Privacy Policy
Last Updated: October 1, 2025
TL;DR Summary
- What we collect: Account info, property details, documentation data, usage analytics
- How we use it: Provide services, process documentation, send notifications, improve app
- Who sees it: Only you and our secure service providers
- Do we sell it? NO. Never. Ever.
- Data retention: Property docs kept 7 years, account data deleted upon closure
1. Introduction
DepositGenie, Inc. ("we," "our," or "us") operates the DepositGenie mobile application (the "App"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our App.
By using the App, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, do not use the App.
2. Information We Collect
We collect information you provide directly to us, such as:
- Account Information: Name, email address, and authentication data
- Property Details: Addresses, rental information, and landlord contact details
- Documentation Data: Photos, videos, notes, and inspection reports
- Communication Records: Messages, feedback, and support interactions
- Usage Analytics: App usage patterns and performance metrics (anonymized)
We also automatically collect certain information:
- Device Information: Device type, operating system, and app version
- Location Data: Only when explicitly permitted for property documentation
- Technical Data: IP address, crash logs, and error reports
3. How We Use Your Information
We use your information to:
- Provide and improve our services
- Process your documentation and generate reports
- Send important notifications about deadlines and updates
- Provide customer support and respond to your inquiries
- Analyze usage patterns to improve app functionality
- Ensure security and prevent fraud
- Comply with legal obligations
We will never sell your personal information to third parties.
4. Information Sharing
We may share your information only in these limited circumstances:
- With Your Consent: When you explicitly authorize sharing
- Service Providers: Third-party services that help us operate the app (with strict data protection agreements)
- Legal Requirements: When required by law or to protect rights and safety
- Business Transfers: In case of merger or acquisition (with continued privacy protection)
We use secure, industry-standard service providers:
- Google Cloud Platform for data storage and processing
- Firebase for authentication and analytics
5. App Permissions
DepositGenie requests the following permissions to provide core functionality:
- Camera Access: Required to take photos and videos for property documentation
- Microphone Access: Required for video recording when documenting property conditions
- Photo Library Access: Required to select existing photos for property documentation
- Location Access: Optional GPS coordinates for enhanced evidence authenticity (only when explicitly permitted)
- Push Notifications: Required to send important deadline reminders and app updates
You can manage these permissions in your device settings at any time. The app will continue to function with limited features if you deny certain permissions.
6. Third-Party Services
We use the following third-party services to provide and improve our app:
- Google Cloud Platform: Data storage, processing, and hosting
- Firebase: Authentication, analytics, crash reporting, and cloud functions
- Superwall: Paywall and subscription management
- Google Sign-In: Authentication via Google accounts
- Sign in with Apple: Authentication via Apple ID
- Google Fonts: Typography and design consistency
- Hive: Local data storage and caching
- Flutter Local Notifications: Local notification delivery
All third-party services are bound by strict data protection agreements and industry-standard security practices.
7. Data Security
We implement comprehensive security measures:
- Encryption: All data is encrypted in transit (TLS 1.3) and at rest (AES-256)
- Authentication: Secure login with Firebase Authentication
- Access Controls: Role-based access with regular security audits
- Data Centers: Google Cloud's secure, compliant infrastructure
- Regular Backups: Automated backups with disaster recovery
- Incident Response: 24/7 monitoring and rapid response procedures
Despite these measures, no system is 100% secure. We continuously update our security practices.
8. Data Retention
We retain your information for the following periods:
- Account Information: Retained while your account is active and deleted immediately upon account closure
- Property Documentation: Retained for 7 years (2,555 days) after lease termination to support potential legal proceedings
- Communication Records: Retained while your account is active and deleted upon account closure
- Usage Analytics: Anonymized data retained for debugging and service improvement
- Crash Reports: Retained for debugging and service improvement
When you delete your account, all your data is automatically deleted via our Cloud Function, including:
- User profile and authentication data
- All properties and sessions
- All media files and thumbnails
- All demand letters and PDFs
- All deadlines and communication records
We do not retain data after account deletion for legal compliance unless specifically required by law.
9. Marketing Communications
Currently, we do not send marketing emails or promotional communications.
We only send essential service-related notifications:
- Deadline reminders and important updates
- Account verification emails
- Password reset emails
- Progress nudges for incomplete documentation
All notifications are sent through the app's push notification system or Firebase Auth services. We do not use external email marketing services like SendGrid.
If we begin sending marketing communications in the future, we will:
- Update this privacy policy
- Provide clear opt-out mechanisms
- Only send communications to users who explicitly consent
10. International Data Transfers
Your data may be transferred to and processed in countries other than your own, including:
- United States: Where our primary servers and Google Cloud infrastructure are located
- Other countries: Where our third-party service providers operate
We ensure appropriate safeguards are in place for international transfers:
- Standard Contractual Clauses (SCCs) with all service providers
- Adequacy decisions where applicable
- Industry-standard security measures regardless of location
By using our app, you consent to the transfer of your information to these countries for the purposes described in this policy.
11. Cookies and Tracking
We use the following tracking technologies:
- Firebase Analytics: Anonymized usage analytics to improve app performance (disabled in debug mode)
- Crashlytics: Crash reporting and error tracking for debugging
- Local Storage: Hive database for offline functionality and caching
- Device Identifiers: For authentication and security purposes
Analytics tracking is automatically disabled in debug mode and only enabled in production builds.
We do not use:
- Third-party advertising cookies
- Cross-site tracking
- Behavioral advertising
- Social media tracking pixels
You can disable analytics tracking in your device settings, though this may limit our ability to improve the app based on usage patterns.
12. Your Rights
You have the following rights regarding your data:
- Access: Request a copy of your personal information
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your account and data
- Portability: Export your data in a machine-readable format
- Opt-out: Unsubscribe from marketing communications
- Complaint: Contact us or relevant authorities about privacy concerns
To exercise these rights, contact us through the app or at privacy@depositgenie.com.
13. Children's Privacy
DepositGenie is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.
If we learn that we have collected personal information from a child under 13, we will take steps to delete such information immediately.
If you believe we have collected information from a child under 13, please contact us immediately.
14. Changes to This Policy
We may update this Privacy Policy from time to time. When we do:
- We will post the updated policy in the app
- We will update the "Last updated" date
- For significant changes, we will notify you via email or app notification
- Continued use of the app constitutes acceptance of the updated policy
We encourage you to review this policy periodically to stay informed about how we protect your information.
15. Contact Us
If you have any questions about this Privacy Policy, please contact us:
We will respond to privacy inquiries within 30 days.
For immediate concerns about data security or unauthorized access, please contact us immediately at help@depositgenie.com