Privacy Policy

Effective date: April 27, 2026

1. Information We Collect

When you sign up for 5 Star Brands, we collect the following information to provide our service:

  • Business name, business type, and Google Business Profile URL
  • Account email address and password (stored securely, never in plain text)
  • Customer names, email addresses, and phone numbers you add to your account
  • Review request and reply history associated with your business

We collect only the information necessary to deliver review request and reply automation services.

2. How We Use Your Information

We use the information we collect to:

  • Send review request emails and SMS messages to your customers on your behalf
  • Generate AI-drafted reply suggestions for your Google reviews
  • Maintain your dashboard, analytics, and account settings
  • Improve the reliability and features of the 5 Star Brands platform
  • Send transactional emails (account confirmation, billing notices)

We do not use your customer data to train AI models or for any purpose beyond delivering the services you have configured.

3. SMS Messaging

5 Star Brands sends SMS review request messages to your customers using the Twilio platform, on behalf of your business. By adding a customer phone number and sending a review request, you confirm that:

  • You have an established business relationship with the customer
  • The customer has provided their phone number in the course of that relationship
  • You have obtained any consent required by applicable law

Every SMS review request sent through 5 Star Brands includes your business name and the opt-out instruction: "Reply STOP to opt out." We honor all STOP requests immediately and do not send further messages to opted-out numbers.

Message and data rates may apply. Message frequency: 1 message per review request per customer. For help, reply HELP to any message or contact us at support@5starbrands.app.

4. Data Sharing

We do not sell, rent, or share your personal information or your customers' information with third parties for marketing purposes. We share data only as necessary to operate the service:

  • Supabase (database and authentication hosting)
  • Twilio (SMS delivery)
  • Resend (email delivery)
  • Anthropic (AI reply generation via Claude API)
  • Vercel (application hosting)

Each subprocessor is contractually bound to protect your data and use it only for the purpose of providing their services to us.

5. Data Security

All data is stored with row-level security: each business account can only access its own records. Sensitive credentials (API keys, service tokens) are never exposed to the browser. Data is encrypted in transit using TLS and at rest using industry-standard encryption.

6. Data Retention

We retain your account data and customer records for as long as your account is active. If you close your account, we will delete your data within 30 days, except where retention is required by law.

7. Your Rights

You may request a copy of your data, correction of inaccurate data, or deletion of your account and associated records by contacting us at support@5starbrands.app. We will respond within 30 days.

8. Changes to This Policy

We may update this Privacy Policy as the service evolves. We will notify account holders of material changes via email at least 14 days before they take effect. Continued use of the service after the effective date constitutes acceptance of the updated policy.

9. Contact Us

For questions about this Privacy Policy or your data, contact us at support@5starbrands.app.