Privacy Policy

Last Updated:

|

Effective :


 IMPORTANT — PLEASE READ

This Privacy Policy ("Policy") describes how BizFox  ("BizFox," "we," "us," or "our") collects, uses, discloses, and safeguards personal information from individuals who access or use our website and real estate property intelligence platform (collectively, the "Website" or "Services"). 

This Policy applies to business-to-business relationships between BizFox and our clients (real estate professionals, brokerages, and agents) who use our lead generation and scoring services ("Clients," "you," or "your"). 

Important Distinction: This Policy does NOT cover the property owner and consumer data that we collect, process, and deliver to our Clients as part of our lead generation services. The use of that data is governed by Consumer Privacy Laws in each state. By using our Services, Clients agree to comply with all applicable privacy laws when contacting property owners.

By accessing or using the Website, you acknowledge and agree to the terms of this Privacy Policy.

 1. Persons Under 18 Years of Age

The Website is intended for business use only and not for individuals under the age of 18. We do not knowingly collect personal information from anyone under 18. If we become aware that we have inadvertently collected information from a person under 18, we will take reasonable steps to delete such information.

If you are under 18, you must not use or access the Website, submit any personal information, or engage with our Services.

 2. Information We Collect

We collect personal information from and about Clients in several ways:

 2.1 Information You Provide Voluntarily

We collect information that you voluntarily provide when you:

- Create or update your account

- Purchase lead packages or modules

- Complete onboarding forms or service preferences

- Communicate with us via email, phone, chat, or support tickets

- Participate in surveys, beta testing, or referral programs

- Subscribe to newsletters or product updates

This information may include:

- Name, email address, phone number

- Business name, brokerage affiliation, real estate license information

- Business address and contact preferences

- Account preferences and lead delivery settings

 2.2 Information Collected Automatically

When you access or use the Website, we automatically collect:

- Device Information: IP address, browser type, device identifiers, operating system

- Usage Information: Pages visited, features used, time and duration of visits, referral URLs

- Interaction Data: Mouse clicks, page interactions, scrolling behavior, feature usage patterns

- Cookies and Tracking Technologies: As described in Section 6 below

 2.3 Transaction and Payment Information

When you purchase leads or services, we (and/or our third-party payment processors) may collect:

Account and Billing Information:

- Business name, contact details, and billing address

- Payment method details (business credit/debit card number, cardholder name, expiration date, CVV, billing address)

- PayPal, ACH, or wire transfer information for payment processing

- Tax identification information (EIN or SSN for tax reporting purposes)

Transaction Records:

- Purchase amounts, dates, and frequency of lead purchases

- Module selections and pricing tier information

- Account balance, credits, and payment history

- Monthly budget allocations and lead delivery preferences

- Records of refunds, adjustments, disputes, or billing issues

- Promotional credits, referral credits, or discounts applied

- Internal transaction reference numbers and account identifiers

Compliance Documentation:

- Business verification information

- IRS tax forms (W-9 or equivalent)

- Any documentation required for payment processing or regulatory compliance

Important: We use third-party payment processors to handle payment transactions. We do not store full credit or debit card numbers on our servers. Payment data is processed securely by our payment providers in accordance with PCI DSS standards and their respective privacy policies.

 2.4 Property and Lead Data

We obtain property and property owner information from third-party licensed data providers including but not limited to BatchData, ATTOMdata, DataFiniti, ProbateData, and other state, county, and city records to generate and score leads. This data includes:

- Property characteristics, ownership records, and public records data

- Mortgage information, liens, and foreclosure status

- Property valuation estimates and market data

- Demographics and property owner contact information

- Property transaction history and assessment data

This data is collected for the purpose of delivering leads to our Clients and is subject to our Consumer Privacy Policy, not this Business-to-Business (B2B) Policy. Our Clients must know and adhere to Consumer Privacy Laws in their state.

 3. How We Use Client Information

We use the Client information we collect for the following business purposes:

 3.1 Service Delivery and Account Management

- Operating and maintaining the Website and platform functionality

- Creating and managing your account and user dashboard

- Generating, scoring, and delivering property leads to Clients

- Processing lead purchases and managing module selections

- Customizing lead delivery based on your preferences and criteria

 3.2 Payment Processing and Financial Operations

- Processing payments, issuing invoices, and managing transactions

- Handling refunds, credits, adjustments, and billing disputes

- Maintaining accurate financial records and account balances

- Preventing fraud and unauthorized transactions

 3.3 Communication and Support

- Responding to inquiries, feedback, and support requests

- Sending transactional emails (purchase confirmations, lead deliveries, account updates)

- Providing technical support and troubleshooting assistance

- Notifying you of service changes, downtime, or system updates

 3.4 Marketing and Business Development

- Sending promotional messages about new modules, features, or special offers

- Sharing product updates, industry insights, and best practices

- Conducting surveys and gathering feedback

- Processing referral program participation

You may opt out of marketing communications at any time by clicking "unsubscribe" in our emails or contacting us at info@bizfox.ai.

