Information we process
BrandBinder may process workspace names, staff users, dealer and rep companies, contacts, addresses, product catalogs, prices, hosted files, page forms, field-report responses and photos, submission time, IP address, device details, campaign activity, support messages, and application logs needed to operate the service.
How information is used
Information is used to provide authorized portal access, publish current product and asset data, route form submissions, send permitted dealer communications, provide support, improve reliability, and protect the service.
Brand and dealer ownership
Brands own their workspace data. Dealers own their claimed company profile data. Brand-specific pricing, notes, authorizations, campaign history, contacts, files, and reports stay scoped to the brand workspace and are not disclosed to another brand unless the customer explicitly authorizes that workflow.
No unrelated commercial use
BrandBinder's owner will not use workspace data for outside representation, prospecting, pricing intelligence, account targeting, or any unrelated business purpose. Access for support and service operation is limited to authorized purposes and recorded through the platform's activity and security controls.
Sharing
BrandBinder shares data only as needed to operate the service, route authorized brand-to-dealer workflows, process email or payment services, comply with legal requirements, or protect against abuse. BrandBinder does not sell dealer lists.
Service providers and subprocessors
BrandBinder currently uses Contabo infrastructure for production and recovery systems, Dropbox for an additional operational backup copy, and the BrandBinder mail service for platform email. PayPal, Apple, OpenAI, and customer-selected connectors apply only when their corresponding paid, app, assisted, or integration features are used. Current provider details are available during onboarding or security review.
International data and GDPR
Unless a customer agreement says otherwise, BrandBinder uses its standard production environment and does not promise a fixed physical data region. Customers with EU, UK, regulated-data, or other residency and transfer requirements must raise them before setup so support and any customer-specific agreement can be confirmed.
Campaign email
Campaign sending must respect consent, targeting, and unsubscribe requirements. Brands control campaign audiences and content; BrandBinder provides the sending and opt-out tooling.
Field reports
Field-report data is shared with the brand workspace that authorized the representative and may be visible to that brand's administrators. Submission metadata supports audit history, security, and reporting; it is not presented as continuous employee-location tracking.
Retention and deletion
Workspace data is retained while an account is active and needed to provide the service. Verified deletion and export requests are handled according to the applicable agreement, operational integrity needs, and legal obligations. Recovery copies expire through documented backup rotations; a fixed retention period for every application, security, billing, and support record is not currently promised.
Hosted files and apps
Hosted BrandBinder files are intended for dealer distribution. Customers should keep original source files because self-serve restore and Drive-style sync are not part of the current service. Paired Mac and iPhone apps may cache approved files locally for offline or faster access.
Security overview
Each BrandBinder workspace uses a separate tenant database on BrandBinder's shared production infrastructure. Access is permissioned and revocable, relevant activity and security events are logged, browser and app traffic uses HTTPS/TLS, and recovery backups include encrypted off-site copies. See the Trust & data security page for additional details.
Contact
Send privacy or data requests to privacy@brandbinder.app. Send suspected security issues to security@brandbinder.app. General questions can go to hello@brandbinder.app.