Privacy Policy

Effective August 18, 2026 · Version 2026-08-18

This policy explains what MeridianHub collects, how it is used, and the choices you have. We collect as little as we can and never sell your personal information.

1. What we collect

Account information you provide: your email address and, optionally, your name and the role you select. You can sign in with Google, an emailed code, or an email and password. Passwords are handled by our authentication provider and stored only as salted hashes — we never see or store them in plaintext.

Content you enter: leads, deals, projects, listings, and related records you create in the Service.

Technical data: basic logs and device information needed to operate the Service securely (for example, IP address and browser type).

2. How we use it

To provide and operate the Service, secure your account, respond to you, and improve the product. We do not sell your personal information.

3. Where it lives

Your data is stored with our infrastructure providers (including Supabase for the database and authentication, and Vercel for hosting). Access is restricted by database row-level security so that you can only read your own records.

4. Sharing

We share data only with service providers that help us run MeridianHub (such as hosting, authentication, and, where you enable them, payments, screening, or email delivery), and only as needed to provide the Service or as required by law.

If you publish a listing or capture a lead, the information you choose to display is shown to the people you share it with. That is your decision and your responsibility.

5. Your choices and rights

You can access or update your account information in the Service. You can request deletion of your account and personal data from Settings → Danger zone; your data is removed within 30 days, and immutable consent and audit records may be retained as required by law. Depending on where you live, you may have additional rights under laws such as GDPR or CCPA.

You can request a copy of your data, or ask us to delete your account and its data, by emailing support@meridianhub.net — we complete these requests within 30 days.

6. Security

We use industry-standard measures: authentication handled by Supabase, database row-level security, encrypted transport (HTTPS), and a strict set of HTTP security headers. No system is perfectly secure, but we work to protect your data and limit what is collected.

7. Retention

We keep your data while your account is active and as needed to operate the Service or meet legal obligations. Consent and acceptance records may be retained as a compliance trail.

8. Changes

We may update this policy. If we make material changes we will ask you to review and accept the new version before continuing to use the Service.

Questions? Contact support@meridianhub.net.