Legal

Privacy Policy

Last updated: July 5, 2026

Draft status: this document is a plain-language working draft prepared by the AIFLB team. It has not yet been reviewed by a lawyer. It describes our real practices honestly, but wording may change after professional legal review.

What this covers

This policy explains what data AI For Local Businesses ("AIFLB", "we") collects when you use our website, web dashboard and Chrome extension, why we collect it, and what control you have over it.

Data we collect

Account data

When you register we store your name, email address and a password hash. We never store plain-text passwords.

Business data you capture

When you use the extension or dashboard to capture a Google Business Profile, we store that publicly visible profile information (such as name, address, categories, services, reviews statistics) in your account so you can audit and analyze it. This is data about businesses, captured by you, and it stays attached to your account.

Usage data

We log product actions (such as audits run and AI generations) to enforce plan allowances and to debug problems. Logs reference your account and the action, not the content of your work beyond what the feature requires.

Your own API keys (optional)

If you connect your own Gemini or DataForSEO credentials, they are stored encrypted (AES-256) and used only to run your requests through your own provider accounts.

Contact messages

Messages sent through the contact form are stored so we can reply to them.

What the Chrome extension can and cannot see

The extension runs only on Google Maps and Google search pages and communicates only with your AIFLB server. It reads publicly visible listing information on pages you open. It does not request access to your Google account, does not read other websites, and does not track your browsing history.

What we do not do

  • We do not sell your data to anyone.
  • We do not run third-party advertising trackers on this site.
  • We do not access your Google account.

Third-party processors

Some features send data to service providers to work: AI generation uses Google's Gemini API, and profile enrichment and ranking data use DataForSEO. These providers receive the minimum needed to fulfill the request. Payment processing, when enabled, is handled by our payment provider and card details never touch our servers.

Data retention

Account and captured business data are kept while your account exists. You can delete saved businesses at any time, and you can request full account deletion as described on the data deletion page.

Your rights

You can request a copy of your data, correction of wrong data, or deletion of your account and its data through the contact form. If you are in a jurisdiction with specific privacy rights (such as the EU or California), we will honor the rights that apply to you.

Cookies

The application uses a session cookie to keep you logged in. See the cookie policy for the full picture.

Changes

If this policy changes materially, we will note it in the changelog and update the date at the top of this page.

Contact

Privacy questions: use the contact form and choose product support.