Privacy Policy

Effective as of the date you first access or use Carnostic’s services

1. Commitment to Privacy

Carnostic (“we,” “us,” or “our”) respects your privacy and is committed to safeguarding the personal information you share with us. This Policy explains what data we collect, how we use it, and the choices you have. By using Carnostic’s website, applications, APIs, reports, or any related services (collectively “Services”), you consent to this Privacy Policy.

2. Information We Collect

We may collect the following categories of information:
a) Account & Contact Data – name, email address, phone number, and other identifiers you voluntarily provide.
b) Vehicle & Listing Data – images, videos, URLs, documents, VINs, odometer readings, condition notes, and any metadata contained therein.
c) Payment & Transaction Data – limited billing details processed through our payment provider; Carnostic never stores full card numbers.
d) Usage Data – log files, IP addresses, browser type, referral pages, device information, and cookies or similar technologies.
e) Communications – messages, comments, or support inquiries you send to us.
You may decline to provide certain information, but doing so may limit functionality.

3. How We Use Information

We process information to:
a) Deliver and improve Services – generate appraisal reports, enhance algorithms, debug, and ensure quality control.
b) Communicate with you – confirm submissions, provide reports, respond to inquiries, send operational updates, or offer new features you may find valuable.
c) Maintain security & integrity – detect fraud, prevent misuse, and secure accounts.
d) Comply with legal obligations – satisfy record-keeping, dispute-resolution, and regulatory requirements.
e) Conduct analytics & research – in aggregated or de-identified form that cannot reasonably identify you.
We do NOT sell or rent personal information to third parties for their own marketing.

4. Legal Bases for Processing

Where required by applicable law, we rely on one or more of the following grounds: (a) performance of a contract; (b) legitimate interests in providing and improving Services; (c) your consent; or (d) compliance with legal obligations.

5. Data Security

Carnostic follows industry-standard administrative, technical, and physical safeguards designed to protect information:
a) Encryption in transit (HTTPS/TLS) and at rest.
b) Restricted employee access on a need-to-know basis under confidentiality obligations.
c) Segmented production networks, firewalls, and continuous monitoring.
d) Regular security audits and vulnerability assessments.
While we strive to protect your data, no method of transmission or storage is entirely foolproof; you use the Services at your own risk.

6. Information Sharing

We share information only under these limited circumstances:
a) Service Providers – vetted vendors who assist with hosting, storage, payment processing, analytics, or customer support; they are bound by contractual confidentiality.
b) Legal & Safety – if required by law, subpoena, or to protect rights, property, or safety of Carnostic, our users, or the public.
c) Business Transfers – in connection with a merger, acquisition, or sale of assets, subject to the same or equivalent privacy commitments.
d) With Consent – for any other purpose you explicitly approve (e.g., making a report publicly viewable).

7. International Transfers

Carnostic is headquartered in the United States. If you access the Services from outside the U.S., you acknowledge that your information may be processed and stored in the U.S. or other jurisdictions, which may have data-protection laws differing from those in your country. We implement appropriate safeguards to protect such transfers.

8. Your Choices & Rights

Subject to local law, you may have rights to access, correct, delete, or restrict certain personal information, and to object to or withdraw consent for particular processing. Submit requests to privacy@carnostic.com. We may require verification before fulfilling requests.

You can limit cookies through browser settings, though some features may not function. Marketing emails include an unsubscribe link; operational communications are still necessary for Service delivery.

9. Data Retention

We retain information for as long as reasonably necessary for the purposes outlined in this Policy, including legal, accounting, or reporting needs, or to resolve disputes. When data is no longer required, we securely dispose of it or anonymize it.

10. Children’s Privacy

Carnostic’s Services are not directed to individuals under 18. We do not knowingly collect personal information from minors. If you believe a minor has provided information, contact us; we will promptly delete it.

11. Third-Party Links & Services

The Services may contain links to third-party sites or embed third-party content. Carnostic does not control and is not responsible for such external properties. Your interactions with third parties are governed by their privacy policies.

12. Changes to This Policy

We may update this Privacy Policy at our discretion. Material changes will be posted on our website. Continued use of the Services constitutes acceptance of the updated Policy.

13. Disclaimer & Limitation of Liability

Except as required by applicable law, Carnostic disclaims all liability for any loss, misuse, unauthorized access, disclosure, alteration, or destruction of information, and provides the Services “AS IS.” Your sole remedy for dissatisfaction with our privacy practices is to stop using the Services.