Privacy Policy
Effective: April 22, 2026
This Privacy Policy explains how DBAR LLC, doing business as “PMMSHERPA” (“we,” “us,” or “our”), collects, uses, and shares information when you use PMMSherpa (the “Service”). If you have questions, email support@pmmsherpa.com.
1. Information We Collect
Information you provide
- Account information: name, email address, and password (stored as a hash by our authentication provider) or Google OAuth identifier.
- Profile information: your LinkedIn URL and your consent to receive product and promotional communications.
- Chat content: messages, file uploads, URLs, and other inputs you submit, together with the AI-generated responses.
- Billing information: when you subscribe, Stripe collects and processes your payment details. We receive only a customer identifier, subscription status, and the last four digits of your card.
- Support communications: messages you send to support@pmmsherpa.com.
Information we collect automatically
- Usage data: model used, input and output token counts, latency, feature interactions, and timestamps.
- Device and log data: IP address, browser type, device type, pages viewed, and referrer.
- Cookies and similar technologies: used to keep you signed in, remember preferences, and for product analytics (see Section 5).
2. How We Use Information
- To provide, operate, and improve the Service, including generating responses to your queries.
- To authenticate you, manage your account, and enforce usage limits.
- To process payments and send subscription-related notices.
- To send transactional email (welcome messages, password resets, billing receipts) and, if you consented, product and promotional updates. You can opt out of promotional email at any time.
- To monitor, secure, and prevent abuse of the Service.
- To comply with legal obligations and enforce our Terms of Service.
3. How We Share Information — Sub-processors
We do not sell your personal information. We share information with the following service providers (“sub-processors”) only as needed to operate the Service:
| Provider | Purpose |
|---|---|
| Supabase | Hosting, authentication, and database |
| Vercel | Application hosting and delivery |
| Anthropic | Claude large-language model inference |
| Gemini model inference and Google OAuth | |
| OpenAI | Text embeddings for knowledge retrieval |
| Perplexity | Real-time web research |
| Brave Search | Web search results |
| Stripe | Payment processing and subscription management |
| Resend | Transactional and product email delivery |
| PostHog | Product analytics and error monitoring |
We may also disclose information (a) to comply with a lawful request or court order, (b) to protect the rights, property, or safety of users, the public, or DBAR LLC, or (c) as part of a merger, acquisition, or sale of assets, with notice to affected users.
4. AI Model Training
We do not train AI models on your content, and we do not allow our AI providers to train their models on your inputs or outputs. Anthropic, Google, and OpenAI process your content under their API terms, which prohibit use of API data for model training. We may use aggregated, de-identified usage data (such as counts, latency, and feature usage) to operate and improve the Service.
5. Cookies and Analytics
We use strictly necessary cookies to keep you signed in, remember preferences (such as theme and model choice), and secure the Service. We use PostHog to measure product usage and diagnose errors; this may set cookies or use similar storage. You can control cookies through your browser settings; disabling non-essential storage may affect functionality.
6. Data Retention
We retain your account data and chat history for as long as your account is active. If you delete your account, we delete or anonymize personal data within 90 days, except where we are required to retain it for legal, tax, accounting, or fraud-prevention purposes. Aggregated, de-identified data may be retained indefinitely.
7. Your Choices and Rights
You can:
- Access, update, or correct your profile from your account settings.
- Delete specific conversations from your chat history.
- Export a copy of your data by emailing support@pmmsherpa.com.
- Close your account and request deletion of your personal data.
- Opt out of promotional email via the unsubscribe link in any message.
Depending on where you live, you may have additional rights under laws such as the California Consumer Privacy Act (CCPA) or the EU/UK General Data Protection Regulation (GDPR), including the right to access, delete, correct, or port your data, or to object to or restrict certain processing. To exercise these rights, email support@pmmsherpa.com. We do not “sell” personal information as defined under the CCPA.
8. International Users
The Service is operated from the United States. If you access the Service from outside the U.S., you understand that your information will be transferred to, stored, and processed in the U.S. by us and our sub-processors. Where required, transfers from the EU/UK rely on Standard Contractual Clauses or equivalent safeguards with our sub-processors.
9. Children
The Service is not directed to children under 18, and we do not knowingly collect personal information from anyone under 18. If you believe a child has provided us personal information, email support@pmmsherpa.com and we will delete it.
10. Security
We use encryption in transit (TLS), encrypted storage, access controls, and reputable cloud infrastructure to protect your data. No system is perfectly secure; if we become aware of a breach affecting your personal information, we will notify you as required by law.
11. Changes to This Policy
We may update this Privacy Policy from time to time. If changes are material, we will notify you by email or in-product notice. The “Effective” date at the top indicates the latest revision.
12. Contact
Questions, requests, or privacy concerns? Email support@pmmsherpa.com.
DBAR LLC d/b/a PMMSHERPA · State of Washington, U.S.A.