Privacy Policy
Effective: 2026-07-21 · Version 2026-07-21
This Privacy Policy describes what data TrailerShopperAI ("TSAI," "we," "us") collects, why, who we share it with, and the rights you have over it. This Policy applies to dealers who hold accounts with us and — as described in Sections 1 and 6 — to members of the public whose data reaches us through a dealer's connected accounts or website features, and is incorporated by reference into our Terms of Service.
1. Who is responsible for your data
TSAI acts as a data controller for account information you provide directly to us, and as a data processor for inventory data, photographs, voice samples, and other content you upload for us to process on your behalf. Where a trailer buyer messages, comments on, or submits a lead to one of your connected accounts or to a TSAI feature embedded on your website, you are the controller of that buyer's personal data and we act as your processor; the social platform the message originated on is a separate controller for its own processing.
2. Data we collect
From you, directly
- Account info: name, email, password (hashed and salted using industry-standard algorithms — we never store plaintext), dealership business name.
- Contact info: phone number, business address (optional, for local SEO and dealer panel features).
- Inventory data: trailer titles, descriptions, prices, specs, status, photos.
- Branding: logos, color palette, default voice/tone preferences.
- Voice samples (optional, only if you opt into voice cloning): audio files of speech you upload, used to clone a voice via ElevenLabs and tied to your dealer account.
- Messages you compose, manually or with AI assistance, for distribution or inbox replies.
Automatically, when you use the Service
- Authentication and session data (first-party session cookies set on our API domain).
- Audit-log entries: timestamp, IP address, user-agent, and event type for legally significant actions (subscription, acceptance of policies, video generation, distribution events). See our No-Refund Policy for what this enables.
- Server logs: request paths, response codes, and diagnostic and performance data. These contain IP and may contain query strings.
- Generated outputs: AI-produced videos, voiceovers, music tracks, captions, and AI reply drafts. Stored in our private object storage.
- Distribution metadata: which video you posted, which platforms, scheduling info, and lifecycle events returned by the distribution provider.
From third parties
- Our payment processor: subscription status, payment events, and a payer identifier. We never see card numbers or bank-account numbers.
- Distribution provider: post status (published, failed), inbound DMs, comments, reviews, and analytics aggregated from connected social platforms.
- TrailerShopper.com (if integrated): listing data and dealer pairing info.
3. How we use your data
- Operate and maintain the Service — generate videos, distribute posts, surface inbox messages, render dashboards.
- Process payments through our payment processor and reconcile billing with our records.
- Maintain the immutable audit log required by our No-Refund Policy and for fraud / dispute resolution.
- Improve the Service — analyze aggregated usage patterns, debug errors, and refine AI prompt templates. We do not train shared AI models on your individual voice clones, customer content, or inventory data.
- Send transactional emails (subscription receipts, distribution failure alerts, account changes), a short onboarding series when you create an account, and a weekly performance digest. Every non-transactional email carries an unsubscribe link, and you can opt out of any series at any time from your account's email settings.
- Comply with legal obligations (tax records, subpoenas, valid legal process).
4. Lawful basis (where applicable)
For dealers and end users in jurisdictions with formal lawful-basis requirements (e.g., GDPR), we process personal data on the following bases: (a) contract — to provide the Service you signed up for; (b) legitimate interests — to operate, secure, and improve the Service, including audit logging and fraud prevention; (c) legal obligation — to comply with tax, accounting, and regulatory requirements; (d) consent — for optional features such as voice cloning, where consent can be withdrawn by removing the cloned voice from your dashboard.
5. Third-party processors and recipients
We share your data with the following processors strictly to the extent needed for each function:
- Cloud hosting and infrastructure providers (United States) — hosting, content delivery, edge networking, DNS, and managed database, cache, and queue services. Your data may transit these providers' global networks.
- Cloud object-storage providers (United States) — storage of generated videos, voiceovers, music, and uploaded photos.
- Anthropic, PBC — AI text generation (selling angles, captions, ad copy, AI reply drafts), including drafting replies to the messages and comments you receive on connected accounts.
- ElevenLabs, Inc. — voice synthesis, voice cloning, music generation. Voice samples you upload are processed by ElevenLabs to produce a clone tied to your account.
- HeyGen (Movio Lab, Inc.) — AI presenter video generation and, where you create your own presenter, voice cloning. Photographs of a person that you upload to build a presenter are processed by HeyGen to produce a presenter tied to your account.
