← Back to home

Privacy Policy

Last updated: April 23, 2026

1. Who we are

Locavisor (“we”, “us”, “our”) operates an AI-assisted site-selection research service at locavisor.app. We help small retail and service businesses evaluate neighborhoods by scoring them across demand, competition, rent, accessibility, and customer-match signals and presenting the results as a written report.

This Privacy Policy describes what data we collect, why, how long we keep it, and your rights.

2. What data we collect

We collect only what is necessary to deliver your report.

  • Analysis inputs — the city, business type, budget tier, and (optional) customization details (concept, format, target customers, etc.) you enter into our forms.
  • Email address — only if you ask us to email a copy of the paid full report or paste it into the customization step; optional on the free preview.
  • Payment metadata — Stripe handles your payment card data directly; we receive only a Stripe Checkout session ID, your payment status, and the amount charged. We never see or store your full card number.
  • Technical logs — server access logs (IP address, user agent, request path, timestamp), retained for 30 days for security and debugging.
  • Report artifacts — the generated preview and full-report JSON are linked to your email / access token so you can revisit the same report later.

We do NOT collect: precise GPS location, device identifiers, social-media profiles, browsing history outside Locavisor, or anything Stripe does not pass to us.

3. How we use your data

  • To generate your site-selection report.
  • To deliver the report to you (email or direct link).
  • To process your $9.99 payment via Stripe.
  • To respond to support requests and process refunds.
  • To improve the service in aggregate (e.g., counting how many reports are generated per city). Aggregated analytics cannot be used to identify you.

We do not sell your data. We do not share it with advertisers. We do not use your report inputs to train AI models.

4. Third-party processors

To operate Locavisor, your data passes through the following service providers, each with their own data-processing commitments:

  • Anthropic (Claude API)— the LLM that writes report prose and summarizes competitor reviews. Per Anthropic's API terms, your inputs are not used to train Anthropic's models.
  • Google Maps Platform — we query Google Places to identify nearby anchors and competitors for the neighborhoods in your report. Google receives coordinate queries and business-type keywords; it does not receive your email or payment data.
  • Stripe — payment processing. Stripe is PCI DSS Level 1 certified and handles all card data.
  • Resend — transactional email delivery (your full-report access link).
  • Neon (PostgreSQL) — our database host (data stored in the United States).
  • Cloudflare Workers — serverless application runtime and CDN.

5. Public + commercial data sources

The report content combines your inputs with publicly available and commercially licensed datasets: U.S. Census Bureau (ACS), LEHD LODES, Zillow rent indexes, OpenStreetMap, and brokerage market reports (Cushman & Wakefield, CBRE). These are third-party data sources; we cite them in-report and do not send your personal information to them.

6. How long we keep your data

  • Report artifacts(preview JSON, full-report JSON, customization inputs) — retained as long as the report is accessible, plus 24 months after your last visit, so you can re-open a report you paid for.
  • Email address — kept with the report it was associated with; delete request will remove both.
  • Payment records — 7 years as required for tax and accounting.
  • Server logs — 30 days.

7. Your rights

Depending on your jurisdiction (California, EU, UK, etc.), you have the right to:

  • Request a copy of the personal data we hold about you.
  • Correct inaccurate data.
  • Delete your data (“right to be forgotten”).
  • Port your data to another provider.
  • Object to certain processing.
  • Withdraw consent where we rely on it.

To exercise any of these rights, email support@locavisor.app from the address associated with your report. We will respond within 30 days.

8. Cookies and local storage

Locavisor uses a small amount of browser local storage to remember your most recent report so you can return to it easily. We do not use advertising cookies, tracking pixels, or cross-site analytics.

9. Children

Locavisor is a B2B tool for business owners. The service is not directed at children under 13, and we do not knowingly collect personal data from children.

10. International data transfers

Our primary infrastructure (Neon, Cloudflare, Anthropic, Stripe, Resend) operates in the United States. If you use Locavisor from outside the U.S., your data will be transferred to and processed in the U.S. We rely on each provider's own data-transfer safeguards (EU Standard Contractual Clauses where applicable).

11. Security

We use TLS for all data in transit and encryption-at-rest for stored data. Access to production systems is limited to authorized engineers. In the unlikely event of a breach affecting your data, we will notify affected users within 72 hours of confirmation, as required by applicable law.

12. Changes to this policy

We may update this policy as the service evolves. The “Last updated” date above will change, and material changes (for example, adding a new category of data collection) will be notified via email to any users with active paid reports.

13. Contact

Privacy questions, data access requests, complaints: support@locavisor.app

For everything else: support@locavisor.app