Privacy Policy

Your Privacy Matters

Last updated: January 27, 2025

No IP Logging

Public feedback forms never log IP addresses or track submitters

Encrypted Data

All data is encrypted in transit and at rest using industry standards

Minimal Collection

We only collect what's necessary to provide and improve our service

What Information We Collect

For Account Holders

  • Email address (for authentication and notifications)
  • Display name (optional)
  • Business information (if claiming a business)
  • Payment information (processed securely by Stripe)
  • Usage data (feedback counts, dashboard views)

For Feedback Submitters (Public Forms)

  • Feedback text and optional rating
  • Timestamp of submission
  • NO IP addresses or identifying information

Automatic Data

  • Browser type and version (for compatibility)
  • Device type (mobile, desktop, tablet)
  • Performance metrics (page load times)

How We Use Your Information

  • Provide the Service: Process feedback, generate insights, manage accounts
  • Communicate: Send transactional emails (trial notifications, billing updates)
  • Improve: Analyze usage patterns to enhance features
  • Security: Detect and prevent fraud or abuse
  • Legal: Comply with legal obligations

We never sell your data. We don't share personal information with third parties for marketing purposes.

Anonymous Feedback Protection

FeedB is designed with anonymity as a core principle. When someone submits feedback on a public form:

  • We do not log IP addresses
  • We do not use tracking cookies on feedback forms
  • We do not collect device fingerprints
  • We do not link submissions to user accounts

For internal feedback (e.g., team members giving feedback), submitters are notified if the context may reveal their identity.

Cookies and Tracking

We use cookies for:

  • Authentication: Keep you logged in to your account
  • Preferences: Remember your dashboard settings
  • Analytics (aggregate only): Understand how features are used

We do NOT use: Third-party advertising cookies or cross-site tracking on public feedback forms.

Email Communications

We send emails for:

  • Transactional: Account verification, trial notifications, billing receipts (cannot opt out)
  • Product Updates: New features and improvements (opt-out available)
  • Weekly Summaries: Feedback insights for business accounts (configurable)

You can manage email preferences in your account settings.

Third-Party Services

We use trusted third-party services:

  • Stripe: Payment processing (PCI-DSS compliant)
  • Supabase: Database hosting (encrypted)
  • Vercel: Application hosting and delivery
  • OpenAI: AI-powered sentiment analysis (feedback text only, no personal data)

All third-party processors are bound by strict data processing agreements.

Data Retention

  • Active accounts: Data retained while account is active
  • Deleted accounts: Personal data purged within 30 days
  • Feedback submissions: Retained for the account holder's use; deleted when account is deleted
  • Business claim verification documents: Uploaded documents (licenses, tax IDs, etc.) are encrypted and retained for 7 years to comply with audit and regulatory requirements, then securely deleted. This includes business licenses, tax identification documents, utility bills, and other verification materials submitted during the claim process.
  • Backup retention: Encrypted backups retained for 90 days for disaster recovery

Business Claim Document SecurityAll verification documents submitted during business claim processes are:

  • Encrypted end-to-end during upload
  • Stored with AES-256 encryption at rest
  • Accessible only by authorized compliance personnel
  • Never shared with third parties without legal obligation
  • Automatically purged after 7-year retention period

Your Rights

You have the right to:

  • Access: Request a copy of your data
  • Correction: Update incorrect information
  • Deletion: Request account and data deletion
  • Export: Download your feedback data in JSON format
  • Opt-out: Unsubscribe from marketing emails

Contact us at privacy@feedb.co to exercise these rights.

Children's Privacy

FeedB is not intended for users under 13 years of age. We do not knowingly collect personal information from children. If you believe we have inadvertently collected data from a child, please contact us immediately.

International Users

FeedB is operated from the United States. If you are located in the European Union or other regions with data protection laws:

  • By using FeedB, you consent to transfer of data to the United States
  • We comply with GDPR for EU users (legal basis: consent, contract, legitimate interest)
  • Enterprise customers can request Data Processing Agreements (DPA)

Security Measures

We protect your data with:

  • TLS/SSL encryption for all data transmission
  • AES-256 encryption for data at rest
  • Regular security audits and penetration testing
  • Role-based access controls for internal systems
  • Two-factor authentication (2FA) support for accounts

Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be notified via email and a notice in the app. Continued use after changes indicates acceptance of the updated policy.

Contact Us

Questions or concerns about privacy? Reach us at:

privacy@feedb.co

Or use our contact form.