Privacy Policy
Last updated: TBD · Replace this stub with the Termly/iubenda template before public launch.
1. Data we collect
- Dealership users: name, email, phone, role, dealership name, billing address (via Stripe).
- Customers (uploaded by dealership):driver's license image, credit application fields (name, address, SSN, income, employer), trade-in details, insurance card, e-signature. This data belongs to the dealership; we process it on their behalf.
- Usage: IP address and user-agent on sign-in and on customer document submission (audit trail).
2. How we use it
We use the data to deliver the Service: hold submissions for the dealership's review, generate filled credit application PDFs, send transactional emails, and enforce billing. We do not sell or share data with third parties for advertising.
3. Subprocessors
See our subprocessor list for an up-to-date list of vendors we share processing with.
4. Security
Data is encrypted in transit (TLS 1.2+) and at rest (AES-256 via Convex). Customer financial data is never sent in plaintext email. See our security overview for detail.
5. Retention
Customer deal records are retained while the originating dealership remains a customer, plus 90 days. Deal data is exportable and deletable on request via the dealership's admin.
6. Your rights (CCPA / GDPR equivalents)
You have the right to access, correct, or delete your personal data. Send requests to hello@jacketlink.com.
7. Cookies
We use three session cookies (tl_session, tl_token, tl_pending) strictly for authentication. No third-party advertising cookies.
8. Contact
Privacy questions: hello@jacketlink.com.