Privacy Policy

Last updated: April 6, 2026

1. Introduction

StarFlowApp ("we", "our", or "us") operates the website starflowapp.com and provides AI-powered Google Business Profile review management services. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

2. Information We Collect

We collect the following types of information:

  • Account information: When you sign in via Google OAuth, we receive your name, email address, and profile picture from Google.
  • Google Business Profile data: With your explicit authorization, we access your Google Business Profile reviews, including reviewer names, ratings, review text, and your existing replies.
  • Usage data: We collect information about how you use our service, including the number of AI-generated replies and feedback you submit.

3. Google User Data

StarFlowApp's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

  • We only access your Google Business Profile reviews and account information necessary to provide our service.
  • We use your Google data solely to read your business reviews and post AI-generated replies that you have reviewed and approved.
  • We do not sell, rent, or share your Google user data with any third parties for advertising, marketing, or any purpose unrelated to providing our service.
  • We do not use your Google user data for training AI models, analytics beyond our service, or any purpose other than displaying and responding to your reviews.
  • We store Google OAuth tokens securely in our database with encryption. Tokens are only used to make authorized API calls on your behalf.
  • You can revoke access at any time through your Google Account permissions at myaccount.google.com/permissions. Upon revocation, we will delete your stored tokens.

4. How We Use Your Information

  • To provide and maintain our service, including generating AI-powered review responses.
  • To authenticate your identity and manage your account.
  • To read your Google Business Profile reviews and post replies you have approved.
  • To enforce usage limits and prevent abuse of our service.
  • To communicate with you about service updates or respond to your inquiries.
  • To improve our service based on aggregated, anonymized usage patterns.

5. Data Storage and Security

We use Supabase as our database provider, which employs industry-standard security measures including encryption at rest and in transit. Your Google OAuth tokens are stored securely and are never exposed in client-side code. We implement row-level security policies to ensure users can only access their own data.

6. Third-Party Services

We use the following third-party services:

  • Google OAuth 2.0: For user authentication. We never see or store your Google password.
  • Google Business Profile API: To read and respond to your business reviews.
  • Anthropic (Claude AI): To generate review response suggestions. Review text is sent to the AI model to generate responses but is not stored by Anthropic for training purposes.
  • Vercel: For hosting our application.
  • Supabase: For database and authentication services.

7. Data Retention

We retain your account information and usage data for as long as your account is active. If you delete your account or revoke Google access, we will delete your personal data and stored tokens within 30 days. Anonymized, aggregated data may be retained for analytics purposes.

8. Your Rights

You have the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion of your data.
  • Revoke Google API access at any time.
  • Export your data in a portable format.

To exercise any of these rights, contact us at starflowapp.ai@gmail.com.

9. Children's Privacy

Our service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page and updating the "Last updated" date. Your continued use of the service after changes constitutes acceptance of the updated policy.

11. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us at: starflowapp.ai@gmail.com