aceriteBack to sign in

Trust and transparency

Privacy Policy

This policy explains how Acerite Reputation handles account, business, customer-feedback, and Google Business Profile information.

Last updated: 23 August 2026

1. Who this policy covers

This policy applies to Acerite Reputation websites, dashboards, NFC feedback flows, and related services (the “Service”). “Acerite,” “we,” “us,” and “our” refer to the operator of the Service. A business using Acerite remains responsible for its own customer notices, lawful instructions, and use of exported information.

2. Information we collect

  • Account information: name, work email, role, authentication records, and workspace memberships.
  • Business information: business and location details, operational settings, Google review links, and NFC touchpoint configuration.
  • Customer feedback: rating, optional comment, selected language, location, and submission time. Acerite does not require a customer name or contact number for the feedback flow.
  • Security and usage data: request time, device or browser information, security events, rate-limit signals, and IP-derived technical data needed to protect the Service.
  • Support information: messages and files a user chooses to send when requesting help.

3. Google Business Profile data

When an authorized business user connects Google Business Profile, Acerite requests the business.manage permission. Depending on the features the user chooses, we may access Google account and location identifiers, business profile fields, reviews and business replies, performance metrics, posts, media, and supported notification events. Acerite stores encrypted OAuth access and refresh tokens, tenant-scoped location mappings, and synchronization status.

Google user data is used only to provide and secure the user-requested Acerite features. We do not sell Google user data, use it for advertising, or transfer it to unrelated third parties. Service providers may process it only as necessary to operate the Service under confidentiality and security obligations. Human access is limited to user-requested support, security investigation, legal compliance, or operations where the data has been aggregated or de-identified.

Users can disconnect Google Business Profile from Acerite at any time. Acerite then revokes the available Google token and removes the active connection and mappings. Users may also revoke access from their Google Account permissions page. Our handling of Google data follows the Google API Services User Data Policy, including its Limited Use requirements.

4. How we use information

  • Provide authentication, workspaces, NFC feedback, reporting, and connected Google features.
  • Generate reply drafts while requiring a separate authorized approval before any supported Google write.
  • Protect accounts, prevent abuse, troubleshoot failures, and maintain audit records.
  • Respond to support requests and communicate essential service or security notices.
  • Meet legal obligations and enforce our agreements.

Acerite gives the same optional Google review handoff after every accepted rating. We do not hide the public-review option based on sentiment or sell customer feedback.

5. When information is shared

We share information only with infrastructure, hosting, database, email, analytics, security, and connected-platform providers needed to operate the Service; with a customer’s authorized workspace users; when required by law; to protect users or the Service; or with explicit consent. Providers receive only the information needed for their function and must protect it. We do not sell personal information.

6. Retention and deletion

We retain account, workspace, feedback, and operational records while the Service is active and for a reasonable period afterward for security, backup, dispute, audit, and legal purposes. OAuth tokens are retained only while the Google connection is active. Backup copies expire through controlled backup cycles. Where law permits, a verified user or business administrator may request access, correction, export, restriction, or deletion by contacting us.

7. Security and international processing

We use role-based access, encryption in transit, encryption for connected-account tokens, password hashing, short-lived sessions, rate limits, tenant isolation, backups, and audit controls. No online service can guarantee absolute security. Information may be processed in countries where our vetted providers operate, with contractual and technical protections appropriate to the processing.

8. Children, changes, and contact

The Service is for businesses and is not directed to children. We may update this policy as the Service or law changes and will publish the revised date here. Questions or privacy requests can be sent to team@acerite.com.

© 2026 Acerite
Privacy PolicyTerms of Serviceteam@acerite.com