Privacy Policy
Effective date: July 23, 2026
This Privacy Policy explains how Apex8 AI LLC ("Apex8," "we," "us," or "our") collects, uses, shares, and protects information in connection with RepairStream, our mobile application and related services (collectively, the "Service"). RepairStream is a business management tool for repair and service shops. By creating an account or using the Service, you agree to this Policy. If you do not agree, do not use the Service.
1. Who We Are and Our Role
RepairStream is operated by Apex8 AI LLC, a limited liability company formed in Texas, United States. The Service is offered to businesses ("Shops") and the individuals who use it on a Shop's behalf ("Users," such as Shop owners and employees).
Our role in handling information depends on the type of information:
- For account, business-profile, and billing information about Shops and Users, we act as the business responsible for that information (a "controller").
- For information about a Shop's own end customers that a Shop enters into the Service — such as a customer's name, contact details, and repair records — the Shop is responsible for that information, and we process it as a service provider on the Shop's behalf and under the Shop's instructions. A Shop's end customers are not Users of the Service.
If you are a customer of a Shop and have questions about how your information is handled, please contact the Shop directly, as the Shop controls that information.
2. Information We Collect
We collect the following categories of information:
- Account and authentication information: your name, email address, role (owner or employee), a securely hashed password, and email-verification and password-reset records. We do not store your password in plain text.
- Business profile information: your Shop's name, business type, phone number, address, website, email, and tax-rate settings.
- Shop customer information (entered by Shops): the names, email addresses, phone numbers, and addresses of a Shop's customers, along with the repair and service records the Shop maintains about them.
- Job and repair records: repair jobs, statuses, notes, line items, estimates, invoices, checklists, inventory, suppliers, and photos you attach to jobs.
- Photos: images you upload to document devices, parts, and completed work. Photos are stored with our storage provider (Cloudflare R2).
- Payment and billing information: metadata about payments processed through connected providers (such as amounts, statuses, and provider transaction identifiers). We do NOT collect or store full payment-card numbers — those are handled directly by the payment processors described below.
- Subscription information: your subscription tier, status, trial and renewal dates, and identifiers we use to associate your subscription with your Shop. Subscriptions are billed through Apple; we do not receive your payment-card details.
- Communications and support: messages you send us and records of transactional emails we send (such as account, invoice, estimate, and job-update emails).
- Device and usage information: basic technical information necessary to operate the app, such as app and device type and event logs used for security and troubleshooting.
The Service is intended for business use and is not designed to collect sensitive personal information beyond what a Shop chooses to record about its jobs and customers.
3. How We Use Information
We use information to:
- Provide, operate, secure, and improve the Service;
- Create and manage accounts, authenticate Users, and enforce seat limits;
- Enable core features such as job tracking, invoicing, estimates, photo documentation, inventory, and team management;
- Send transactional emails on a Shop's behalf (for example, invoices, estimates, and job-status updates to the Shop's customers) and account emails to Users (for example, email verification, password reset, and team invitations);
- Process and reconcile payments and subscriptions through our providers;
- Provide customer support and respond to your requests;
- Detect, prevent, and address fraud, abuse, security incidents, and technical issues; and
- Comply with legal obligations and enforce our Terms of Service.
The app can schedule local reminders on your device (for example, job due-date reminders). These are generated on your device and do not involve collecting a remote push-notification token.
4. How We Share Information
We do not sell your personal information. We share information only with service providers that help us operate the Service, and only as needed for the purposes described below. These providers are:
- Apple (App Store / In-App Purchase) — subscription billing and payment processing for the Service itself.
- RevenueCat — management of subscription entitlements and receipts for our in-app subscriptions.
- Stripe and Square — payment processing that lets a Shop collect payments from its own customers. When a Shop connects these, the Shop and its customers interact directly with the processor, which handles card data.
- QuickBooks (Intuit) — optional accounting synchronization of invoices and customers when a Shop connects it.
- Cloudflare R2 — storage of job photos and related files.
- Neon — hosting of our application database.
- Render — hosting of our application servers.
- Resend — delivery of transactional email.
Each provider processes information only to perform services for us and is expected to protect it. When you connect a third-party payment or accounting provider, your use of that provider is also governed by that provider's own terms and privacy policy.
We may also disclose information if required by law, to respond to lawful requests, to protect the rights, safety, and property of Apex8, our Users, or others, or in connection with a merger, acquisition, financing, or sale of assets, in which case we will require the recipient to honor this Policy.
5. Payment Processing
Subscriptions to the Service are purchased through Apple's In-App Purchase system and managed with RevenueCat. Apple processes your payment; we do not receive or store your payment-card number.
Payments a Shop collects from its own customers are processed by Stripe or Square, and accounting sync is handled by QuickBooks, only if the Shop chooses to connect them. Those processors handle payment-card data directly under their own security and privacy practices. We store only payment metadata (such as amounts, statuses, and transaction identifiers), not card numbers.
6. Data Retention and Deletion
We retain information for as long as your account is active and as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce our agreements.
You can delete your account at any time from within the app, under Settings → Delete Account. What deletion does depends on your role:
- If you are an employee, deleting your account removes your User record and revokes your access. Business records that belong to the Shop are not attributed to individual employees and remain with the Shop.
- If you are the Shop owner, deleting your account deletes the entire Shop, including its customers, jobs, repair records, photos, invoices, estimates, and all associated employee accounts. This is permanent and cannot be undone.
After deletion, we remove the associated data from our active systems, though residual copies may persist in secure backups for a limited period before being overwritten. Records held by third parties — such as Apple, Stripe, Square, and QuickBooks — are governed by those providers and are not deleted by this action; contact them or the relevant Shop to address data they hold. We may retain limited information where required by law.
7. Security
We use technical and organizational measures designed to protect information, including encryption of data in transit, hashing of passwords, storage of authentication tokens in the device's secure keychain, encryption of stored third-party connection tokens, and access controls scoped to each Shop. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
8. Where Information Is Processed
The Service is operated in the United States, and information is processed and stored on servers located in the United States. The Service is currently intended for users in the United States.
9. Your Privacy Rights
Depending on where you live, you may have rights regarding your personal information, such as the right to access, correct, or delete it, and the right not to be discriminated against for exercising these rights. Much of your information is available and editable directly in the app, and you can delete your account as described above.
To make a privacy request, contact us at support@repairstream.app. We may need to verify your identity before acting on a request. We do not sell personal information and do not share it for cross-context behavioral advertising.
If you are a customer of a Shop (and not a User of the Service), the Shop controls your information; please direct requests to the Shop, and we will assist the Shop as its service provider where appropriate.
10. Children's Privacy
The Service is intended for businesses and users who are at least 18 years old. It is not directed to children, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us information, contact us and we will take appropriate steps to delete it.
11. Changes to This Policy
We may update this Policy from time to time. If we make material changes, we will update the effective date above and, where appropriate, provide additional notice. Your continued use of the Service after changes take effect constitutes acceptance of the updated Policy.
12. Contact Us
If you have questions or requests regarding this Policy or your information, contact us at support@repairstream.app.