VendorVault Privacy Policy
VendorVault ("VendorVault," "we," "us," or "our") provides a private vendor-intelligence service for verified real-estate professionals. This Privacy Policy explains what information we collect, how we use it, when we share it, and the choices available to you when you use the VendorVault website or mobile application (the "Service").
1. Information we collect
Information you provide
- Account information: email address, first name, last name, password-related authentication information, and an internal user number.
- Profile information: mobile phone number and notification preferences.
- Vendor information (User Content): vendor or company names, categories, service areas, websites, phone numbers, email addresses, contact names, notes, and other information you enter or import. Contact details saved to a vendor record are stored as part of that User Content.
- Ratings and activity: ratings, saved vendors, vendors marked as used or skipped for rating, and related timestamps. Ratings may be displayed to authorized users using a display name.
- Feedback: the subject, message, and related account information you submit.
- Contact Info: if you use contact import, VendorVault receives only the specific contact information you select, such as a name, phone number, email address, or website. On iOS, Apple’s contact picker is used without requesting full Contacts authorization or reading your entire address book. If saved to a vendor record, this information is User Content and is linked to the signed-in user through the record’s creator/account association.
Contact import consent: Before the Contacts picker opens, we explain that only the contact you select will be accessed. You must give explicit consent before the selected contact's name, phone number, email address, website, or notes can be uploaded to VendorVault's server. If you save the vendor, those details are stored with the vendor record to help authorized VendorVault users find and contact the vendor. Contact import is optional.
Information collected automatically
We and our service providers may collect IP address, browser or device type, operating system, app version, pages or screens viewed, dates and times of access, referring pages, authentication/session information, and error or diagnostic information.
The web application uses local browser storage for convenience features such as saved vendors, recently viewed vendors, rating activity, skipped ratings, and remembered sign-in email addresses.
Push notifications and autocomplete
If you enable iOS notifications, we store an Apple Push Notification service device token and related registration information to deliver VendorVault notifications. When you use address or service-area autocomplete, your search input may be sent to Google Places through our server or directly from the app, depending on the platform and configuration.
2. How we use information
We use information to create and secure accounts; verify eligibility; provide vendor search, saved-vendor, contact, rating, and notification features; use consented selected-contact details to create vendor records and help authorized VendorVault users find and contact vendors; display ratings to authorized users; prevent abuse; respond to support requests; operate and improve the Service; comply with law; and send operational or security notices.
We do not sell vendor placement, use paid placement, or use the Service for third-party behavioral advertising.
3. How we share information
We may share information with authorized VendorVault users when needed to provide the private vendor network; with service providers that host databases, authentication, hosting, analytics, push notifications, security, or infrastructure; with Google Places and Apple APNs when you use those features; when required to comply with law or protect rights and safety; or in connection with a business transaction.
We do not share your personal information with vendors for their independent marketing purposes.
4. Retention and deletion
We retain information as reasonably necessary to provide the Service, maintain security and business records, resolve disputes, enforce agreements, and comply with legal obligations. You may request deletion of your account through the in-app account-deletion feature or by contacting us. Some information may remain where necessary for legal, security, fraud-prevention, backup, or network-integrity purposes.
5. Your choices and privacy rights
You may update profile information, disable push notifications, decline contact import, clear local browser storage, and request access to, correction of, or deletion of personal information we maintain about you. Depending on where you live, you may have additional rights under applicable privacy laws. We may verify your identity before completing a request.
6. Security
We use administrative, technical, and organizational safeguards designed to protect information, including access controls, database permissions, and encrypted network transmission where supported by our infrastructure. No method of transmission or storage is completely secure.
7. Children
The Service is intended for adults and professional users. It is not directed to children under 13, and we do not knowingly collect personal information from children under 13.
8. Third-party services and international processing
VendorVault and its service providers may process and store information in the United States or other countries where they operate. The Service may use or link to Supabase, Vercel, Google Places, and Apple Push Notification service. Their handling of information is governed by their own privacy policies and terms.
9. Changes to this policy
We may update this Privacy Policy from time to time. We will post the updated version and revise the "Last updated" date.
10. Contact us
For privacy questions or requests, contact:
VendorVault
Privacy contact: monkeycreationsllc@gmail.com
Mailing address: 11054 Ventura Blvd, #343, Studio City, CA 91604