- AI media generation providers (United States) — AI image, video, music, and real-time interactive avatar generation for ad creatives, video effects, background music, and Sales Agent sessions, including the conversation content exchanged during a live avatar session.
- Distribution provider — outbound posting to social platforms (Facebook, Instagram, TikTok, YouTube, X, LinkedIn, Pinterest, Threads, Reddit, Bluesky, Snapchat, WhatsApp, Telegram, Google Business) and inbound webhook events from those platforms.
- Meta Platforms, Inc. (Facebook, Instagram, WhatsApp, Threads) — when you connect a Meta asset directly to TSAI, we exchange publishing, comment, messaging, insights, and product/vehicle-catalog data with Meta's Graph, Instagram, WhatsApp Business, Threads, and Commerce APIs on your behalf. See Section 6 for the full detail Meta requires us to disclose.
- Payment processor (United States) — payment processing and subscription management. We never see your full card or bank-account numbers.
- Transactional email provider (United States) — transactional, onboarding, and digest email delivery, and processing of buyer emails sent to an inbound address we issue you.
Each processor receives only the data its function requires, is bound by a written agreement to process it solely on our instructions, and is not permitted to use it for its own purposes. On request we will identify the specific processors to whom your personal data has been disclosed.
We do not sell your personal data, and we do not share it with advertising networks. We may disclose data in response to a subpoena, court order, or other valid legal process; in connection with a payment dispute via the audit-log mechanism described in our No-Refund Policy; or in connection with a merger, acquisition, financing, or sale of assets, with notice to affected dealers.
6. Meta Platform data (Facebook, Instagram, WhatsApp, Threads, Marketplace)
When you connect a Facebook Page, an Instagram professional account, a WhatsApp Business number, a Threads profile, or a product/vehicle catalog to TSAI, you authorize us — through Meta's official Graph, Instagram, WhatsApp Business, Threads, and Commerce/Catalog APIs — to access and process the following on your behalf. In this role TSAI is a Meta Technology Provider: we act for you, the connected business, and you remain responsible for your Meta assets and for the people who interact with them.
- Page & profile data — your Page and connected-account identifiers, names, access tokens, follower/profile metadata, and the account settings we need to publish and manage on your behalf.
- Content we publish — trailer videos, Reels, Stories, photos, carousels, feed posts, and Threads posts we create at your direction.
- Comments & engagement — comments and reactions on your Page, Instagram, and Threads content, which we read and — only where you enable it — reply to, hide, or delete on your behalf.
- Messages — the content of Messenger and Instagram Direct conversations and WhatsApp messages exchanged between you and the people who contact you, including sender names, message text, and phone numbers (WhatsApp). These are surfaced in your TSAI inbox and, where you enable automation, answered by our AI on your behalf.
- Insights & analytics — the account- and media-level metrics Meta returns for your connected assets.
- Catalog data — the trailer/vehicle inventory you sync to a Meta product or vehicle catalog for Marketplace, Shops, and catalog ads.
Two groups of people are covered by this section: (a) you, the dealer who connects the assets, and (b) the trailer buyers and other members of the public who comment on, message, or otherwise interact with your connected accounts — whose data flows through TSAI solely so that we can surface it to you and act on your behalf.
We use Meta-sourced data only to operate the features you enable — publishing, comment / DM / WhatsApp management and AI-assisted replies, catalog and Marketplace listings, and analytics. We do not use it to advertise to third parties, we do not sell it, and we do not use it to train or fine-tune AI models or to build advertising or interest profiles. Meta Platforms, Inc. is both a source of this data and a subprocessor; message content routed through our AI features may also be processed by the AI subprocessors listed in Section 5 for the sole purpose of drafting the reply you requested.
You can disconnect any Meta asset at any time from Settings → Connections, which destroys the credentials we hold for it and stops all further access by TSAI. You can additionally revoke the app's permissions from your Facebook settings. To request deletion of Meta-sourced data we hold, disconnect the asset and email …, or use the mechanism described at trailershopper.ai/legal/data-deletion. Removing the TSAI app from your Facebook settings also sends us an automated data-deletion request, which we log and action. If you are a member of the public who messaged or commented on a dealer's connected account and you want the data we hold about you deleted, email … — you do not need a TSAI account, and we will action your request without routing you through the dealer.
