Privacy Policy
HomeSavvy is committed to protecting your privacy. This policy explains what we collect, how we use it, when we share it, and the choices you have. It applies to homesavvydeals.com and related services.
Scope
This policy covers information collected when you visit our site, create an account or sign in (e.g., with Google), submit product links, interact with features, or contact us. It also covers information we receive from analytics and service providers we use to operate the service.
Information We Collect
- Account and Authentication Data. If you create an account or sign in with a provider like Google, we may receive your email address, display name, profile image (if available), and a provider/user ID. We use Supabase to store account metadata (e.g., email, username). We do not store passwords in our application tables; authentication secrets are securely handled by Supabase.
- Content You Submit. Product links, preferences, feedback, and other content you provide while using the service.
- Device and Usage Data. Pages viewed, clicks, session duration, approximate location, device/browser type, and similar usage data. We use Google Analytics 4 (GA4), PostHog, and—subject to consent—Cookiebot and (planned) Microsoft Clarity to help us understand how the site is used.
- Cookies and Similar Technologies. We use cookies that are strictly necessary to operate the site and (with your consent) analytics and preference cookies. Cookiebot manages consent and cookie categories.
Google User Data (Required Disclosures)
When you choose to sign in with Google, our application may access limited Google user data via Google APIs, in accordance with the Google API Services User Data Policy.
- Data Accessed. Basic profile information permitted by the scopes you approve (e.g., email address, name, profile image) and an ID necessary to authenticate you. We do not request access to your Gmail, Drive, Calendar, or other Google data beyond basic profile/identity info.
- Data Usage. We use Google user data only to authenticate you, create and maintain your account, personalize your experience, and provide support. We do not use Google user data for advertising or to build profiles unrelated to the app’s core functionality.
- Data Sharing. We do not sell Google user data. We share it only with service providers (processors) that help us operate the service (e.g., hosting, authentication, analytics) under confidentiality and data protection agreements, and only for the purposes described here.
- Storage & Protection. Google user data is stored securely with our cloud providers. We use transport-layer security (HTTPS), encryption at rest where supported, access controls, and least-privilege practices. Tokens, if used, are stored and transmitted securely.
- Retention & Deletion. We retain Google user data for as long as your account is active or as needed to provide the service, then delete or anonymize it within a reasonable period unless a longer retention period is required by law. You may request deletion at any time (see “Your Choices”).
- Revoking Access. You can revoke this app’s access to your Google account at any time via your Google Account settings (Security → Third‑party access). Revoking access may prevent you from signing in with Google.
How We Use Information
- Provide, maintain, and improve the service and features you use.
- Authenticate users and secure accounts (including fraud prevention).
- Respond to support requests and communicate service updates.
- Analyze aggregated usage to improve performance and usability.
- Comply with legal obligations and enforce our terms.
When We Share Information
- Service Providers (Processors). We use trusted vendors solely to operate our service: hosting and database (e.g., Supabase for data storage and authentication), analytics (GA4, PostHog), consent management (Cookiebot), and session/UX analytics (Microsoft Clarity, planned). They process data on our behalf under contractual obligations.
- Legal and Safety. We may disclose information if required by law or to protect rights, safety, and the integrity of our services.
- Business Transfers. In a merger, acquisition, or asset sale, we may transfer information as permitted by law and will provide notice where required.
We do not sell your personal information.
Cookies and Consent
We use Cookiebot to display a consent banner, classify cookies, and respect your choices. You can change or withdraw your consent at any time via the cookie settings link typically available in the site footer. Cookie categories include strictly necessary, preferences, and analytics.
Data Storage, Security, and International Transfers
We store data with reputable cloud providers and protect it using administrative, technical, and physical safeguards, including encryption in transit (HTTPS) and access controls on a need‑to‑know basis. Where data is processed outside your country, we rely on appropriate safeguards as required by applicable law.
Data Retention
- Account data is retained while your account is active. If you request deletion, we delete or anonymize within 30 days, subject to legal holds or backup retention.
- Analytics data is retained in aggregated form per vendor defaults (e.g., GA4/PostHog typically 14 months, configurable).
- Server logs and backups are retained for a limited period to ensure security and reliability.
Your Choices and Rights
- Access, Correction, Deletion. You can request a copy of your data, ask us to correct it, or delete it.
- Revoke Google Access. Manage or revoke access via your Google Account settings (Security → Third‑party access).
- Cookie Preferences. Manage consent via the Cookiebot banner or cookie settings link.
- Email Preferences. Opt out of non‑essential emails via the unsubscribe link where applicable.
Children’s Privacy
Our service is not directed to children under 13 (or the minimum age in your jurisdiction). We do not knowingly collect personal information from children. If you believe a child has provided personal data, please contact us so we can delete it.
Third‑Party Information
- Google API Services User Data Policy: developers.google.com/terms/api-services-user-data-policy
- Google Analytics: policies.google.com/privacy
- PostHog: posthog.com/privacy
- Cookiebot: cookiebot.com/en/privacy-policy/
- Supabase: supabase.com/privacy
Contact Us
If you have questions or requests related to privacy, data access, or deletion, please contact us.