Privacy Policy
- Scope of This Policy
- Definitions
- Our Role: Controller and Processor
- Information We Collect
- How We Use Information
- How Information Is Shared
- Subprocessors
- Cookies and Local Storage
- Data Retention and Deletion
- Your Rights and Choices
- Security
- Children's Privacy
- Changes to This Policy
- How to Contact Us
1. Scope of This Policy
This Privacy Policy describes how DarkTiger Studios LLC ("Foyer," "we," "us," or "our") collects, uses, discloses, and protects personal information in connection with the Foyer service, available at foyeroh.com and app.foyeroh.com (together, the "Service"). The Service provides real estate professionals with tools to manage open houses, register visitors, evaluate buyer interest, and deliver lead records to systems the professional designates.
This policy applies to information processed through the Service. It does not apply to the practices of real estate agents, teams, or brokerages that use Foyer (see Section 3), or to third-party websites or services linked from the Service.
2. Definitions
- Agent User
- A licensed real estate professional, or a member of their team, who holds a Foyer account and uses the Service to operate open houses.
- Visitor
- A member of the public who attends an open house operated by an Agent User and completes the voluntary check-in form. Visitors do not create accounts.
- Check-In Data
- The information a Visitor submits on the check-in form, together with the time of check-in and the open house at which it was submitted.
- Seller Report
- An aggregate summary of open-house activity prepared for the property owner. Seller Reports contain counts and totals only; they never include Visitor names or contact details.
3. Our Role: Controller and Processor
3.1 For Agent User account information (Section 4.1), Foyer acts as the data controller: we decide how and why that information is processed.
3.2 For Check-In Data, the Agent User (or their brokerage) is the data controller and Foyer acts as a processor and service provider. Visitors submit their information to the hosting agent; Foyer stores, scores, and transmits it on that agent's instructions. Questions about how a particular agent uses Check-In Data should be directed to that agent. Visitors may also contact us directly (Section 10.2) and we will assist.
4. Information We Collect
4.1 From Agent Users.
- Identity and contact details: name, email address, and phone number provided at registration
- Professional details: real estate license number and brokerage affiliation
- Business records: property addresses, listing prices, open-house schedules, and uploaded property documents
- Team administration data: team member names, email addresses, and roles
- Billing status: subscription tier and payment state. Payment card details are collected and held by Stripe, our payment processor; Foyer never receives or stores card numbers (Section 7)
4.2 From Visitors. All Visitor information is provided voluntarily on the check-in form, which displays a consent notice before any contact information is submitted:
- First and last name
- Email address and phone number, with an explicit contact-permission choice
- Representation status: whether the Visitor is working with an agent and, if so, that agent's name and brokerage
- Self-reported buying context: buyer or seller status, purchase timeline, financing status, and price range
4.3 Collected automatically.
- Check-in timestamp and the open-house session identifier
- Service logs reasonably necessary for security, debugging, and reliability
The Service does not run third-party advertising or analytics trackers, and we do not collect precise geolocation.
5. How We Use Information
We use personal information only to operate and improve the Service:
- 5.1 To provide the Service: operating open houses, registering Visitors, scoring buyer interest, and preparing Seller Reports
- 5.2 To deliver lead records to the destination each account designates (Section 6.1)
- 5.3 To notify the hosting agent by email when a lead cannot be delivered to their designated destination (Section 6.2)
- 5.4 To send the transactional emails described in Section 6.6: a one-time check-in receipt to a Visitor who provides an email address and consents to contact, a Seller Report to the email address the Agent User enters, and a weekly summary to the requesting Agent User's own login email
- 5.5 To draft follow-up messages for the Agent User on request, using an AI writing provider as described in Section 7. Drafts are generated only from the Visitor's own check-in answers, only for Visitors who are not represented by another agent, and are shown to the Agent User to edit and send themselves
- 5.6 To process subscription billing through Stripe
- 5.7 To secure, maintain, debug, and improve the Service
- 5.8 To comply with legal obligations and enforce our Terms of Service
We do not sell personal information. We do not use Visitor information for advertising, and we do not send marketing email to Visitors. Every email the Service sends is transactional, tied to a specific check-in or report, and described in Section 6.6.
6. How Information Is Shared
6.1 Lead delivery at the account's direction. Each account may designate a delivery destination for its lead records, such as a Zapier webhook connected to the account's CRM, or another automation endpoint the Agent User controls. When a Visitor checks in, Foyer transmits the lead record to that destination on the account's instructions. The receiving platform's handling of the data is governed by that platform's own privacy policy and the Agent User's configuration of it.
6.2 Fallback lead notification. If an account has no delivery destination configured, or delivery fails, the Service emails the lead record to the hosting agent's own account email address so the lead is not lost. It goes solely to the agent responsible for that open house.
