Template — review with legal counsel before launch.
This document is a starting point, not legal advice. Have a qualified attorney review and adapt it for your business before you rely on it.
Who we are
Leak Autopilot is a product of Practical Systems, operated by Wes Sander ("we," "us," "Leak Autopilot"). The service helps local service businesses recover revenue lost to missed calls, slow lead response, stale quotes, no-shows, unpaid invoices, and missing review requests by sending follow-up text messages and emails to the business's own customers. You can reach us about privacy at agent@practicalsystems.io.
This policy covers the marketing website and the Leak Autopilot application at app.leakautopilot.com.
The two kinds of people in this policy
There are two distinct groups whose data we handle, and the rules differ:
- Subscribers. The business owners and staff who sign up for and use Leak Autopilot. We are the controller of subscriber data.
- Customer contacts. The end customers of a subscriber's business (the people who called, requested a quote, booked a job, or owe an invoice). The subscriber uploads or connects this data, decides how it is used, and is the controller of it. We act as a processor handling it on the subscriber's behalf and under their instructions.
What we collect
Business profile and account data (subscribers)
- Name, email address, and password or authentication identifiers (via Clerk).
- Business name, trade, location, timezone, and business contact details.
- Billing details processed through Stripe (we do not store full card numbers).
- Your settings: message templates, automation rules, quiet hours, sending caps, and similar configuration.
Customer-contact data (uploaded or connected by subscribers)
- Customer names.
- Customer phone numbers and email addresses.
- Job, lead, quote, appointment, and invoice details the subscriber provides so we can detect leaks and draft the right follow-up.
- Message history and delivery status for the texts and emails sent on the subscriber's behalf, including replies such as STOP and HELP.
Usage and technical data
- Log data such as IP address, browser type, pages viewed, and timestamps.
- Essential cookies and similar technology needed to keep you signed in.
- Operational metrics about how the application is used so we can keep it working.
How we use data
- To provide the service: detect leaks, estimate value, draft messages, and send the texts and emails a subscriber approves or automates.
- To authenticate users, secure accounts, and prevent abuse.
- To process subscriptions, trials, and billing.
- To provide support and respond to your requests.
- To measure results (recovered revenue, response time) and improve the product.
- To comply with law and enforce our terms.
We do not sell personal information, and we do not use customer-contact data to train external advertising or marketing models. Customer-contact data is used only to deliver the service to the subscriber who provided it.
Subprocessors
We rely on a small set of trusted vendors to run the service. Each processes data only as needed to provide their function:
| Subprocessor | What it does |
|---|---|
| Clerk | User authentication and account management. |
| Stripe | Subscription billing and payment processing. |
| Twilio | Delivery of SMS text messages to customer contacts. |
| Resend | Delivery of email messages to customer contacts. |
| Neon (Postgres) | Hosted database where application data is stored. |
| Vercel | Application and website hosting and content delivery. |
We may update this list as the service evolves. Material changes will be reflected on this page.
How we share data
We share personal data only in these situations:
- With the subprocessors above, to operate the service.
- With the subscriber who controls the relevant customer-contact data (for customer data, the subscriber is the source and the audience).
- When required by law, legal process, or to protect rights, safety, and security.
- In a business transfer (such as a merger or acquisition), subject to this policy.
Data retention
We keep account and business-profile data for as long as your account is active. After you cancel, we retain account data for a limited wind-down period and then delete or anonymize it, except where we must keep records to meet legal, tax, or accounting obligations.
Customer-contact data is retained on the subscriber's instructions for as long as their account is active. Subscribers can delete customer records from within the app. On account termination, customer-contact data is deleted or returned within a reasonable period unless retention is legally required.
Your rights and choices
Depending on where you live, you may have the right to access, correct, delete, or export your personal data, to object to or restrict certain processing, and to withdraw consent. To exercise any of these, email agent@practicalsystems.io.
If you are a customer contact who received a message from a business using Leak Autopilot and want your data removed, please contact that business directly, since they control their customer records. You can also reply STOP to any text to stop receiving messages, and you may contact us and we will route your request to the appropriate subscriber.
Security
We use encryption in transit, access controls, and reputable infrastructure providers to protect data. No method of transmission or storage is completely secure, so we cannot guarantee absolute security, but we work to protect your information and to address issues promptly.
Children
Leak Autopilot is a business tool and is not directed to children. We do not knowingly collect personal data from anyone under 16.
International users
We operate from the United States and process data there. If you access the service from outside the United States, you understand your data will be processed in the United States.
Changes to this policy
We may update this policy from time to time. When we do, we will revise the "Last updated" date above, and material changes will be communicated through the service.
Contact
Questions about privacy? Email agent@practicalsystems.io. [PLACEHOLDER — add business mailing address before launch.]