 3.5 Analytics and Improvement

- Analyzing usage patterns and platform performance

- Improving lead scoring algorithms and data quality

- Conducting A/B testing and feature optimization

- Understanding Client needs and preferences

 3.6 Security, Compliance, and Legal

- Detecting and preventing fraud, abuse, or security breaches

- Enforcing our Terms of Service and acceptable use policies

- Complying with legal obligations and regulatory requirements

- Responding to lawful requests from authorities

- Protecting our rights, property, and safety

 4. Legal Bases for Processing

Although BizFox operates primarily under U.S. law, we recognize the importance of transparency around the legal grounds for processing personal information. We process your information based on one or more of the following legal bases:

Consent: When you provide information voluntarily, create an account, or opt into marketing communications.

Contractual Necessity: To perform our contractual obligations under our Terms of Service, including lead delivery, account management, and payment processing.

Legitimate Interests: For our legitimate business interests, such as improving the platform, preventing fraud, enhancing security, and conducting analytics, provided those interests do not override your rights and interests.

Legal Obligations: To comply with applicable laws, legal processes, or regulatory requirements.

 5. Disclosure and Sharing of Information

We may share or disclose your personal information in the following circumstances:

 5.1 Service Providers and Vendors

We share information with trusted third-party service providers who assist us in:

- Data Providers: BatchData and other licensed sources for property data

- Payment Processors: Stripe, PayPal, or other payment service providers

- Technology Infrastructure: Web hosting, cloud storage, email services

- Analytics and Monitoring: Google Analytics, performance monitoring tools

- Customer Support: Help desk software and communication tools

All service providers are contractually required to keep information confidential and use it only for performing services on our behalf.

 5.2 Marketing and Advertising Partners (Excluding Mobile Numbers)

We may share certain information (excluding mobile phone numbers and SMS opt-in data) with:

- Marketing automation platforms

- Advertising networks for targeted campaigns

- Analytics providers for campaign measurement

SMS/Mobile Number Protection: We do NOT sell, rent, or share mobile phone numbers with third parties for marketing or promotional purposes. Mobile numbers may only be disclosed to SMS service providers solely to deliver text messages related to our Services, and these providers are prohibited from retaining, using, or disclosing this information for any other purpose. SMS opt-in data and consent will not be shared with third parties for marketing purposes.

 5.3 Lead Delivery to Real Estate Clients

This is a core function of our service: We deliver property owner contact information and lead data to our real estate professional Clients who have purchased AI-scored leads. When we deliver leads to you, you become responsible for complying with all applicable laws regarding contact with property owners, including:

- Telephone Consumer Protection Act (TCPA)

- CAN-SPAM Act

- State and federal do-not-call regulations

- Fair housing laws

- State-specific privacy and solicitation laws

 5.4 Legal and Compliance Disclosures

We may disclose information:

- In response to subpoenas, court orders, legal process, or law enforcement requests

- To comply with applicable laws, regulations, or legal obligations

- To enforce our Terms of Service, policies, or user agreements

- To protect our rights, property, privacy, safety, or that of others

 5.5 Security and Fraud Prevention

We may share information as necessary to:

- Investigate or prevent security incidents or data breaches

- Detect, prevent, or address fraud or abuse

- Respond to violations of law or our policies

 5.6 Business Transfers

In connection with a merger, acquisition, sale of assets, bankruptcy, or other corporate transaction, your information may be transferred as part of that transaction. We will notify you if your information becomes subject to a different privacy policy.

 5.7 With Your Direction or Consent

We may share information with your explicit consent or at your direction.

Important Note on Data Sales:

We do NOT sell personal information collected from our Clients (real estate professionals) for monetary consideration. 

However, our business model involves buying and selling property owner data as leads. The handling of that consumer data is governed by state and local laws. 

