Privacy Policy

Last updated: January 15, 2025

1. Introduction

DisputeJet ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Compliance-as-a-Service platform (the "Service").

As a platform serving credit entrepreneurs (operators) and their clients, we adhere to the Fair Credit Reporting Act (FCRA), General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and other applicable privacy laws.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, phone number, company name, business address
  • Client Information: Client names, contact information, credit report data (for Operators only)
  • Payment Information: Billing details processed through our payment processor
  • Communications: Messages, support requests, and correspondence with our team

2.2 Automatically Collected Information

  • Usage Data: IP address, browser type, device information, pages visited, time spent
  • Cookies & Tracking: Session cookies, analytics cookies, authentication tokens
  • Audit Logs: System events, user actions, compliance-required activity logs

2.3 Sensitive Information (Credit Reports)

  • Encrypted at rest and in transit (AES-256 encryption)
  • Stored on secure, SOC 2-compliant infrastructure
  • Accessible only to the operator who uploaded it and their authorized clients
  • Subject to PII redaction when enabled by the operator
  • Retained according to FCRA requirements and operator settings

3. How We Use Your Information

  • Provide and maintain the Service
  • Process credit report analysis and generate dispute letters
  • Send dispute letters via physical mail delivery services on behalf of Operators
  • Communicate with you about your account, updates, and support
  • Process payments for dispute rounds and manage payment methods
  • Improve our Service through analytics and usage patterns
  • Comply with legal obligations and maintain audit trails
  • Detect and prevent fraud, abuse, and security incidents
  • Send marketing communications (opt-out available)

4. Information Sharing & Disclosure

We do NOT sell your personal information. We may share information with service providers who assist us in operating the Service, as required by law, or in connection with business transfers.

5. Data Security

  • AES-256 Encryption
  • Role-Based Access Controls
  • 24/7 Monitoring
  • Regular Security Audits

6. Your Rights & Choices

You have the right to access, correct, update, or delete your personal information. You can export your data, opt out of marketing communications, and exercise additional rights under CCPA and GDPR.

7. Data Retention

We retain your information for as long as necessary to provide the Service and comply with legal obligations. Dispute records are retained for 7 years (FCRA requirement).

8. Contact Us

For questions about this Privacy Policy or to exercise your rights:

DisputeJet Privacy Team

Email: privacy@disputejet.com

We will respond to all requests within 30 days.