Last updated: October 2025

Privacy Policy

We're building this to help you, not to track you. Here's how we handle your data with transparency and respect.

What We Collect

We collect minimal data to provide you with relevant product recommendations and improve our service:

Email Addresses

When you request early access or opt into our pilot program, we collect your email address to communicate with you about the product and your experience.

Basic Company Information

Company name and tier preference (if provided) to understand your needs and provide relevant recommendations.

Chat Conversation Messages

Your questions and our AI responses during the product recommendation chat. This data is temporary and helps us provide better recommendations in real-time.

Usage Analytics

Aggregated, anonymous data about how the service is used (page views, feature usage, completion rates). No personal information is included in analytics.

Session Data

Temporary session IDs to maintain conversation context. These are automatically deleted within 30 days.

Why We Collect It

Every piece of data we collect serves a specific purpose in helping you find the right product solution:

Product Recommendations

Your conversation helps our AI understand your specific needs and provide relevant, evidence-backed product recommendations.

Pilot Program Management

We use your contact information to communicate about the pilot program, share updates, and gather feedback to improve the product.

Product Improvement

Anonymous usage patterns help us understand what works and what doesn't, so we can make the AI recommendations more accurate and helpful.

Analytics

We measure completion rates, recommendation accuracy, and user satisfaction to ensure we're delivering value.

How We Protect It

We use enterprise-grade security measures to protect your data:

Supabase Infrastructure

Your data is stored on Supabase, which provides enterprise-grade security, encryption, and compliance with industry standards.

Data Isolation

Each vendor's data is completely isolated using row-level security. Your data is never mixed with other companies' information.

Encryption

All data is encrypted both in transit (when being sent) and at rest (when stored). Your information is protected at every step.

Limited Access

Only authorized project maintainers have access to the data, and all changes require approval. We don't share your data with third parties.

Data Retention

We don't keep your data longer than necessary. Here are our retention periods:

Chat Conversations

Conversation messages are automatically deleted within 30 days. We don't need them longer to provide recommendations.

Email Addresses

We keep your email address until you opt out of communications or request deletion. You can unsubscribe at any time.

Analytics Data

Raw event logs are purged after 30 days. We only keep aggregated, anonymous metrics for product improvement.

Pilot Data

Data collected during our pilot program is retained for product development purposes, but you can request deletion at any time.

Your Rights

You have control over your data. Here's what you can do:

Delete Your Data

You can request that we delete all your personal data. We'll remove it within 7 days of your request.

Opt Out of Communications

You can unsubscribe from our emails at any time using the link in any email we send, or by contacting us directly.

Request Data Export

You can ask for a copy of all the personal data we have about you in a portable format.

Ask Questions

You can contact us anytime to ask questions about how we handle your data or to make any of the above requests.

Pilot Phase Notice

We're currently in pilot mode, which means we're learning what privacy means to our users and how to build it into our product from day one.

Our privacy practices may evolve as we learn and grow. We'll notify you of any significant changes and always give you the option to opt out or delete your data.

This approach is different from companies that collect everything first and figure out privacy later. We're building privacy into the foundation of our product.

Questions or Requests?

We're here to help with any privacy questions or requests. Contact us at:

hello@firstdistro.com

We typically respond within 24 hours and will work with you to address any concerns or requests promptly.

This privacy policy is not legal advice. If you need legal guidance for your business, please consult with a qualified attorney.