Privacy Policy
Effective March 27, 2026
What This Is
BayReady is a compliance tracking tool for auto repair shops. This policy explains what data we collect when you use BayReady, how we use it, and your rights over it. We keep it plain — no legal jargon where plain English works.
What We Collect
When you create an account and use BayReady, we collect:
- Your email address (used to send your magic sign-in link and compliance reminders)
- Shop name and state (used to load state-specific compliance rules)
- Technician names and email addresses you add to your shop
- Equipment names and descriptions you add
- Compliance item types, expiration dates, and notes you enter
- Documents you upload (license PDFs, inspection certificates, etc.)
- Login timestamps and compliance item creation events (used to detect churn risk and improve the product)
- Billing information — handled entirely by Stripe; BayReady never sees your card number
We do not collect government-issued IDs, Social Security Numbers, or any information beyond what you explicitly enter.
How We Use It
We use your data solely to provide and improve BayReady:
- Sending compliance reminder emails (90, 60, and 30 days before expiration)
- Displaying your compliance dashboard and status badges
- Processing subscription payments through Stripe
- Sending dunning emails if a payment fails
- Improving the product based on how features are used
We do not sell your data. We do not use your data for advertising. We do not share it with third parties except the service providers listed below.
Third-Party Services
BayReady uses the following services to operate. Each has its own privacy policy:
- Supabase — database and file storage, hosted on AWS US East
- Stripe — payment processing; Stripe stores your billing details, we do not
- Resend — transactional email delivery (reminders, magic links, dunning)
- Vercel — web hosting and deployment
Data Retention
We retain your data for as long as your account is active. If you cancel and your subscription expires, your data remains accessible for 90 days in case you return. After 90 days of an inactive account with no subscription, we will delete your shop data upon written request to support@getbayready.com.
Uploaded documents are stored in Supabase Storage and deleted when you delete the associated compliance item or close your account.
Your Rights
You can:
- Access all your data through the BayReady app at any time
- Delete individual compliance items, documents, and technicians from within the app
- Request a full export of your data by emailing support@getbayready.com
- Request deletion of your account and all associated data by emailing support@getbayready.com
Security
Your data is protected by row-level security — each shop can only access its own records. We use HTTPS for all data in transit. Supabase encrypts data at rest. Uploaded documents are stored in a private bucket with signed URLs required for access.
No system is perfectly secure. If you believe your account has been compromised, contact us immediately at support@getbayready.com.
Cookies
BayReady uses a single session cookie to keep you signed in. We do not use tracking cookies, advertising cookies, or third-party analytics cookies.
Changes to This Policy
If we make material changes to this policy, we will notify you by email before the changes take effect. Continued use of BayReady after that date constitutes acceptance of the updated policy.
Contact
Questions about this policy: support@getbayready.com