Privacy Policy
Last updated: 27 August 2026
Proplio ("we", "us", "our") is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and share your information when you use our compliance management platform ("the Service"). We process personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Data Controller
Proplio is the data controller for the personal data processed through the Service. If you have any questions about this policy, please contact us at support@proplio.co.
2. What Data We Collect
Account Information
- Name and email address (provided at registration)
- Agency/organisation name
- Hashed password (we never store plain-text passwords)
Property and Compliance Data
- Property addresses and details
- Tenant names, email addresses, and phone numbers
- Compliance certificate details (types, references, dates, uploaded files)
Billing Data
- Payment and subscription information is processed by Stripe. We store your Stripe customer ID and subscription status but do not store card details.
Usage Data
- IP addresses, browser type, and device information (collected automatically for security and analytics)
- Product analytics events via PostHog (pages viewed, actions taken) — only if you accept analytics cookies
- Session replays and browser console logs via PostHog, to diagnose usability problems and errors — only if you accept analytics cookies. Form inputs are always masked, and all text inside the logged-in application and landlord share pages is masked, so tenant and landlord details are not visible in replays. Replays are retained for 30 days.
- Error reports via Sentry for service reliability
3. How We Use Your Data
We process your personal data for the following purposes:
- Providing the Service: Managing your account, tracking compliance records, sending deadline reminders (legal basis: contract performance)
- Email communications: Sending compliance reminders and service notifications via Resend (legal basis: contract performance)
- Billing: Processing subscription payments via Stripe (legal basis: contract performance)
- Security: Protecting against unauthorised access and abuse (legal basis: legitimate interest)
- Service improvement: Monitoring errors and performance (legal basis: legitimate interest)
4. Third-Party Services
We share data with the following third-party processors, all of whom have appropriate data processing agreements in place:
| Provider | Purpose | Data Shared |
|---|---|---|
| Vercel | Hosting and infrastructure | Application data, request logs |
| Neon | Database hosting | All application data |
| Stripe | Payment processing | Email, subscription details |
| Resend | Email delivery | Email addresses, notification content |
| Sentry | Error monitoring | Error logs, request metadata |
| PostHog | Product analytics (EU-hosted) | Usage events, device info (only with consent) |
| Vercel Blob | Certificate file storage | Uploaded compliance certificates (private access only) |
| Anthropic | AI-assisted data entry | Uploaded compliance certificates and any other property documents you drop in (for example a property list or tenancy schedule), plus spreadsheet column headers and sample values with contact details masked. Only property addresses, certificate details and landlord names are extracted and kept; tenant details are never extracted. Not used to train models; retained by Anthropic for up to 30 days |
| Cloudflare | Bot check on sign-up (Turnstile) | Browser and connection signals on the sign-up page only; no account data |
| Trustpilot | Review widget | No personal data shared; widget loaded on public pages |
Vercel
Hosting and infrastructure
Data: Application data, request logs
Neon
Database hosting
Data: All application data
Stripe
Payment processing
Data: Email, subscription details
Resend
Email delivery
Data: Email addresses, notification content
Sentry
Error monitoring
Data: Error logs, request metadata
PostHog
Product analytics (EU-hosted)
Data: Usage events, device info, masked session replays and console logs (only with consent)
Vercel Blob
Certificate file storage
Data: Uploaded compliance certificates (private access only)
Anthropic
AI-assisted data entry
Data: Uploaded compliance certificates and any other property documents you drop in (for example a property list or tenancy schedule), plus spreadsheet column headers and sample values with contact details masked. Only property addresses, certificate details and landlord names are extracted and kept; tenant details are never extracted. Not used to train models; retained by Anthropic for up to 30 days
Cloudflare
Bot check on sign-up (Turnstile)
Data: Browser and connection signals on the sign-up page only; no account data
Trustpilot
Review widget
Data: No personal data shared; widget loaded on public pages
5. Sub-Processors
Under GDPR Article 28, we maintain a list of sub-processors who process personal data on our behalf. We ensure each sub-processor has appropriate data processing agreements in place.
| Sub-Processor | Location | Purpose | Safeguards |
|---|---|---|---|
| Vercel Inc. | USA | Application hosting and serverless infrastructure | SCCs, SOC 2 Type II |
| Neon Inc. | USA (EU storage) | PostgreSQL database hosting | SCCs, SOC 2 Type II, data stored in EU |
| Stripe Inc. | USA | Payment processing and subscription billing | SCCs, PCI DSS Level 1 |
| Resend Inc. | USA | Transactional email delivery | SCCs |
| Functional Software (Sentry) | USA | Error monitoring and performance tracking | SCCs, SOC 2 Type II |
| PostHog Inc. | EU | Product analytics (consent-based) | EU-hosted, GDPR compliant |
| Anthropic Ireland, Limited | Ireland (EU); processing in USA | Reading uploaded compliance certificates and other property documents you drop in (e.g. property lists or tenancy schedules), and spreadsheet column headers/sample values with contact details masked, to pre-fill data. Only property addresses, certificate details and landlord names are extracted; tenant details are never extracted | SCCs; not used to train models; inputs and outputs deleted within 30 days |
| Trustpilot A/S | Denmark (EU) | Customer review widget on public pages | EU-based, GDPR compliant |
Vercel Inc.
