1. Introduction
Repazoo, Inc. ("Repazoo," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Twitter reputation analysis service (the "Service").
By accessing or using our Service, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not access or use the Service.
Data Controller: Repazoo, Inc. acts as the data controller for personal information collected through our Service.
3. How We Use Your Information
We use the information we collect for the following purposes:
3.1 Primary Service Delivery
- Analyzing your Twitter history for reputation risks
- Generating comprehensive analysis reports
- Providing personalized recommendations
- Facilitating report downloads and sharing
3.2 Account Management
- Creating and maintaining your account
- Processing payments and managing subscriptions
- Communicating about your account and service usage
- Providing customer support
3.3 Service Improvement
- Analyzing usage patterns to improve our AI algorithms
- Developing new features and services
- Conducting research on reputation analysis trends (using anonymized data only)
3.4 Legal Compliance and Safety
- Complying with legal obligations and law enforcement requests
- Protecting against fraud, abuse, and security threats
- Enforcing our Terms of Service
3.5 Marketing (With Your Consent)
- Sending promotional emails about new features or offers
- Displaying relevant advertisements (you can opt out anytime)
4. Data Retention and Deletion
4.1 Twitter Data
Your Twitter data is subject to strict retention limits:
- During Analysis: Stored temporarily in encrypted form (typically 24-48 hours)
- After Analysis: Raw tweet data is automatically deleted within 30 days
- Report Data: Analysis results and reports are retained for your access unless you request deletion
- Immediate Deletion: You can request immediate deletion of all your data at any time through your account dashboard
4.2 Account Information
- Retained for as long as your account is active
- Deleted within 90 days of account closure (unless legal retention is required)
- Anonymized analytics data may be retained indefinitely
4.3 Legal Requirements
We may retain certain information longer if required by law, to resolve disputes, enforce agreements, or protect our legal rights.
5. Third-Party Services and Data Sharing
We do not sell your personal information. We share information only in the following circumstances:
5.1 Service Providers
We work with trusted third-party providers who assist in operating our Service:
- Cloud Hosting: Amazon Web Services (AWS) for secure data storage and processing
- Payment Processing: Stripe for secure payment processing (they never share full payment details with us)
- Email Services: SendGrid for transactional and marketing emails
- Analytics: Google Analytics (anonymized) for understanding service usage
- Customer Support: Intercom for live chat and support ticket management
All service providers are contractually obligated to protect your data and use it only for providing services to us.
5.2 Twitter
We use Twitter's API to access your tweet data. Twitter's use of your information is governed by their Privacy Policy.
5.3 Legal Requirements
We may disclose your information if required by law, court order, or government request, or to protect the rights, property, or safety of Repazoo, our users, or others.
5.4 Business Transfers
If Repazoo is involved in a merger, acquisition, or asset sale, your information may be transferred. We will notify you before your information becomes subject to a different privacy policy.
5.5 With Your Consent
We may share information for any other purpose with your explicit consent.
6. Cookies and Tracking Technologies
6.1 What We Use
We use cookies and similar tracking technologies to:
- Essential Cookies: Required for authentication, security, and basic functionality
- Analytics Cookies: Help us understand how users interact with our Service
- Preference Cookies: Remember your settings and preferences
- Marketing Cookies: Track conversions and measure advertising effectiveness
6.2 Your Choices
You can control cookies through your browser settings. Note that disabling certain cookies may limit Service functionality. Most browsers accept cookies by default, but you can modify settings to decline cookies or alert you when cookies are being sent.
6.3 Do Not Track
We currently do not respond to "Do Not Track" signals, as there is no industry standard for compliance.
7. Your Privacy Rights
7.1 GDPR Rights (EU/EEA Users)
If you are located in the European Union or European Economic Area, you have the following rights:
- Right to Access: Request a copy of personal data we hold about you
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data ("right to be forgotten")
- Right to Restriction: Limit how we use your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent at any time (doesn't affect prior processing)
- Right to Lodge a Complaint: File a complaint with your local data protection authority
7.2 CCPA Rights (California Users)
If you are a California resident, you have the right to:
- Know what personal information we collect, use, disclose, and sell
- Request deletion of your personal information
- Opt out of the sale of personal information (we do not sell your information)
- Non-discrimination for exercising your rights
7.3 How to Exercise Your Rights
To exercise any of these rights, contact us at:
We will respond to requests within 30 days (or as required by applicable law). We may request additional information to verify your identity before processing requests.
8. Data Security Measures
We implement industry-standard security measures to protect your information:
8.1 Technical Safeguards
- Encryption: 256-bit AES encryption for data at rest, TLS 1.3 for data in transit
- Access Controls: Role-based access with multi-factor authentication
- Secure Infrastructure: SOC 2 Type II certified hosting on AWS
- Regular Audits: Quarterly security audits and penetration testing
- Intrusion Detection: 24/7 monitoring for security threats
8.2 Organizational Safeguards
- Background checks for employees with data access
- Regular security training for all staff
- Strict data access policies and audit logs
- Incident response plan for data breaches
8.3 Data Breach Notification
In the event of a data breach that compromises your personal information, we will notify you within 72 hours (or as required by applicable law) via email and/or prominent notice on our Service.
Important: While we implement robust security measures, no system is 100% secure. We cannot guarantee absolute security of your information.
9. International Data Transfers
Repazoo is based in the United States. If you access our Service from outside the US, your information will be transferred to, stored, and processed in the United States.
9.1 EU-US Transfers
For transfers from the EU/EEA to the US, we rely on:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Adequacy decisions where applicable
- Your explicit consent
9.2 Other International Transfers
We ensure appropriate safeguards are in place for all international data transfers, including contractual obligations, encryption, and compliance with applicable laws.
10. Children's Privacy
Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18.
If we become aware that we have collected personal information from a child under 18 without parental consent, we will take steps to delete that information immediately.
If you believe we have collected information from a child under 18, please contact us at privacy@repazoo.com.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.
11.1 Notification of Changes
We will notify you of material changes by:
- Posting the updated policy on this page with a new "Last Updated" date
- Sending an email notification to your registered email address
- Displaying a prominent notice on our Service
11.2 Your Acceptance
Your continued use of the Service after changes become effective constitutes acceptance of the revised Privacy Policy. If you do not agree with changes, you should discontinue use of the Service and request deletion of your account.