Privacy Policy
Last updated: April 2026
TitanReply (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered Google review auto-responder service (the “Service”). Please read this policy carefully. By using TitanReply, you consent to the practices described herein.
1. Information We Collect
We collect the following categories of information to provide and improve the Service:
a) Account Information
- Name and email address (provided during sign-up via Google OAuth)
- Profile picture (from your Google account)
- Billing information (processed by Stripe; we never see or store card numbers)
b) Google Business Data
- Business name, address, and category
- Google Business Profile reviews (star rating, reviewer name, review text)
- AI-generated and user-approved review responses
c) OAuth Tokens
When you connect your Google account, we receive OAuth 2.0 access and refresh tokens. These tokens allow us to read your Google Business Profile reviews and post responses on your behalf. We never collect or store your Google password. Tokens are stored server-side only and are encrypted at rest.
d) Usage Data
- Pages visited, features used, and interaction patterns
- Device type, browser, IP address, and approximate location
- Error logs and performance metrics
2. How We Use Your Information
- To provide the Service: monitoring reviews and generating AI-powered responses
- To process payments and manage your subscription via Stripe
- To send transactional emails and review notifications via Resend
- To improve response quality and develop new features
- To comply with legal obligations and enforce our Terms of Service
3. AI Processing & Third-Party Services
TitanReply uses OpenAI’s API to generate review responses. When a review is processed, the review text, your business name, and contextual information are sent to OpenAI for response generation. OpenAI processes this data according to their own privacy policy and data usage terms. We have opted out of OpenAI using your data for model training where available.
We also use the following third-party services:
- Supabase: Database hosting and authentication infrastructure
- Stripe: Payment processing (PCI-DSS Level 1 compliant; we never handle or store your full card number)
- Resend: Transactional email delivery
- Google APIs: Reading and responding to Google Business Profile reviews
4. Data Security
We implement industry-standard security measures to protect your data:
- All data is encrypted in transit using TLS 1.2+
- Data at rest is encrypted using AES-256 encryption
- OAuth tokens are stored server-side only, never exposed to the browser
- Row Level Security (RLS) policies ensure users can only access their own data
- Regular security audits and dependency updates
5. Data Retention & Deletion
We retain your data for as long as your account is active or as needed to provide the Service. You may request deletion of your account and all associated data at any time by contacting us at support@titanreply.com or through your account settings.
Upon account deletion, we will remove all personal data, business data, reviews, and OAuth tokens within 30 days. Some data may be retained longer if required by law or for legitimate business purposes (e.g., billing records).
6. Your Rights (GDPR & CCPA)
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Right of Access: Request a copy of the personal data we hold about you
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your personal data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing of your data for certain purposes
- Right to Opt-Out of Sale (CCPA): We do not sell your personal information to third parties
To exercise any of these rights, please contact us at support@titanreply.com. We will respond to all legitimate requests within 30 days.
7. Cookies & Tracking
We use essential cookies to maintain your session and preferences. We may use analytics cookies to understand how the Service is used. You can disable non-essential cookies through your browser settings without affecting core functionality.
8. Children’s Privacy
TitanReply is not intended for use by individuals under 18 years of age. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child, we will take steps to delete it promptly.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through a prominent notice on the Service. Your continued use of TitanReply after changes are posted constitutes acceptance of the revised policy.
10. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at:
TitanReply
Email: support@titanreply.com