USA — Application hosting and serverless infrastructure
Safeguards: SCCs, SOC 2 Type II
Neon Inc.
USA (EU storage) — PostgreSQL database hosting
Safeguards: SCCs, SOC 2 Type II, data stored in EU
Stripe Inc.
USA — Payment processing and subscription billing
Safeguards: SCCs, PCI DSS Level 1
Resend Inc.
USA — Transactional email delivery
Safeguards: SCCs
Functional Software (Sentry)
USA — Error monitoring and performance tracking
Safeguards: SCCs, SOC 2 Type II
PostHog Inc.
EU — Product analytics (consent-based)
Safeguards: EU-hosted, GDPR compliant
Anthropic Ireland, Limited
Ireland (EU); processing in USA — Reading uploaded compliance certificates and other property documents you drop in (e.g. property lists or tenancy schedules), and spreadsheet column headers/sample values with contact details masked, to pre-fill data. Only property addresses, certificate details and landlord names are extracted; tenant details are never extracted
Safeguards: SCCs; not used to train models; inputs and outputs deleted within 30 days
Trustpilot A/S
Denmark (EU) — Customer review widget on public pages
Safeguards: EU-based, GDPR compliant
Anthropic's commitments are set out in its Commercial Terms of Service (“Anthropic may not train models on Customer Content from Services”) and its commercial data retention policy (inputs and outputs deleted within 30 days). We send a document to Anthropic only when you choose to add it — a certificate you upload, or another property document you drop into the importer, such as a property list or tenancy schedule, which is sent whole so the addresses in it can be read. From a spreadsheet we send only the column headers and a few sample values, with contact details masked. Whatever the document contains, we extract and keep only property addresses, certificate details and landlord names; tenant details are never extracted, and you review every suggested value before it is saved.
We will update this list if we add or change sub-processors. If you have questions about any sub-processor, contact us at support@proplio.co.
6. Data Retention
- We retain your data for as long as your account is active
- If you cancel and close your account, we delete your data within 30 days
- Exception: data we are required by law to retain longer (e.g. financial records for HMRC)
7. Data Security
We implement appropriate technical and organisational measures to protect your data, including:
- Encryption in transit (TLS/HTTPS) and at rest
- Passwords hashed with bcrypt
- Rate limiting on authentication endpoints
- Security headers (CSP, HSTS, etc.)
- Regular security updates and dependency monitoring
8. Your Rights
Under UK GDPR, you have the following rights:
- Access: Request a copy of the personal data we hold about you
- Rectification: Request correction of inaccurate data
- Erasure: Request deletion of your data ("right to be forgotten")
- Portability: Request your data in a machine-readable format (CSV export is available in the Service)
- Restriction: Request that we limit processing of your data
- Objection: Object to processing based on legitimate interest
To exercise any of these rights, contact us at support@proplio.co. We will respond within 30 days.
9. Cookies
We use two categories of cookies:
- Essential cookies — required for the Service to work (session cookie to keep you logged in, CSRF protection). These are always on.
- Analytics cookies — PostHog, to understand how the Service is used, including masked session replays. Only set if you accept in the cookie banner.
| Cookie | Category | Lifetime | What it holds |
|---|---|---|---|
| Session cookie | Essential | 30 days | Signed login token, renewed while you use the Service |
| CSRF cookie | Essential | Session | Anti-forgery token |
| PostHog (ph_*) | Analytics | Set by PostHog | Pseudonymous device identifier and session state |
| proplio_acq | Analytics (first-party) | 90 days | The first page you visited, the referring site and any utm tags, with query strings removed. Set only after you accept analytics. If you register, these values are copied onto your agency record so we know which channel brought you. |
You can accept or reject non-essential cookies using the banner shown on your first visit. You can change your mind at any time by clearing your browser's site data for proplio.co, which will cause the banner to reappear. Analytics tags respect your choice before setting any cookies or sending identifiers.
10. International Transfers
- Your data is primarily stored in EU/UK data centres
- Where data is transferred outside the UK (e.g. to US-based processors such as Vercel and Stripe), we ensure appropriate safeguards are in place
- Safeguards include Standard Contractual Clauses (SCCs) and adequacy decisions
11. Children
The Service is not directed at individuals under the age of 18. We do not knowingly collect personal data from children.
12. Changes to This Policy
- We may update this Privacy Policy from time to time
- We will notify you of material changes via email
- The "Last updated" date at the top reflects the most recent revision
13. Complaints
If you are unhappy with how we handle your data, you have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.
14. Contact
For any privacy-related questions, please contact us at support@proplio.co.