Privacy Policy

Last updated: May 3, 2026

1. Introduction

Advisor AI ("we", "us", "our") is committed to protecting your personal information. This Privacy Policy explains what data we collect when you use advisor-ai.site, how we use it, who we share it with, and your rights regarding your data.

By using the service you agree to the collection and use of information in accordance with this policy.

2. Data We Collect

We collect the following categories of data:

  • Account data: your name, email address, and hashed password created at sign-up.
  • Business profile: business name, type, location, number of staff, and business goals you enter during onboarding or in Settings.
  • Transaction data: dates, amounts, entry types, descriptions, and client names you log in the app.
  • Check-in responses: your answers to the 5 pre-report questions (promotions, unusual events, client feedback, staff changes, focus areas).
  • Usage data: report generation timestamps and monthly assessment counts used for plan enforcement.
  • Technical data: session tokens and IP address logs managed by Firebase Authentication and Google Cloud infrastructure.

3. How We Use Your Data

  • To authenticate your account and maintain your session
  • To generate AI-powered business assessment reports by sending transaction summaries and check-in responses to OpenAI's API
  • To enforce your subscription plan limits (assessment count per billing period)
  • To manage your subscription and billing through Lemon Squeezy
  • To send weekly briefing notification emails if you enable them in Settings

We do not use your data for advertising, profiling, or any purpose beyond operating the service.

4. Third-Party Services

We use the following third-party services, each of which operates under its own privacy policy:

  • Firebase (Google): user authentication, Firestore database storage, and application hosting. Your account data and transaction data are stored in Google's infrastructure.
  • OpenAI: AI report generation. When you generate a report, a summary of your recent transaction data and check-in responses is sent to OpenAI's API. We do not send your raw data or personally identifying information beyond what is necessary to generate the report.
  • Lemon Squeezy: subscription billing and payment processing. Payment card details are handled entirely by Lemon Squeezy and are never stored on our servers.

We do not sell, rent, or trade your personal data to any third party.

5. Data Retention

Your data is retained for as long as your account is active. If you cancel your subscription, your data remains stored until you request deletion. Transaction entries, briefings, and your business profile are all associated with your account and will be deleted upon request.

6. Your Rights

You have the right to:

  • Access the personal data we hold about you
  • Correct inaccurate or incomplete data
  • Delete your account and all associated data
  • Export your transaction data

To exercise any of these rights, contact us at vin.samdy.dev@gmail.com. We will respond within 30 days.

7. Cookies

We use a single session cookie (advisor-ai-session) to authenticate your account. We do not use advertising cookies, tracking pixels, or any third-party analytics cookies.

8. Security

Your data is stored in Google Firebase with access controls enforced at the database level. Business assessment reports are write-protected — only our server-side processes can create or modify them. Connections to the service use HTTPS encryption in transit.

While we take reasonable measures to protect your data, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.

9. Children

Advisor AI is not directed at children under the age of 13. We do not knowingly collect personal data from minors. If you believe we have inadvertently collected such data, please contact us and we will delete it promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. Your continued use of the service after changes are posted constitutes your acceptance of the revised policy.

11. Contact

Privacy questions or requests? Contact us at vin.samdy.dev@gmail.com.