6. Cookies and Local Storage

6.1 What We Use

We use a minimal set of browser storage technologies strictly necessary to operate the platform. We do not use advertising, marketing, analytics, or tracking cookies of any kind.

For clarity, this section covers both traditional cookies and browser storage mechanisms (such as localStorage and sessionStorage) that serve similar functional purposes.

6.2 Storage We Use

Authentication Storage (Strictly Necessary)

We use Supabase Auth to manage user sessions. Upon login, Supabase stores a session token (JWT) in your browser's localStorage. This token is used solely to keep you authenticated between page visits. It is a first-party, functional storage item — not a tracking cookie — and is required for the platform to work. No consent is required for strictly necessary storage under frameworks such as GDPR.

Session Storage (Strictly Necessary)

We use sessionStorage temporarily during the password recovery flow to preserve state within a single browser tab. This data is not a cookie, is never transmitted to third parties, and is automatically cleared when the tab is closed.

6.3 Third-Party Requests

Google Fonts

Our platform loads fonts from Google's CDN (fonts.googleapis.com) on page load. This request is made directly from your browser to Google's servers and may result in Google receiving your IP address as part of a standard network request. We do not control this data transfer. You can review Google's privacy practices at https://policies.google.com/privacy.

We do not use Google Analytics, Google Ads, Meta Pixel, LinkedIn Insight Tag, or any other third-party advertising or analytics service.

6.4 Managing Storage

You can clear or block localStorage and sessionStorage through your browser settings. Note that clearing authentication storage will log you out of the platform and you will need to sign in again.

 7. Your Privacy Rights and Choices

Depending on your jurisdiction, you may have certain rights regarding your personal information:

 7.1 General Privacy Rights

- Right to Access: Request copies of the personal information we hold about you

- Right to Correction: Request correction of inaccurate or outdated information

- Right to Deletion: Request deletion of your personal information (subject to legal exceptions)

- Right to Data Portability: Request your data in a structured, machine-readable format

- Right to Opt-Out: Opt out of marketing communications, data sales, or targeted advertising

- Right to Appeal: Appeal our decision on a privacy request

- Right to Non-Discrimination: Exercise privacy rights without penalty

To exercise these rights: Contact us at info@bizfox.ai. We may verify your identity before processing certain requests.

Non-Discrimination Promise: We will not discriminate against you for exercising any privacy rights, including by denying services, charging different prices, or providing different service quality.

 7.2 Marketing Communications

You may opt out of marketing emails by:

- Contacting us at info@bizfox.ai

We will process opt-out requests within 10 business days. You will continue to receive transactional emails related to your account and purchases.

 8. Jurisdiction-Specific Provisions

At BizFox, we are committed to complying with all applicable data privacy laws, including jurisdiction-specific requirements.

Automatic Compliance: If you reside in a jurisdiction with specific legal requirements regarding the collection, use, or disclosure of personal information, this Privacy Policy is intended to comply with those local laws.

Conflict Resolution: In the event of any conflict between this Privacy Policy and applicable data protection laws (including the California Consumer Privacy Act, Virginia Consumer Data Protection Act, or future laws passed after this policy's update), the applicable law shall take precedence. This Privacy Policy shall be automatically deemed amended as needed to remain compliant with legal requirements.

 9. California Consumer Privacy Act (CCPA) Rights

If you are a California resident, you have specific rights under the CCPA:

 9.1 Right to Know / Access

You may request disclosure of:

- Categories of personal information we collected about you in the past 12 months

- Sources from which we collected your personal information

- Business or commercial purposes for collecting the information

- Categories of third parties with whom we shared your information

- Specific pieces of personal information we collected about you

- Categories of personal information disclosed for business purposes and the recipients

 9.2 Right to Delete

You may request that we delete your personal information, subject to certain exceptions:

- Completing transactions or providing services you requested

- Detecting security incidents, fraud, or illegal activity

- Debugging and repairing errors

- Complying with legal obligations

- Using information internally in compatible ways

 9.3 Right to Opt-Out of Sale/Sharing

While we do not sell Client information for monetary consideration, our use of advertising cookies may constitute "sharing" under CCPA. You may opt out of this sharing by:

- Adjusting cookie preferences in your browser

- Using the opt-out tools listed in Section 6.4

- Contacting us at info@bizfox.ai

 9.4 Right to Correct Inaccurate Information

You may request correction of inaccurate personal information we maintain about you.

 9.5 Right to Limit Use of Sensitive Personal Information

If we collect or use sensitive personal information beyond what is necessary to provide our services, you may request that we limit such use.

