Legal

Privacy Policy

Last updated: [DATE]

MyProperti ("we", "our", "the Service") is operated by [LEGAL ENTITY NAME], a company registered in India at [REGISTERED ADDRESS]. This policy explains what data we collect, why we collect it, and what you can ask us to do with it.

We serve two groups of people and this policy covers both:

1. Data we collect from Agents

When you create an account we collect your name, email address, mobile number, agency name and city. We store a hashed form of your password and never the password itself. If you subscribe to a paid plan, payment is handled by our payment provider — we do not store card details.

2. Data we access through the Meta APIs

When you connect a Meta ad account, you grant MyProperti specific permissions through Facebook Login. We access the following, and nothing beyond it:

PermissionWhat we accessWhy
ads_managementYour ad account ID, and the campaigns, ad sets, creatives and ads we create for youTo create, pause, resume and adjust the campaigns you configure in our app
ads_readImpressions, clicks, spend and lead counts for those campaignsTo show your performance dashboard and generate optimisation suggestions
leads_retrievalName, phone number, email and form answers submitted by people responding to your adsTo deliver enquiries to you within seconds of submission
pages_show_listThe list of Facebook Pages you administer, and the ID of the Page you chooseMeta requires a Page ID in order to create an ad creative

What we do not access. We do not access your personal Facebook profile, friends, photos, posts or private messages. We do not access ad accounts you have not explicitly connected. We do not use your advertising data to inform any other agent's campaigns, and we do not sell, rent or share it with third parties.

Your Meta access tokens are encrypted at rest using AES-256-GCM. Encryption keys are held in a managed secrets service, separate from our database. Tokens are deleted immediately when you disconnect an ad account.

3. Data we access through the Google Ads API

Where you connect a Google Ads account, we access your customer ID, the campaigns and ad groups we create on your behalf, and their performance metrics. The purpose and the limits are the same as described for Meta above. We do not access your Google account, Gmail, Drive or contacts.

4. Data we collect from Enquirers

When you submit an enquiry form — whether a Meta Lead Ad or a form hosted on myproperti.in — we collect the details you provide. This is typically your name, phone number, property requirement, budget range, preferred locality and purchase timeline.

This information is passed to the specific real estate agent whose advertisement you responded to, so that they can contact you about the property. We act as a data processor on that agent's behalf. Your details are visible only to that agent. They are not shared with other agents on our platform and are not sold to anyone.

5. How we use AI

MyProperti uses Anthropic's Claude API to write advertisement copy, suggest campaign changes, draft message templates and assign a priority score to enquiries.

When we generate advertisement copy or campaign advice, we send campaign settings and aggregate performance figures — not personal data. When we score an enquiry, we send the requirement details from the form. We do not send names, phone numbers or email addresses to the AI provider. Data sent to the AI provider is not used to train their models.

6. How long we keep data

DataRetained for
Agent accountWhile your subscription is active, then 90 days to allow reactivation
Enquirer details24 months from submission, or until the agent deletes them
Performance metrics13 months
Access tokensDeleted immediately on disconnect

7. Your rights

You can ask us for a copy of the personal data we hold about you, ask us to correct anything inaccurate, or ask us to delete it. Agents can disconnect any ad account at any time from Settings, which deletes the stored tokens immediately, and can export their enquiry data at any time.

To exercise any of these rights, write to hello@myproperti.in. We respond within 30 days. Step-by-step deletion instructions are on our data deletion page.

8. Service providers

We use the following providers, each bound by data processing terms:

ProviderPurposeLocation
[HOSTING]Application hosting and database[REGION]
AnthropicAI text generationUnited States
Meta PlatformsAdvertising delivery and lead captureGlobal
GoogleAdvertising deliveryGlobal
[PAYMENTS]Subscription billingIndia

9. Security

Data is transmitted over TLS 1.2 or higher. Access tokens and other credentials are encrypted at rest. Access to production systems is restricted to authorised personnel and is logged. We do not log access tokens, full phone numbers or raw webhook payloads.

10. Children

MyProperti is a business tool and is not directed at anyone under 18. We do not knowingly collect data from minors.

11. Changes to this policy

Any change will be posted on this page with an updated date above. We will email Agents about material changes at least 14 days before they take effect.

12. Contact us

[LEGAL ENTITY NAME]
[REGISTERED ADDRESS]
hello@myproperti.in