Legal / Data processing
Data processing addendum
Effective August 1, 2026 · Signed copies for brokerages on request
When a customer gives us listing photos, contact details, or voice material, they decide the purpose and we process on their instructions: in the language of privacy law, the customer is the controller and we are the processor. This page is our processor commitments, and it is part of the terms. Brokerages that need a countersigned copy for procurement can email support@agentsforagents.co.
What we process, and only for what
Customer material (photos, listing facts, links, writing samples, voice recordings and their transcripts) and account data (contact and billing details) are processed for exactly one purpose: producing and delivering the customer's kits. We do not train AI models on customer material, we do not use it in our own marketing without written permission, and we do not sell it, ever.
Retention and deletion
| Data | Kept |
|---|---|
| Customer material | Life of the account, deleted within 90 days of account deletion |
| Disclosure records: altered assets and their originals | 7 years, as the compliance trail AB 723 exists to guarantee |
| Billing records | 7 years, as tax law requires |
| Account data | Life of the account plus 90 days |
A deletion request from a customer is honored on the same schedule; the two 7-year rows are the only carve-outs, and they exist because a legal obligation outranks a preference — including ours.
Subprocessors
Every service that touches customer data, and the slice it touches:
| Subprocessor | Role | Sees |
|---|---|---|
| Stripe | Payments | Checkout sessions, subscriptions, and billing records; card data goes to Stripe directly |
| Vercel | Hosting | Traffic and server logs |
| Supabase | Database and storage | All customer material at rest |
| Resend | Messages we send the customer | |
| Anthropic | Copy drafting | Voice material and listing facts |
| fal.ai / ElevenLabs | Transcription | Voice recordings a customer makes |
| fal.ai / Higgsfield | Media generation | Listing photos |
| Perplexity / Firecrawl | Public-profile reading | Public pages the customer points us to |
| Google Maps | Property imagery | The listing address |
| Inngest | Job queue | Internal job references |
Each is bound by its own data-protection terms at least as protective as ours for the slice it sees. Before adding or swapping a subprocessor we update this page and give at least 14 days' notice on it; a customer who objects can cancel with a pro-rated refund of anything unearned.
Security
Data moves over TLS and rests encrypted with our storage providers. Access runs on least privilege: token-gated customer pages, an allowlisted operator console, and secrets kept in a managed vault rather than in code. We are a small operation and say so; what we promise is the discipline above, not an enterprise certification we do not hold.
If something goes wrong
If we become aware of a breach of personal data we process for you, we notify you within 72 hours of confirming it, with what we know, what it touched, and what we are doing, then keep you current as facts develop.
Rights requests and audits
When a person exercises privacy rights against a customer (access, correction, deletion, portability), we assist the customer within 30 days of the ask. Customers may request a written summary of our security practices once a year, or after any breach.
International transfers
Processing happens in the United States. For customers subject to UK or EEA law we will execute Standard Contractual Clauses on request, with encryption and access controls as supplementary measures.
Termination
These commitments survive as long as we hold the data, and the retention table above is the deletion schedule when the relationship ends. If the service itself ever winds down, customers get at least 30 days' notice and an export window first.