Privacy Policy
Last updated: April 3, 2026
NvrSlow ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard information when you use the NvrSlow platform ("the Service").
1. Information We Collect
Information from Business Owners (Detailers)
When you create a NvrSlow account, we collect:
- Name and email address
- Password (stored in hashed form; we never store plaintext passwords)
- Business name, address, and contact information
- Stripe account information for payment processing (managed by Stripe; we do not store your full bank account or card details)
Information from End Consumers (Your Customers)
When your customers interact with your NvrSlow booking page or are added to your client list, we may collect:
- Name, phone number, and email address
- Home or service address
- Vehicle information (make, model, year, color)
- Booking history and appointment details
- Before-and-after photos uploaded by the detailer
Guarantee and Referral Data
To operate the 10-booking guarantee and referral program, we track:
- Your guarantee start date and booking count toward the guarantee
- Whether a guarantee refund was issued and the free month period
- Referral relationships (who referred whom)
- Referral commission status (pending, active, or churned)
Automatically Collected Information
When you use the Service, we may automatically collect:
- IP address
- Browser type and version
- Device information
- Pages visited and features used within the platform
- Usage patterns and interaction data
2. How We Use Your Information
We use the information we collect to:
- Provide the Service: Operate the platform, manage bookings, process invoices, and maintain client records
- Send SMS notifications: Deliver appointment reminders, booking confirmations, and other transactional messages on your behalf
- Power AI features: Generate social media captions and review response drafts using the specific information you provide (service details, review content). This data is sent to our AI provider to generate responses and is not anonymized before processing
- Process payments: Facilitate billing for subscriptions and payment collection through Stripe Connect
- Improve the Service: Analyze usage patterns to fix bugs, improve performance, and develop new features
- Communicate with you: Send account-related notifications, updates, and support responses
3. Third-Party Services
NvrSlow relies on trusted third-party service providers to operate. These providers only receive the data necessary to perform their specific function:
- Supabase: Database hosting, authentication, and file storage. Your business data, client records, and uploaded files are stored in Supabase infrastructure.
- Stripe: Payment processing for subscriptions and Stripe Connect for customer payments. Stripe receives payment-related information in accordance with their privacy policy.
- Twilio: SMS message delivery. Twilio receives phone numbers and message content to deliver notifications on your behalf.
- Anthropic: AI-powered features. Data sent to Anthropic for AI processing is used solely to generate responses and is not used to train AI models.
- Vercel: Application hosting and deployment. Vercel processes requests and may collect standard server logs.
Each third-party provider is governed by their own privacy policy and terms of service. We encourage you to review them.
4. SMS Privacy
When SMS features are used, the following data is shared with Twilio for message delivery:
- Recipient phone number
- Message content (e.g., appointment details, reminders)
- Sender identification information
Recipients can opt out of SMS messages at any time by replying STOP to any message. Once opted out, no further SMS messages will be sent to that number unless the recipient re-consents. Message and data rates may apply depending on the recipient's mobile carrier and plan.
5. Data Sharing
We do not sell your personal information. We do not share your data with third parties for their own marketing purposes.
We share data only with the third-party service providers listed in Section 3, and only to the extent necessary for them to perform their functions. We may also disclose information if required by law, court order, or governmental regulation, or if necessary to protect the rights, safety, or property of NvrSlow, our users, or the public.
6. Data Retention
- Business account data: Your business information, settings, and account data are retained for as long as your account is active, plus 30 days after account cancellation to allow for data export or account reactivation. After this 30-day period, your data may be permanently deleted.
- Consumer data (your customers): Client records, booking history, and associated data are retained for as long as the business account that created them remains active. When a business account is deleted, associated consumer data is also deleted following the 30-day retention period.
- Automatically collected data: Server logs and usage data are retained for up to 90 days for debugging and analytics purposes.
7. Your Rights
Depending on your location, you may have certain rights regarding your personal information under state privacy laws (such as the California Consumer Privacy Act):
- Right to know: You can request a copy of the personal information we have collected about you.
- Right to delete: You can request that we delete your personal information, subject to certain legal exceptions.
- Right to opt out of SMS: You can opt out of SMS communications at any time by replying STOP or contacting us.
- Right to non-discrimination: We will not discriminate against you for exercising your privacy rights.
To exercise any of these rights, please contact us at support@nvrslow.com. We will respond to verified requests within 45 days.
8. Cookies
NvrSlow uses session cookies that are essential for authentication and maintaining your logged-in state. These cookies are strictly necessary for the Service to function and cannot be disabled.
We do not use tracking cookies or third-party advertising cookies. If Vercel Analytics is enabled, it may use privacy-friendly, cookie-less analytics to collect aggregate usage data. No personally identifiable information is collected through analytics.
9. Children's Privacy
NvrSlow is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete that information promptly. If you believe a child under 13 has provided us with personal information, please contact us at support@nvrslow.com.
10. Security
We take the security of your data seriously and implement industry-standard measures to protect it:
- Encryption in transit: All data transmitted between your browser and our servers is encrypted using TLS/SSL.
- Database security: We use Row Level Security (RLS) policies to ensure that users can only access their own data.
- Password security: Passwords are hashed using industry-standard algorithms. We never store passwords in plaintext.
- Access controls: Access to production systems and data is restricted and monitored.
While we strive to protect your information, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security but are committed to promptly addressing any security incidents.
11. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will provide at least 30 days' notice by email or through a prominent notice within the Service before the changes take effect. Your continued use of NvrSlow after the updated policy takes effect constitutes acceptance. We encourage you to review this policy periodically.
12. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at:
Email: support@nvrslow.com