Privacy Policy
Effective: March 16, 2026 | Last Updated: March 16, 2026
MyDiagBuddy ("we," "our," or "us") operates mydiagbuddy.com and the MyDiagBuddy application. This Privacy Policy explains how we collect, use, disclose, and safeguard your information.
1. Information We Collect
1.1 Account Information
- Name and email address (via Google OAuth or direct registration)
- Profile information from Google (if using Google Sign-In)
- Shop or business name (optional)
1.2 Vehicle & Diagnostic Data
- Vehicle information (make, model, year, VIN)
- Diagnostic queries and AI chat conversations
- DTC codes looked up
- Customer reports generated
- Service history and bay assignments
1.3 Payment Information
Payments are processed by Stripe, Inc. We do not store credit card numbers. Stripe collects payment data per their Privacy Policy. We receive only transaction ID, plan type, and payment status.
1.4 Usage Data
- IP address, browser type, operating system
- Pages visited, features used, time spent
- Device information and screen resolution
- Referring URLs
2. How We Use Your Information
- Provide, maintain, and improve the Service
- Process subscriptions and payments
- Provide AI-powered diagnostic assistance
- Generate and store customer reports
- Send transactional emails (account, billing, security)
- Respond to support requests
- Analyze usage to improve features
- Detect and prevent fraud
3. How We Share Your Information
We do not sell your personal information. We may share with:
- Stripe — payment processing
- Google — OAuth authentication
- AI Providers — queries processed by third-party AI APIs (OpenAI, Anthropic, Google) to generate responses; not used to train their models
- Law Enforcement — if required by law or court order
4. Data Retention
- Account data: While account is active; deleted within 30 days of deletion request
- Chat history: While account is active
- Payment records: 7 years (tax/accounting requirements)
- Usage logs: Up to 90 days
5. Data Security
We use TLS/SSL encryption, encrypted storage, rate limiting, and regular security reviews. No method is 100% secure, but we take reasonable steps to protect your data.
6. Your Rights
All Users
- Access and download your data
- Correct inaccurate information
- Delete your account and data
- Opt out of non-essential communications
California Residents (CCPA)
- Know what personal information we collect and why
- Request deletion
- Opt out of sale (we don't sell data)
- Non-discrimination for exercising rights
European Residents (GDPR)
- Access, correct, or delete personal data
- Restrict or object to processing
- Data portability
- Withdraw consent; lodge complaint with supervisory authority
7. Cookies
We use essential cookies for session and authentication. No third-party advertising cookies.
8. Children's Privacy
Not intended for children under 16. We do not knowingly collect data from children.
9. Changes
We may update this policy. Material changes communicated via email to registered users.
10. Contact