Privacy Policy

How we collect, use, and protect your personal data

Overview

This privacy policy explains how Tessera Software UG ("we", "us", "our") collects, uses, and protects your personal information in connection with our Review Manager service, which is available exclusively through contractual agreements.

We are committed to protecting your privacy and ensuring transparency about our data practices in compliance with the General Data Protection Regulation (GDPR) and other applicable privacy laws.

Last Updated: September 18, 2025

Data Controller

Tessera Software UG

Rheingasse 34

50676 Köln

Deutschland

Email: info@tessera-software.com

Phone: +49 178 38 38 455

Data We Collect

Personal Data

We collect the following types of personal data:

  • Name and contact information (email address)
  • Google account information (when you sign in with Google)
  • Google Business Profile data and reviews
  • Usage data and analytics (how you interact with our service)

Legal Basis for Processing

We process your personal data based on the following legal grounds:

  • Consent (Art. 6(1)(a) GDPR): When you give us explicit consent to process your data
  • Contract Performance (Art. 6(1)(b) GDPR): To fulfill our contractual obligations under the signed service agreement between you and Tessera Software UG
  • Legitimate Interest (Art. 6(1)(f) GDPR): To improve our services and ensure security

Your Rights Under GDPR

You have the following rights regarding your personal data:

  • Right of Access: Request a copy of your personal data we hold
  • Right to Rectification: Request correction of inaccurate personal data
  • Right to Erasure: Request deletion of your personal data
  • Right to Data Portability: Request transfer of your data in a structured format
  • Right to Object: Object to processing based on legitimate interests

Data Retention

We retain your personal data only as long as necessary to provide our services and comply with legal obligations. Account data is deleted within 30 days of account termination, unless legal requirements mandate longer retention.

Cookies and Local Storage

We use only strictly necessary cookies and local storage to provide our service:

Types of cookies we use:

  • Authentication: Authentication cookies - Required for secure login and session management
  • Security: Security cookies - Required to protect against unauthorized access
  • Preferences: User preferences - Stored locally in your browser (language settings, UI preferences)

Notice: These cookies are essential for the service to function and do not require consent under GDPR Article 5(3).

Third-Party Services

We use the following trusted third-party services to provide our platform:

Service Providers

  • Google: For authentication and accessing Google Business Profile data
  • Supabase: For secure data storage and processing (EU-hosted)

Third-Party Privacy Policies

  • Google Privacy Policy: policies.google.com/privacy
  • Google API Services User Data Policy: developers.google.com/terms/api-services-user-data-policy

Google Business Profile Data

When you connect your Google account, we access the following data via Google Business Profile API:

Data we access:

  • Business location information (name, address, phone number, business hours)
  • Customer reviews and ratings for your business locations
  • Your responses to customer reviews
  • Google Posts you've created for your business

How we use this data:

  • Display reviews in our dashboard for you to monitor and manage
  • Generate AI-powered reply suggestions to help you respond efficiently
  • Post responses to Google on your behalf when you approve them
  • Sync your business information to websites you create through our platform
  • Provide analytics and insights about your review performance

Google API Services User Data Policy

Tessera's use and transfer to any other app of information received from Google APIs will adhere to Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data for serving advertisements. We do not allow humans to read your data unless we have your consent, it is necessary for security purposes, or it is required by law.

Disconnecting Your Google Account

You can revoke our access to your Google account at any time:

  • In our app: Go to Settings → Connections → Disconnect Google Account
  • Via Google: Visit myaccount.google.com/permissions and remove Tessera access

Upon disconnection, we will:

  • Immediately stop accessing your Google Business Profile data
  • Delete cached Google data within 30 days
  • Retain only anonymized, aggregated analytics data that cannot identify you

Contact Us

If you have any questions about this privacy policy or wish to exercise your rights, please contact us:

Email: info@tessera-software.com

Address: Tessera Software UG, Rheingasse 34, 50676 Köln