6.6 Emails the Service sends. The Service sends four kinds of transactional email, all through the provider listed in Section 7: (a) a one-time check-in receipt to a Visitor, sent only when the Visitor provided an email address and checked the contact-permission box, containing the property document links and the hosting agent's contact information; (b) a Seller Report, containing aggregate figures only and never Visitor names or contact details, sent to the email address the Agent User enters; (c) a weekly team summary of aggregate counts, sent only to the requesting Agent User's own login email; and (d) the fallback lead notification described in Section 6.2. None of these are marketing email, and Visitors receive no email at all unless they gave contact permission.
6.3 Within the account. Check-In Data is visible to authorized members of the Agent User's team according to their roles. Seller Reports shared with property owners contain aggregate figures only.
6.4 Legal and safety. We may disclose information if required by law, subpoena, or court order, or where reasonably necessary to protect the rights, safety, or property of Foyer, our users, or the public.
6.5 Business transfers. If Foyer is involved in a merger, acquisition, or sale of assets, personal information may be transferred as part of that transaction, subject to this policy's protections.
7. Subprocessors
We use a small number of infrastructure providers to run the Service. Each processes data only as needed to perform its function:
| Provider | Function | Data involved | Privacy policy |
|---|---|---|---|
| Supabase | Database, authentication, and file storage | Account data, Check-In Data, property documents | supabase.com/privacy |
| Vercel | Application and website hosting | Service traffic and standard server logs | vercel.com/legal/privacy-policy |
| Stripe | Subscription billing and payment processing | Payment card data (held by Stripe; never stored by Foyer) | stripe.com/privacy |
| Resend | Email delivery for the transactional emails described in Section 6.6 | Recipient address and email contents for each message: visitor receipt, Seller Report aggregates, weekly summary, or fallback lead record | resend.com/legal/privacy-policy |
| Anthropic | AI drafting of follow-up messages, only when an Agent User requests a draft (Section 5.5) | The Visitor's first name and their stated timeline, financing status, and price range, plus the property address. Not used to train Anthropic's models under our API terms | anthropic.com/legal/privacy |
Lead delivery destinations under Section 6.1 (for example, Zapier) are selected and controlled by each account rather than by Foyer, and are therefore the Agent User's own service providers rather than our subprocessors.
8. Cookies and Local Storage
The marketing website at foyeroh.com sets no advertising or analytics cookies. The application at app.foyeroh.com uses browser local storage for what the product needs to function: keeping an Agent User signed in, remembering interface preferences such as theme, and briefly holding an unsent check-in on the device if the connection drops so it can be submitted when the connection returns. We honor the spirit of "Do Not Track" by not tracking anyone across other sites in the first place.
9. Data Retention and Deletion
9.1 Agent account data is retained for the duration of the subscription and for 30 days after account deletion, after which it is permanently removed from our production systems.
9.2 Check-In Data belongs to the collecting account and follows the same schedule: it is retained while the account is active and permanently removed within 30 days of account deletion.
9.3 Agent Users may request account deletion at any time by emailing hello@foyeroh.com with the subject line "Account Deletion Request." Deletion removes the account, all open-house data, lead records, and team member data within 30 days.
10. Your Rights and Choices
10.1 Agent Users may access and correct their account information within the Service, and may request a copy or deletion of their data by contacting us.
10.2 Visitors control what they share beyond the basics: check-in requires a name and one way to reach you (an email address or a phone number), and every other question, including financing, timeline, price range, and interest level, can be skipped. Declining contact permission means the Service will never email you. Visitors who wish to access, correct, or delete their Check-In Data may contact the hosting agent directly, or email hello@foyeroh.com with the open-house address and date, and we will locate the record and assist, including notifying the controlling account of the request.
10.3 Depending on where you live, you may have additional rights under state privacy laws, such as the right to know what personal information is collected about you, to request its deletion, and not to be discriminated against for exercising those rights. We honor such requests as described above regardless of your state of residence. We do not sell or share personal information for cross-context behavioral advertising as those terms are defined under applicable state laws.
10.4 We will respond to verified privacy requests within 30 days.
11. Security
All data is encrypted in transit over HTTPS. Agent accounts are protected by authenticated sign-in. Row-level security policies in our database restrict every account to its own records, and file storage is access-controlled to authorized account members. Payment card data never touches our servers. No method of transmission or storage is completely secure, but we design the Service so that the minimum necessary data is collected and each party sees only what their role requires.
12. Children's Privacy
The Service is not directed to individuals under 18 years of age, and we do not knowingly collect personal information from minors. If you believe a minor has provided personal information through the Service, contact us and we will delete it.
13. Changes to This Policy
We may update this policy from time to time. The "Last updated" date at the top of this page reflects the most recent revision. Material changes will be communicated by email to active account holders before they take effect. Continued use of the Service after changes are posted constitutes acceptance of the updated policy.
14. How to Contact Us
DarkTiger Studios LLC operates Foyer. For privacy questions, requests, or complaints, email hello@foyeroh.com. Please include "Privacy" in the subject line so we can route your request quickly.