Privacy Policy

Last updated: March 23, 2026

1. Who We Are

ReportPilot is operated by SapienBotics, a sole proprietorship registered in Bareilly, Uttar Pradesh, India (GSTIN: 09CYVPS3328G1ZQ). We build AI-powered reporting tools for digital marketing agencies and freelancers.

Contact: support@goreportpilot.com

2. What Data We Collect

  • Account information: Your email address and name when you sign up.
  • Google Analytics data (when you connect a GA4 property): sessions, users, pageviews, traffic sources, and conversion events — read-only. We never write to your Analytics account.
  • Meta Ads data (when you connect an ad account): ad spend, impressions, clicks, and conversions — read-only. We never modify or publish ads on your behalf.
  • Client information: Names, website URLs, contact emails, and goals you enter for your clients.
  • Usage data: Pages visited, features used, error logs — for product improvement only.
  • Payment information: Processed exclusively by Razorpay. We do not store card numbers or banking details.

3. How We Use Your Data

  • Generate performance reports for your clients.
  • Produce AI-written narrative insights using the data you have connected.
  • Display metrics and dashboards within your ReportPilot account.
  • Send reports to client email addresses you specify.
  • Process subscription payments and send billing communications.
  • Provide customer support when you contact us.

We do not use your data for advertising, profiling, or any purpose beyond providing the ReportPilot service.

4. How We Store and Protect Your Data

  • All data is stored in Supabase PostgreSQL databases, hosted on AWS infrastructure with encryption at rest and in transit (TLS 1.2+).
  • OAuth access tokens (Google, Meta) are encrypted with AES-256-GCM at the application layer before being stored. Even if the database were compromised, tokens would be unreadable without the encryption key.
  • Row-Level Security (RLS) policies enforce that each user can only access their own data.
  • Encryption keys are stored as server environment variables — never in the database.

5. Third-Party Services

We use the following third-party services to operate ReportPilot:

  • Supabase — Database, authentication, and file storage. (Privacy Policy)
  • OpenAI — AI narrative generation. Analytics data is sent to OpenAI's API to generate text summaries. OpenAI does not store or train on this data under the API terms. (Privacy Policy)
  • Razorpay — Payment processing for subscriptions. We do not see or store your payment card details. (Privacy Policy)
  • Resend — Transactional email delivery (report delivery, billing receipts). (Privacy Policy)

6. Google API Services

ReportPilot's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

  • We request only the analytics.readonly scope.
  • Google Analytics data is used solely to generate performance reports for your clients.
  • We do not share Google user data with third parties except as necessary to provide the service.
  • We do not use Google user data for advertising or to train AI/ML models.
  • Humans at SapienBotics do not read your Google Analytics data except to provide technical support at your request.

7. Meta Platform Terms

Our use of Meta's APIs complies with the Meta Platform Terms.

  • We request only the ads_read permission.
  • Meta Ads data is used solely to generate advertising performance reports.
  • We do not share Meta ad account data with third parties beyond what is necessary to provide the service.

8. Data Retention

  • Your data is kept while your account is active.
  • On account deletion, all data — including OAuth tokens, client records, and generated reports — is permanently deleted within 30 days.
  • You may export your data at any time from the Settings page before deletion.

9. Your Rights

You have the right to:

  • Access your data — visible in your dashboard at all times.
  • Export your data — from Settings → Danger Zone.
  • Delete your account and all associated data — from Settings → Danger Zone.
  • Disconnect integrations — revoke access from Settings → Integrations at any time.

For any data requests, email us at support@goreportpilot.com.

10. Cookies

ReportPilot uses session cookies only — specifically the Supabase authentication JWT stored as an httpOnly cookie. We do not use tracking cookies, advertising cookies, or third-party analytics on the application.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you by email at least 30 days before material changes take effect. Continued use of the service after that date constitutes acceptance of the updated policy.

12. Contact

SapienBotics
Bareilly, Uttar Pradesh, India
GSTIN: 09CYVPS3328G1ZQ
Email: support@goreportpilot.com