Privacy Policy
Last updated July 16, 2026
This policy describes what information Dealflix (dealflix.ai) collects, how we use it, and the choices you have. The short version: we collect what we need to run a deal platform for brokers and investors, we don't sell your data, and connections to outside services like Airtable are read-only, initiated by you, and revocable at any time.
1. Information we collect
Account information — name, email, password (stored hashed), role (broker, buyer, tenant), and for brokers a real estate license number used for verification.
Profile and content— anything you choose to publish: profile details, photos, listings, rent rolls, closed-deal track records, comments, messages, and preferences such as a buyer's buy-box.
Usage information — standard logs and product analytics (pages viewed, actions taken, device/browser type) used to keep the service secure and improve it.
2. How we use it
To operate the platform: showing broker storefronts and deals, delivering follows/notifications/messages, verifying broker licenses, processing payments through our payment provider, preventing abuse, and improving the product. We send transactional email (and marketing email you can opt out of).
3. Connected services (Airtable, Google)
You can optionally connect your own Airtable or Google account to import data — for example pulling a rent roll from one of your Airtable bases into a deal instead of retyping it. For these connections:
You authorize them explicitlyvia the provider's own consent screen (OAuth). We request read-only scopes — for Airtable, permission to read records and base schema. We never edit, add, or delete anything in your Airtable bases or Google Sheets.
We fetch data only when you trigger a sync.The rows you import become part of the deal you attached them to, where you can review and edit them before publishing. We don't crawl or sync your bases in the background.
Access tokens are stored server-side, are never exposed to other users or to the browser, and are used solely to perform the syncs you request.
You can disconnect at any time from the sync panel (or by revoking access in your Airtable or Google account settings). Disconnecting deletes our stored tokens for that service. Data you already imported into a deal stays with that deal until you edit or delete it.
4. What we share
Content you publish is visible according to its audience (public deals are public; private deals are gated). We share data with service providers who run the platform for us — hosting and database (Supabase), payments and identity verification (Stripe), maps (Google), email delivery — under their own privacy commitments. We disclose information if required by law. We do not sell personal information.
5. Retention and deletion
We keep your data while your account is active. You can delete your content, disconnect connected services, or ask us to delete your account entirely — contact usand we'll remove your personal data except what we must keep for legal or security reasons.
6. Security
Data is encrypted in transit, access to production systems is restricted, and per-user authorization rules (row-level security) gate every read and write in our database. No system is perfectly secure — if we learn of a breach affecting your data we will notify you.
7. Changes and contact
We may update this policy as the product evolves; material changes will be posted here with an updated date. Questions or requests? Contact us.