 9.6 Right to Non-Discrimination

We will not discriminate against you for exercising CCPA rights, including by:

- Denying goods or services

- Charging different prices or rates

- Providing different quality of goods or services

- Suggesting you will receive different pricing or quality

 9.7 How to Exercise Your CCPA Rights

Submitting Requests:

- Email: info@bizfox.ai

- Phone: 209-694-6051

- Mail: BizFox , 4251Commons Dr W Unit 5315, Destin, FL 32541-8637

Verification Process:

We will verify your identity before processing requests by matching information you provide with our existing records. For sensitive or high-risk requests, we may ask for additional verification documents.

Authorized Agents:

You may authorize someone to submit requests on your behalf by providing:

- Signed written authorization from you

- Proof of the agent's identity

- Verification of your identity

Response Timeline:

- We will acknowledge receipt of your request within 10 business days

- We will respond to verified requests within 45 days

- If we need additional time, we will notify you and may extend up to an additional 45 days

- If we cannot comply with your request, we will explain the reason in writing

 9.8 Categories of Personal Information Collected and Shared

In the past 12 months, we have collected and may have shared the following categories of personal information:

Data Collection and Sharing Table

Category

Examples

Collected

Shared with Third Parties

Identifiers

Name, email, phone, business address

Yes

Service providers, payment processors

Commercial Information

Purchase history, account balance, transaction records

Yes

Payment processors, analytics providers

Internet Activity

IP address, browsing history, interactions

Yes

Analytics providers, advertising partners

Professional Information

Business name, license info, brokerage affiliation

Yes

Service providers

Financial Information

Payment method, billing address

Yes

Payment processors only

Inferences

Lead preferences, usage patterns

Yes

Analytics providers

 10. Other State Privacy Rights

 10.1 Nevada Residents

You may opt out of the sale of personal information. We do not currently sell Client information as defined by Nevada law. To submit an opt-out request or for more information:

Email: info@bizfox.ai

 10.2 Virginia, Colorado, Connecticut, and Utah Residents

You have rights similar to CCPA, including rights to access, delete, correct, and opt out of targeted advertising. Contact info@bizfox.ai to exercise these rights.

 10.3 Oregon Residents

We will not share your personal information with non-affiliated third parties for marketing purposes without first giving you the opportunity to opt out.

 10.4 Vermont Residents

We will not disclose your personal information to non-affiliated third parties for marketing purposes, except as permitted by Vermont law.

 10.5 Florida Residents - Florida Information Protection Act (FIPA)

BizFox is headquartered in Florida and complies with the Florida Information Protection Act (FIPA), which applies to all businesses that acquire, maintain, store, or use personal information of Florida residents.

 Security Measures Required by FIPA

We take reasonable measures to protect and secure personal information in electronic form, including:

- Administrative, technical, and physical safeguards appropriate to the size and complexity of our business

- Security measures tailored to the nature and scope of our data processing activities

- Controls designed to protect the sensitivity of the data we handle

 Data Breach Notification Under FIPA

In the event of a data breach affecting personal information:

Individual Notification:

- We will notify affected Florida residents within 30 days of determining that a breach has occurred

- Notice may be delayed if authorized by law enforcement for criminal investigation purposes

- We may request a 15-day extension from the Florida Department of Legal Affairs if good cause exists

Government Notification:

- If a breach affects 500 or more Florida residents, we will notify the Florida Department of Legal Affairs within 30 days

- If a breach affects 1,000 or more individuals, we will also notify nationwide consumer credit reporting agencies

Third-Party Service Providers:

- Our third-party service providers must notify us within 10 days if they experience a breach

- We remain responsible for providing required notices to affected individuals

Breach Determination:

- We will conduct reasonable investigations of potential breaches

- If we determine a breach will not cause financial harm, we will document this determination in writing and maintain it for five years

- We will provide our written determination to the Florida Department of Legal Affairs within 30 days

 Personal Information Covered by FIPA

Under FIPA, "personal information" means an individual's first name (or first initial) and last name combined with one or more of the following:

- Driver's license, state ID, passport, or military ID number

- Financial account numbers, credit/debit card numbers with access codes

- Medical history, mental/physical health condition, or medical treatment information

- Health insurance policy number or subscriber identification number

- Username or email address in combination with password or security question/answer

- Other data elements specified in Florida Statutes § 501.171

 Proper Disposal of Personal Information

We take reasonable measures to dispose of or arrange for disposal of customer records containing personal information through:

- Shredding physical documents

- Erasing electronic data

- Modifying data to make it unreadable or undecipherable

- Other methods that render personal information unusable

 FIPA Enforcement

FIPA is enforced by the Florida Attorney General through the Florida Deceptive and Unfair Trade Practices Act (FDUTPA). Penalties for non-compliance include:

- $1,000 per day for the first 30 days of non-compliance

- $50,000 for each subsequent 30-day period

- Maximum penalty of $500,000 for violations continuing more than 180 days

- Penalties apply per breach, not per individual affected

There is no private right of action under FIPA.

