Privacy Policy
Last updated: April 1, 2026
1. Introduction
ReactionGears (“we,” “our,” or “us”) operates the ReactionGears platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform, website, and related services.
2. Information We Collect
Account Information
When you create an account, we collect your name, email address, company name, and role. If you subscribe to a paid plan, we collect billing information through our payment processor.
CRM Data
You and your team members enter contact information, communication records, notes, documents, and other business data into our platform. This data belongs to your organization and is stored within your isolated tenant environment.
Integration Data
When you connect third-party services (Google Workspace, Zoom, Twilio, etc.), we access data from those services on your behalf using OAuth tokens or API credentials you provide. We only access the data necessary to deliver the integration features you enable.
Usage Data
We automatically collect information about how you interact with the platform, including pages visited, features used, browser type, IP address, and device information. This helps us improve the product.
3. How We Use Your Information
- Provide, maintain, and improve the ReactionGears platform
- Process transactions and send related information (confirmations, invoices)
- Sync data with third-party integrations you have connected
- Send administrative messages, updates, and security alerts
- Respond to your support requests and communicate with you
- Monitor and analyze usage trends to improve user experience
- Detect, prevent, and address fraud and security issues
4. SMS/Text Messaging
ReactionGears enables organizations to send SMS and MMS text messages to their customers and business contacts through integrated phone services (such as Zoom Phone). By providing your phone number to a ReactionGears user or their organization, you may receive text messages related to appointment reminders, project updates, quote and invoice notifications, and customer support communications.
Consent
You will only receive SMS/MMS messages from a ReactionGears user if you have provided your consent, whether verbally, in writing, or through an electronic opt-in. You may revoke your consent at any time by replying STOP to any message. Reply HELP for assistance. Message frequency varies. Message and data rates may apply.
No Sharing of Mobile Information
ReactionGears does not share, sell, or rent your mobile phone number or any personal information collected through SMS messaging with third parties for their marketing purposes. Your mobile number will only be used to send you the SMS messages you have opted in to receive. No mobile information will be shared with third parties/affiliates for marketing/promotional purposes. All categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties.
Opting Out
You may opt out of receiving text messages at any time by replying STOP to any message you receive. After opting out, you will receive a single confirmation message and no further messages will be sent unless you re-subscribe. You may also contact us at [email protected] to request removal from SMS communications.
5. Data Sharing and Disclosure
We do not sell your personal data. We may share information in the following situations:
- Service providers: With vendors who help us operate the platform (hosting, email delivery, payment processing), under strict data processing agreements.
- Third-party integrations: When you connect an integration, data flows between ReactionGears and that service as necessary to deliver the feature.
- Legal requirements: When required by law, regulation, or legal process.
- Business transfers: In connection with a merger, acquisition, or sale of assets, with prior notice to you.
6. Data Security
We implement industry-standard security measures including encryption at rest and in transit (AES-256-GCM, TLS 1.2+), multi-tenant data isolation via PostgreSQL Row-Level Security, role-based access controls, and regular security audits. OAuth tokens and API credentials are encrypted before storage.
7. Data Retention
We retain your data for as long as your account is active or as needed to provide services. When you delete your account or request data deletion, we remove your data within 30 days, except where retention is required by law.
8. Your Rights
Depending on your location, you may have the right to access, correct, delete, or export your personal data. You can manage most of this from your account settings, or contact us at [email protected].
9. Cookies
We use essential cookies for authentication and session management. We do not use third-party advertising cookies. Analytics cookies are used only to understand aggregate usage patterns.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through the platform. Continued use of the service after changes constitutes acceptance.
11. Contact Us
If you have questions about this Privacy Policy, contact us at [email protected].