LIMOCON TECHNOLOGIESLT Google Review Booster

Segment 1 display preference is browser-local until the regional authenticated profile contract exists.

Controlled legal document

Privacy Notice

LT Google Review Booster Privacy Notice

V1.0 publication draft — not effective yet.Deployment is blocked until the controlled source placeholders and release requirements are complete.

Status: V1.0 publication draft
Effective date: 20 July 2026
Service provider: [insert full legal entity name and registered address]
Privacy contact: support.reviews@limocontechnologies.com
Privacy page: https://app.limocontechnologies.com/lt-google-review-booster/privacy

LT Google Review Booster is a LIMOCON TECHNOLOGIES service for businesses that send neutral review invitations after a real customer experience. This notice applies to the dashboard, mobile app, public review funnels, product pages, and support.

Our role

The merchant controls customer and review-request data in its encrypted device vault. LIMOCON TECHNOLOGIES is normally responsible only for minimal account, security, billing, and the separately enabled merchant-authored review-response workspace described below.

If you received a review request from a merchant, contact that merchant first about your data. LIMOCON TECHNOLOGIES cannot access, inspect, delete, or restore that merchant's local vault.

What we use and why

DataWhy we use it
Account detailsCreate accounts, sign users in, protect the Service, and manage billing.
Sign-in and security detailsSign users in, protect accounts, prevent fraud, and investigate misuse.
Billing detailsManage subscriptions, taxes, payments, and entitlement limits.
Local vault contentCustomer contacts, consent, campaigns, messages, feedback, assets, and settings stay encrypted on the merchant's device. LIMOCON TECHNOLOGIES does not retain them.
Customer review composerA customer may type a review draft, capture or select photos/videos, or record voice in the current device session. Photos and videos stay on that device and LIMOCON TECHNOLOGIES never uploads them to Google. If the customer separately checks consent and selects Transcribe voice entry, one audio-only recording is sent to OpenAI solely to return text to the current session. If OpenAI is unavailable, the request returns an unavailable result and no alternate provider receives the audio. LIMOCON TECHNOLOGIES does not retain the audio or transcript. A separately enabled AI rewrite receives only customer-approved draft text and the selected tone after explicit consent; it is not active until its OpenAI and privacy controls are enabled.
Review-response workspace, if enabled in a future P1 releaseMerchant-authored reply text, merchant-owned photos/videos for a separate supported Business Profile media action, minimal review reference, and exact-action approval evidence. It is not a V1.0 customer-review upload feature.
DiagnosticsRedacted error codes and aggregate availability data; not local-vault content.

Please do not put passwords, payment-card numbers, health information, government IDs, or other sensitive data in requests, templates, feedback, or support messages.

How the Service works

We use data only to run, secure, support, and improve the Service; meet legal and billing duties; and send service, security, or billing notices. We do not sell personal information or use it for cross-site advertising. We do not use merchant customer data, private feedback, delivery data, review-response text, or media to train AI models or create cross-merchant benchmarks.

The Service is designed for neutral review invitations. It must not be used to send requests before a completed experience, filter people by rating or sentiment, or give a reward for a Google review. A customer chooses whether to post and whether to add media in Google Maps; their contribution may be public under their Google profile and is governed by Google’s rules.

Google and other providers

We may use Google Maps Places to find a possible business destination from the location information a merchant provides. The merchant confirms the business identity inside the Service; we do not ask the merchant to visit, scan, or test its own Google review link or QR code. The confirmed Place ID stays in the local vault. Provider candidate text and direct review URLs are used only to complete the lookup and are not retained as account data.

If a merchant connects Google or another provider, we use only the access approved for that integration. We do not receive Google passwords. Google API data is not used for advertising or AI training and is deleted when authorization ends or at the end of its permitted retention period.

If a future P1 release enables the review-response workspace, we retain merchant-authored reply text and merchant-owned media in encrypted server storage. The app can submit only the exact approved text reply to an existing review. It cannot create a customer review or attach photos/videos to a Google review reply; supported profile-media actions are separate. We do not keep customer review text, reviewer identity, rating, or Google review media as a durable workspace record.

We use service providers only when they are needed to deliver the enabled Service, such as regional hosting, authentication, email, messaging, billing, security, support, Google, and approved AI providers. The current provider and transfer register must be available before the relevant feature is enabled.

Where data is processed

Merchant and customer content remains in the encrypted local vault on the merchant's device, except that customer composer drafts and selected media stay only in the customer’s current device session. There is no LIMOCON TECHNOLOGIES cloud sync, content backup, server queue, or administrator copy of that content. The US and EU public hosts are stateless and do not operate a review-token registry.

Providers may process the minimum data needed for identity, payment, message delivery, Google actions, or the review-response workspace. We document active providers, transfers, and safeguards before enabling them.

Retention and deletion

The merchant can permanently delete its local vault through self-service controls; the app destroys the local vault key and removes the encrypted files immediately. There is no recovery window or administrator deletion service.

If enabled, the review-response workspace retains merchant-authored reply text and merchant-owned media until the merchant deletes it, disconnects the integration, or deletes the organization. A self-service organization deletion removes it from live server storage within 30 days; an encrypted backup copy expires within 90 days and cannot restore the local vault.

We keep a minimal record only when needed for a legal requirement, tax or payment record, security or fraud protection, an opt-out, or a legal claim. It is kept only for that purpose and never used to reopen an account, restart a campaign, or market to a person. Anonymous statistics may remain if they cannot identify anyone or reconstruct customer data.

Your choices and rights

You can manage most data in the Service:

  • delete your account or organization in Settings → Privacy & Data;
  • manage team access, connected accounts, and review-request settings;
  • cancel renewal through billing controls; and
  • manage or delete enabled review-response drafts and media.

The self-service deletion flow requires reauthentication before confirmation. It is the only deletion route: email support cannot access a vault, submit a deletion for you, or restore deleted data. We respond to non-deletion privacy rights within the time required by applicable law. You may also complain to the privacy regulator that applies where you live.

Cookies, children, and security

We use only the cookies or local storage needed for sign-in, security, language, routing, and reliability. Optional analytics or non-essential storage stays off until the required notice and choice are available.

The Service is for adult business users. Merchants must not knowingly upload or message a child’s data. If we discover child data, we stop its use and delete it unless a law requires a minimal retained record.

We use reasonable technical and organizational safeguards, including access controls, encryption in transit, protected credentials, rate limits, and logging. No service can be perfectly secure.

Changes and contact

We show the effective date for this notice and give advance notice of material changes when required. For a privacy question or request, contact support.reviews@limocontechnologies.com.