Privacy Policy

    Privacy Policy

    Last Updated: 3/16/2026

    National Roofing Directory ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at https://nationalroofingdirectory.org and use our services.

    Important: This policy comprehensively discloses how our application accesses, uses, stores, and shares Google user data when you use our Google OAuth integration services.

    Information We Collect

    Google User Data Collection

    Specific Google User Data We Collect: When you authenticate with Google OAuth, we collect the following Google user data with your explicit consent:

    • Email Address: Your Google account email address for authentication
    • Profile Name: Your Google profile display name
    • Profile Picture: Your Google profile picture/avatar
    • Google My Business Data: Business information when you choose to verify your roofing business (name, address, phone, hours, reviews)

    Data Collection Method: We only collect this data through official Google OAuth 2.0 authentication flow when you explicitly grant permission.

    Business Information

    For roofing contractors who verify their businesses:

    • Business name and address
    • Contact information (phone, website)
    • Business hours
    • Google My Business verification status

    Usage Data

    • Pages visited and time spent on our site
    • Browser type and version
    • IP address (anonymized)
    • Referral source

    How We Use Your Information

    How We Use Google User Data

    Google user data is used exclusively for providing and improving our application's functionality:

    • Authentication: Your Google email and name to create and maintain your account
    • Profile Display: Your Google profile information to personalize your experience
    • Business Verification: Google My Business data to verify and display authentic roofing contractor listings
    • Directory Services: To provide accurate contractor information to users searching our directory

    Prohibited Uses: We do NOT use Google user data for advertising, selling to data brokers, training AI models, credit decisions, or any purpose other than providing our core directory functionality.

    Other Data Uses

    • Comply with legal obligations and law enforcement requests
    • Prevent fraud and ensure platform security
    • Provide customer support when you contact us

    Data Storage and Security

    Google User Data Protection

    Specific protections for Google user data include:

    • Encryption: All Google user data is encrypted in transit (TLS 1.2+) and at rest (AES-256)
    • Access Controls: Strict role-based access controls limit who can access Google user data
    • Secure Infrastructure: Data stored on Supabase with enterprise-grade security certifications
    • Regular Security Audits: Ongoing security assessments and vulnerability testing
    • No Data Mining: Google user data is never used for analytics, profiling, or data mining

    Third-Party Services

    • Google OAuth & APIs: For secure authentication and business verification only
    • Supabase: For secure, compliant data storage and management

    All third-party services used are compliant with data protection regulations and maintain appropriate security standards.

    Your Rights

    You have the right to:

    Your Rights Regarding Google User Data

    • Access: Request copies of your Google user data we have stored
    • Rectification: Request correction of inaccurate Google user data
    • Erasure: Request immediate deletion of your Google user data
    • Portability: Request transfer of your Google user data in a machine-readable format
    • Withdraw Consent: Revoke Google OAuth permissions instantly through your Google account settings
    • Restrict Processing: Request we stop processing your Google user data for specific purposes

    Data Retention and Deletion

    • Google User Data: Retained only as long as you maintain your account and consent
    • Automatic Deletion: Google user data deleted within 30 days of account closure or consent withdrawal
    • Request Deletion: You can request immediate deletion of your Google user data at any time
    • Verification Period: We may retain minimal data for 90 days to prevent fraud, then permanently delete

    Contact us at privacy@nationalroofingdirectory.org to exercise any of these rights. We will respond within 30 days and process your request within 90 days.

    Google User Data Sharing and Disclosure

    We Do NOT Share Google User Data For:

    • Selling to third parties or data brokers
    • Advertising or marketing purposes
    • Creating user profiles for external parties
    • Training machine learning or AI models
    • Credit decisions or financial assessments

    Limited Sharing Only When:

    • Legal Compliance: Required by law, court order, or government request
    • Safety & Security: To protect users' safety or prevent fraud/abuse
    • Service Providers: With trusted service providers who help operate our platform (under strict data protection agreements)
    • Business Transfer: In connection with a merger or acquisition (with continued privacy protection)

    Important: Any sharing of Google user data is strictly limited to providing or improving our directory functionality. We never sell, rent, or trade your Google user data.

    Cookies and Tracking Technologies

    We use minimal tracking technologies:

    • Essential cookies for site functionality
    • Authentication tokens for Google OAuth
    • Local storage for user preferences

    We do not use advertising cookies or third-party tracking scripts.

    Children's Privacy

    Our service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.

    Contact Us

    If you have any questions about this Privacy Policy or our data practices, please contact us:

    Email: privacy@nationalroofingdirectory.org

    Website: https://nationalroofingdirectory.org

    Response Time: We will respond to your inquiry within 30 days

    Changes to This Privacy Policy

    We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. You are advised to review this Privacy Policy periodically for any changes.