Privacy Policy
Last Updated: January 1, 2026
Introduction
ZoningOS ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
1. Information We Collect
1.1 Information You Provide
- Account Information: Email address, full name, password (encrypted)
- Payment Information: Processed securely by Stripe (we do not store card numbers)
- Property Addresses: Addresses you search for ADU compliance analysis
- Communications: Messages you send to support or feedback
1.2 Automatically Collected Information
- Usage Data: Pages viewed, features used, time spent on Service
- Device Information: IP address, browser type, operating system
- Cookies: Session cookies for authentication (see Section 5)
- API Logs: Timestamps and results of parcel lookups, feasibility checks
1.3 Third-Party Data
- Regrid API: Parcel data including APN, zoning code, lot size, geometry
- Google Maps: Geocoding and map visualization data
- OpenAI: AI-generated analysis of zoning regulations (data processed but not stored by OpenAI)
2. How We Use Your Information
We use collected information to:
- Provide, operate, and maintain the Service
- Process your transactions and manage subscriptions
- Generate ADU compliance reports and feasibility analysis
- Send you Service updates, security alerts, and administrative messages
- Respond to your inquiries and provide customer support
- Monitor usage patterns and improve Service features
- Detect, prevent, and address fraud or security issues
- Comply with legal obligations and enforce our Terms
3. Third-Party Services We Use
ZoningOS integrates with the following third-party services. Each has its own privacy policy:
ποΈ Supabase (Database & Authentication)
Stores user accounts, profiles, and generated reports.
View Supabase Privacy Policy βπ³ Stripe (Payment Processing)
Processes all payments. We do not store credit card information.
View Stripe Privacy Policy βπΊοΈ Regrid (Parcel Data API)
Provides property parcel data including APN, zoning, lot size.
View Regrid Privacy Policy βπΊοΈ Google Maps Platform
Powers map visualization and geocoding features.
View Google Privacy Policy βπ€ OpenAI (AI Analysis)
Processes zoning regulations for AI-generated compliance analysis. Data is not used to train models.
View OpenAI Privacy Policy ββοΈ Vercel (Hosting)
Hosts the application and processes all web traffic.
View Vercel Privacy Policy β4. How We Share Your Information
We do NOT sell your personal information. We may share data in these limited circumstances:
- Service Providers: Third parties listed in Section 3 who help operate the Service
- Legal Compliance: If required by law, subpoena, or court order
- Business Transfers: In connection with a merger, acquisition, or sale of assets
- Consent: With your explicit permission for other purposes
5. Cookies and Tracking Technologies
We use cookies for:
- Authentication: Maintaining your logged-in session (essential)
- Security: CSRF token validation
- Preferences: Remembering your settings
You can control cookies through your browser settings, but disabling authentication cookies will prevent login.
6. Data Retention
We retain your information:
- Account Data: Until you delete your account
- Payment Records: 7 years for tax compliance (Stripe policy)
- Search History: Retained indefinitely unless you request deletion
- Generated Reports: Retained until account deletion
- System Logs: 90 days for security monitoring
7. Your Privacy Rights
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update inaccurate or incomplete information
- Deletion: Request permanent deletion of your account and data
- Portability: Receive your data in a machine-readable format
- Opt-Out: Unsubscribe from marketing emails (if we send any)
To exercise these rights, email: privacy@zoningos.com
8. Data Security
We implement industry-standard security measures:
- TLS/SSL encryption for all data in transit
- Encrypted password storage (bcrypt hashing via Supabase)
- Row-Level Security (RLS) for database access control
- CSRF protection on all form submissions
- Regular security audits and updates
However, no method of transmission over the Internet is 100% secure. Use strong, unique passwords.
9. Children's Privacy
ZoningOS is not intended for users under 18. We do not knowingly collect information from children. If we discover we have collected data from a child under 18, we will delete it immediately.
10. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to know if your personal information is sold or disclosed
- Right to say no to the sale of personal information (we do not sell data)
- Right to deletion
- Right to non-discrimination for exercising your rights
To exercise CCPA rights, email: privacy@zoningos.com
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or Service notice. Continued use after changes constitutes acceptance.
12. Contact Us
For privacy-related questions or requests:
- Email: privacy@zoningos.com
- Support: support@zoningos.com