For questions about FIPA compliance or to report a potential breach: info@bizfox.ai

11. Data Security

We implement commercially reasonable administrative and technical safeguards to protect your personal information:

Technical Measures:

- Encryption of data in transit (SSL/TLS)

- Encryption of sensitive data at rest

- Secure authentication and access controls

Administrative Measures:

- Access limited to authorized personnel only

- Incident response and breach notification procedures

Your Responsibilities:

- Maintain the confidentiality of your account credentials

- Use strong, unique passwords

- Notify us immediately of unauthorized access

- Log out after each session

Important Limitation: No security system is completely secure. While we implement industry-standard protections, we cannot guarantee absolute security. You acknowledge that Internet transmission and electronic storage carry inherent risks, and except as required by law, we are not responsible for unauthorized access resulting from circumvention of our security measures.

 12. Data Retention

We retain personal information for as long as necessary to:

- Provide services to you and fulfill the purposes described in this Policy

- Comply with legal, tax, and regulatory obligations (typically 7 years for financial records)

- Enforce our agreements and resolve disputes

- Maintain business records and analytics

- Protect against fraud and maintain security

Specific Retention Periods:

- Account Information: Duration of active account plus 3 years

- Transaction Records: 7 years for tax and accounting purposes

- Support Communications: 3 years after resolution

- Marketing Data: Until opt-out request, then removed within 30 days

- Analytics Data: Aggregated/anonymized data may be retained indefinitely

When personal information is no longer required, we securely delete or anonymize it in accordance with our data retention policies and applicable laws.

Lead Data Retention: Property owner data delivered to Clients is subject to our Consumer Privacy Policy and data provider agreements.

 13. International Data Transfers

Our Website is operated in the United States and intended primarily for users located in the United States. If you access the Website from outside the U.S.:

- Your information will be transferred to and processed in the United States

- U.S. data protection laws may differ from those in your jurisdiction

- By using our Services, you consent to this transfer and processing

We do not currently offer services outside the United States or actively market to international users.

 14. Third-Party Links and Services

The Website may contain links to third-party websites, tools, or services not controlled by BizFox, including:

- BatchData and other data provider websites

- Payment processor websites

- Industry resources and tools

- Partner websites

We are not responsible for the privacy practices or content of third-party sites. We encourage you to review their privacy policies before providing personal information.

Third-Party Services We Use:

- Our use of certain third-party services (such as Google services) is subject to their respective terms and policies

- We do not control how these providers collect or use data beyond our specific service agreements

 15. Children's Privacy

Our Services are intended for business use only and not directed to individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately at info@bizfox.ai, and we will take steps to delete such information.

 16. "Do Not Track" Signals

Our Website does not currently respond to "Do Not Track" (DNT) browser signals, as there is no industry standard for how to interpret or respond to DNT signals. We will update this Policy if we adopt a DNT standard in the future.

 17. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect:

- Changes in our practices or services

- New legal or regulatory requirements

- Technological developments

- Business operations changes

Notice of Changes:

- We will revise the "Last Updated" date at the top of this Policy

- For material changes, we will provide additional notice by:

  - Posting a notice on our homepage

  - Sending email to your registered email address

  - Displaying a notification in your account dashboard

Effectiveness:

- Changes are effective as of the date published, unless a later effective date is stated

- Your continued use of the Website after changes are published constitutes acceptance of the revised Policy

- If you do not agree to changes, you must discontinue use of the Services

 18. Contact Us

For questions about this Privacy Policy, to exercise your privacy rights, or to update your information:

Email: info@bizfox.ai  

Phone: 209-694-6051  

Response Times:

- General inquiries: 3-5 business days

- Privacy rights requests: Within 10 days (acknowledgment), within 45 days (response)

- CCPA requests: As specified in Section 9.7


Version: 1.0