7. International data transfers
We are a US-based service. If you access the Service from outside the United States, your data may be transferred to and processed in the United States and other countries where our processors operate. By using the Service you consent to those transfers. Where required by law (e.g., GDPR), we rely on standard contractual clauses or other approved transfer mechanisms.
8. Data retention
- Account data — retained while your account is active. On a validated deletion request we archive the account and remove the personal information attached to it within 30 days. The remaining de-identified business record is retained for 7 years so that we can meet tax, accounting, and legal-claim obligations, and is then eligible for permanent deletion.
- Audit log entries — retained for as long as we may need to establish, exercise, or defend a legal claim, including billing and chargeback disputes. The audit log is the legal record of policy acceptance and billing events, so it is retained under the legal-claims exemption rather than deleted on request.
- Generated videos and audio — retained in non-public storage while your account is active, and retained after closure as part of the business record. They are produced from the inventory and branding you supplied rather than from personal information; if a video features an identifiable person, tell us and we will remove it.
- Voice clones and presenters — retained while you keep them in your dashboard. Deleting one removes it from your account immediately and we request deletion from the provider that holds it. Where a provider offers no deletion endpoint, the underlying sample may persist with that provider; contact us and we will pursue removal.
- Meta Platform data — access tokens are held encrypted only while the asset is connected and are destroyed outright when you disconnect it or request deletion; we never retain a credential. Messages, comments, and mentions sourced from Meta stay visible in your inbox while the connection is active. On a validated deletion request we sever the connection and, within 30 days, destroy the personal information in that material — the sender's name, contact details, platform user id, and the message text itself. What remains is a de-identified record (that an exchange happened, when, and on which platform) which can no longer be linked to an individual; it is retained for 7 years for legal-claim purposes. Aggregate audience insights contain no personal information and are retained. Catalog data is a projection of your current inventory and is removed from Meta on the next feed refresh after you delete a trailer or mark it sold.
- Operational logs — short-lived and kept only for a limited period for operational and security purposes; they are not retained for long-term analysis.
- Payment records — retained 7 years to satisfy tax and accounting obligations.
9. Your rights
Depending on your jurisdiction, you may have the right to:
- access the personal data we hold about you;
- correct inaccurate data;
- delete data, subject to legal retention obligations (audit log, payment records);
- export your data in a portable format;
- restrict or object to certain processing;
- withdraw consent (e.g., for voice cloning) at any time;
- lodge a complaint with a supervisory authority.
To exercise these rights, email …. We will respond within 30 days. We may require identity verification before fulfilling sensitive requests.
10. California residents (CCPA/CPRA)
If you are a California resident, you have the right to know what personal information we collect, how it's used, and with whom it's shared, the right to request deletion, the right to correct inaccuracies, and the right to opt out of any sale or sharing of personal information. We do not sell personal information, and we do not share it for cross-context behavioral advertising— the specific meaning "share" carries under the CPRA. We disclose personal information to the service providers listed above, bound by written contract, solely to perform the Service on our behalf. We also do not sell or share the personal information of consumers under 16. To exercise CCPA rights, email ….
11. Cookies and tracking
We use first-party session cookies set on our API domain for authentication and session management. We do not deploy third-party advertising cookies, behavioral retargeting, or cross-site tracking on the dealer panel, and we do not sell or share personal information for cross-context behavioral advertising — so there is no opt-out for us to apply to a browser privacy signal.
12. Security
Data in transit is encrypted via TLS 1.2+, and data at rest is encrypted by our infrastructure providers. Account passwords are stored only as salted hashes, and the access credentials we hold for your connected social accounts are encrypted at rest.
Generated videos, voiceovers, and photos are held in non-public storage that cannot be listed or browsed by outside parties, and are reachable only through our own service layer. Media links are long, randomly generated, and shared only with you and the services you have authorized to publish on your behalf; anyone who obtains such a link can currently retrieve that file, so treat media links as confidential. We are rolling out expiring media links to narrow this further.
We follow least-privilege internal access controls, record administrative actions to a separate append-only admin audit log, and run an automated review of our integrations and data-handling controls on a recurring schedule. No system is perfectly secure; in the event of a breach affecting your data, we will notify you as required by applicable law.
13. Children
The Service is not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us personal information, contact us and we will delete it.
14. Changes to this Policy
We may update this Policy. Material changes require re-acceptance from existing dealers and trigger a version bump above. Prior versions remain on file in our audit log so you can confirm what you originally agreed to.
Privacy questions: …. Security incidents: ….