Privacy Policy
Last updated: [INSERT DATE]
This Privacy Policy explains how VilliQ ("we", "us") collects, uses, stores, and protects information when you use our property management platform, whether as a landlord/property manager ("Customer") or as a tenant whose information a Customer has entered into the platform ("Tenant").
1. Information We Collect
We collect the following categories of information:
- Account information: name, email address, phone number, and password (stored as a hash, never in plain text) when a Customer registers.
- Organization information: company/landlord name, business address, contact details, and branding assets (logo, brand color) a Customer provides.
- Tenant information: names, phone numbers, email addresses, and lease/tenancy details a Customer enters about their tenants. Customers, not VilliQ, are responsible for having a lawful basis to collect and enter this information.
- Property and financial records: property/unit details, rent amounts, invoices, payment records, and payment references processed via our payment partner (Paystack).
- Communications: emails we send on a Customer's behalf (invoices, receipts, reminders) and the content of support requests.
- Usage data: log data such as IP address, browser type, and pages visited, including access logs recorded when a shared document link (e.g. a receipt or invoice link) is opened.
2. How We Use Information
- To provide, operate, and maintain the platform.
- To generate and deliver invoices, receipts, and payment reminders by email and/or WhatsApp.
- To process subscription payments via our payment processor, Paystack.
- To send account-related emails (verification, password reset, billing notices).
- To monitor, secure, and improve the platform, including detecting and preventing fraud or abuse.
- To comply with legal obligations.
3. Third Parties We Share Data With
We use the following third-party service providers to operate the platform. Each processes data only as needed to provide their service to us:
- Supabase — database hosting, file storage, and authentication.
- Paystack — subscription payment processing. We do not store full payment card details ourselves.
- Our email delivery provider (SMTP) — for sending transactional emails.
- Any WhatsApp, SMS, or similar messaging provider a Customer configures for tenant notifications.
We do not sell personal information to third parties.
4. Data Storage and Security
Data is stored using Supabase's infrastructure. We take reasonable technical and organizational measures to protect information, including encryption in transit (HTTPS), access controls, and role-based permissions within the platform. No method of storage or transmission is 100% secure, and we cannot guarantee absolute security.
5. Data Retention
We retain account and transaction data for as long as an account is active and as needed to comply with legal, accounting, or reporting obligations. Customers may request deletion of their organization's data, subject to records we are legally required to retain (e.g. financial transaction records).
6. Your Rights
Depending on your jurisdiction, you may have rights to access, correct, export, or request deletion of your personal information. Tenants whose information has been entered by a Customer should contact that Customer directly, as they control the tenant records; Customers may contact us using the details below.
7. Children's Privacy
VilliQ is not directed at children and is not knowingly used to collect information from children.
8. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email or an in-app notice.
9. Contact Us
Questions about this policy can be sent to [INSERT SUPPORT EMAIL].