Privacy Policy
RentShield Last Updated: April 2026 Effective Date: April 2026
1. Who We Are
RentShield ("we," "us," "our") is operated by Jay Victor, sole proprietor, based in Pennsylvania, United States. RentShield is an AI-powered lease analysis tool for tenants. This Privacy Policy describes how we collect, use, store, and protect your personal information when you use our website at rentshield.net and related services (collectively, the "Service").
By using the Service, you agree to the collection and use of information as described in this policy.
2. Information We Collect
Account Information:
- Email address (used for account creation, login, and communications)
- Password (stored as a one-way bcrypt hash — we never store or have access to your plaintext password)
Lease Documents:
- PDF files you upload for analysis
- Text extracted from those PDFs for the purpose of AI analysis
- AI-generated analysis results (risk scores, flags, summaries, negotiation tips)
Usage Information:
- Analysis history (documents you have analyzed, timestamps, scores)
- Device and browser information collected automatically through standard web logs
Payment Information:
- All payment processing is handled by Stripe, Inc. We do not collect, store, or have access to your credit card numbers, bank account details, or other financial payment information. Please refer to Stripe's Privacy Policy at https://stripe.com/privacy for details on how your payment information is handled.
3. How We Use Your Information
We use your information for the following purposes:
- To provide the Service: Processing your lease documents through AI analysis, displaying results, and maintaining your analysis history.
- To manage your account: Authentication, email verification, password resets, and subscription management.
- To communicate with you: Sending verification emails, password reset links, service updates, and responding to support requests.
- To improve the Service: Understanding how the Service is used, diagnosing technical issues, and improving accuracy of lease analysis.
- To process payments: Managing your subscription tier through Stripe.
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
4. Third-Party Services
We share limited information with the following third-party services, solely for the purpose of operating the Service:
| Service | What We Share | Purpose |
|---|---|---|
| Anthropic (Claude AI) | Extracted text from your lease documents (no personal account information) | AI-powered lease analysis |
| Stripe | Your email address and subscription plan selection | Payment processing and subscription management |
| Resend | Your email address | Sending transactional emails (verification, password reset) |
| Railway | Application data stored in our database | Backend hosting and database infrastructure |
| Vercel | Standard web request data | Frontend hosting |
Each of these services has its own privacy policy governing how they handle data. We encourage you to review them.
5. Data Storage and Security
- Your data is stored in a PostgreSQL database hosted on Railway's infrastructure in the United States.
- Passwords are hashed using bcrypt with industry-standard cost factors.
- All data in transit is encrypted using HTTPS/TLS.
- API access is protected by secret keys and HMAC-signed authentication tokens.
- We implement rate limiting, CORS restrictions, and security headers to protect against common web attacks.
While we implement reasonable security measures, no method of electronic storage or transmission over the Internet is 100% secure. We cannot guarantee absolute security of your data.
6. Data Retention
- Account data: Retained for as long as your account is active.
- Lease documents and analysis results: Retained for as long as your account is active. We do not retain lease text after analysis is complete beyond what is stored in your analysis history.
- Deleted accounts: When you delete your account, we will delete your personal information, uploaded documents, and analysis history within 30 days. Some data may persist in encrypted backups for up to 90 days before being permanently removed.
7. Your Rights
You have the right to:
- Access your data: View the personal information we hold about you through your account dashboard.
- Delete your data: Request deletion of your account and all associated data by contacting us at support@rentshield.net. Account deletion is permanent and cannot be reversed.
- Correct your data: Update your account information through your account settings.
- Export your data: Request a copy of your analysis history by contacting us at support@rentshield.net.
- Unsubscribe: Opt out of non-essential emails at any time using the unsubscribe link in our emails.
8. Cookies
We use essential cookies for authentication and session management through our authentication provider (Auth.js). These cookies are necessary for the Service to function and cannot be disabled. We do not use advertising or tracking cookies.
9. Children's Privacy
The Service is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us and we will delete it.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on our website and updating the "Last Updated" date. Your continued use of the Service after changes are posted constitutes your acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy or your personal data, contact us at:
Email: support@rentshield.net Website: https://rentshield.net