Privacy Policy
This policy covers every software product operated by Ramara LLC, including HearingBrief, EarlyBidr, and any successor or related property. It explains what personal information we collect from subscribers, why, who processes it on our behalf, and how to access or delete it.
1. What we collect from you
- Account: email address, and optionally firm/company name, phone, primary practice area or trade, and product-specific onboarding fields (e.g., preferred jurisdictions or bid categories).
- Billing: Stripe payment tokens and last-four card digits (Stripe holds the actual card). Subscription status, plan, and billing history.
- Product usage: watchlists / alert profiles you build, records viewed, matches delivered, links clicked in briefs, session/login timestamps, and error logs.
- Communication: emails you send to our support, help, or billing addresses.
We do not collect the content of your case files, bids, matters, or client data. We only see the profiles you configure and the records we deliver to you.
2. Why we collect it
- To provide the Services (deliver alerts, render dashboards, enforce plan limits).
- To bill you and maintain the payment records the IRS and Stripe require.
- To measure product usage in aggregate (feature adoption, performance) — not to sell or share individual behavior.
- To notify you of material product changes and terms updates.
- To respond to support requests.
3. Who else processes your data
Every Ramara product runs on a small, vetted set of subprocessors. Each has a contractual obligation to process data only for our purposes.
- Vercel — web hosting + serverless functions (United States).
- Neon — managed Postgres for account and product data (United States).
- Stripe — payment processing and customer portal (United States, PCI-DSS).
- Resend (delivery backed by Amazon SES) — transactional email (authentication + product alerts).
- Cloudflare — DNS and edge routing.
- OpenStreetMap and similar public tile services — base map tiles for products with geographic filters.
We do not sell your data. We do not share it with data brokers or marketing networks. We do not run behavioural advertising pixels on any product.
4. Analytics and cookies
Where enabled, we use privacy-friendly product analytics (Plausible) that measures page views and session counts in aggregate without individual tracking cookies or cross-site profiles. Session cookies are used only for authentication. We do not deploy third-party ad cookies.
5. Your rights
You can access, export, or delete your personal information at any time. Email privacy@ramara.net and we will action the request within 30 days.
- Access / export: a JSON bundle of your account data, watchlists / alert profiles, and delivered matches.
- Correction: update your account and onboarding fields directly in the product dashboard.
- Deletion: we delete your account record and personally-identifying information from production databases within 30 days of request. Aggregate, de-identified usage metrics may be retained for capacity planning.
- Opt-out of product email: transactional alerts can be paused from the product dashboard; billing and legal-notice emails are required as long as your subscription is active.
6. Data retention
Public records we extract (meeting transcripts, permit filings, decision archives) are retained indefinitely as part of the searchable corpus. That corpus is a record of public information and does not contain your personal data.
Your account, watchlists / alert profiles, and delivery logs are retained while your subscription is active, plus 90 days for billing and audit reasons after cancellation. Payment records are retained for seven years per U.S. tax law.
7. Security
All product traffic is served over TLS. Where our products use magic-link authentication, no passwords are stored. Payment card data is stored by Stripe, not by us. Database backups are encrypted at rest. Administrative access is restricted and logged.
8. Children
Ramara products are professional tools sold to attorneys, contractors, developers, and analysts. We do not knowingly collect personal information from anyone under 18.
9. California, GDPR, and other regional notices
If you are a California resident, you have additional rights under the CCPA/CPRA (right to know, right to delete, right to opt out of sale — we do not sell). If you are in the EEA/UK, you have GDPR rights (access, rectification, erasure, restriction, portability). Ramara LLC is the data controller. Email privacy@ramara.net to exercise any of these rights.
10. Changes to this policy
We update this page when practices change. Material changes are emailed to your account address at least 14 days before they take effect. The date at the bottom of this page always reflects the current version.
11. Contact
Privacy questions: privacy@ramara.net.
Ramara LLC · Effective 2026-08-05.