periods

We retain your information for as long as necessary to provide our Services:

  • Account Information: Retained while account is active, plus 30 days after deletion
  • Transaction Data: 7 years for tax and compliance purposes
  • Email Content: Processed ephemerally, not stored after response generation
  • Analytics Data: 2 years from collection
  • Backup Data: 30 days before permanent deletion

6.2 Data Deletion

You can request deletion of your information by:

  • Deleting specific data through the Service interface
  • Contacting us at contact@replyzeai.com
  • Permanently deleting your account through account settings

Backup Retention: Deleted information may persist in backup systems for up to 30 days before being permanently removed. Some information may be retained longer if required by law or for legitimate business purposes.

7. Your Privacy Rights

7.1 GDPR Rights (EU Residents)

If you are in the European Economic Area, you have additional rights under the GDPR:

  • Right to be informed about data collection
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Rights related to automated decision-making

7.2 CCPA/CPRA Rights (California Residents)

If you are a California resident, you have rights under the CCPA/CPRA:

  • Right to know what personal information is collected
  • Right to delete personal information
  • Right to opt-out of sale of personal information
  • Right to non-discrimination for exercising rights
  • Right to correct inaccurate personal information

To exercise these rights, please contact us using the information in Section 13. We will respond to your request within 30 days.

8. Cookies & Tracking Technologies

8.1 Types of Cookies We Use

  • Essential Cookies: Required for Service functionality
  • Preference Cookies: Remember your settings and preferences
  • Analytics Cookies: Help us understand how you use our Services
  • Marketing Cookies: Track effectiveness of advertising campaigns

8.2 Cookie Management

You can control cookies through your browser settings. However, disabling essential cookies may affect Service functionality.

Cookie Preferences

Manage your cookie preferences below:

9. Third-Party Services

Our Services may contain links to or integrate with third-party services. This Privacy Policy does not apply to those services. We encourage you to review their privacy policies.

Key Third-Party Services:

  • Google APIs: For Gmail integration (subject to Google's Privacy Policy)
  • Stripe: For payment processing
  • AWS: For cloud infrastructure
  • OpenAI/Anthropic: For AI model processing
  • Supabase: For database services

10. Children's Privacy

Our Services are not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.

11. International Data Transfers

We are based in the United States and process data in the US. If you are located outside the US, your information will be transferred to and processed in the US.

Data Transfer Mechanisms: We use appropriate safeguards for international data transfers, including Standard Contractual Clauses approved by the European Commission and adherence to Privacy Shield principles (where applicable).

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new Privacy Policy on this page and, if appropriate, sending you an email notification.

You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.

Update History: We maintain a history of Privacy Policy changes. Previous versions are available upon request.

13. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact us:

Privacy Contact Form

Additional Contact Information:

  • Privacy Officer: Sarah Johnson
  • Email: contact@replyzeai.com
  • Address: sidi belabbes DZ 22000

EU Representative:

For GDPR inquiries from EU residents, contact our EU representative:

  • Name: Mark
  • Email: replyzeaiofficial.mark@gmail.com