PriceTilt Privacy Policy
Version 1.0 · Effective: June 2, 2026 · Last updated: June 2, 2026
1. Introduction
This Privacy Policy describes how PriceTilt LLC (“PriceTilt,” “we,” “us,” or “our”) collects, uses, shares, and protects information about you when you use the PriceTilt service, including our websites at pricetilt.com and app.pricetilt.com, and any related features, applications, or services we offer (collectively, the “Service”).
PriceTilt is a buyer’s intelligence platform that provides home buyers with negotiation-relevant information about specific residential properties. The Service offers two tiers: a free tier with an AI-assisted, grounded property chat and summary drawing on publicly available information, and a paid tier (“PriceTilt Pro”) that adds a verified numeric Tilt Score and factor breakdown from licensed property data, persistent saved reports, cross-session chat memory, alerts on saved properties, and multi-property comparison.
By using the Service, you agree to the collection, use, and sharing of your information as described in this Privacy Policy. If you do not agree, please do not use the Service.
Service intended for U.S. residents. PriceTilt is intended for use by individuals located in the United States. We do not knowingly direct or market the Service to individuals outside the United States. If you are accessing the Service from outside the U.S., your information may not be protected under non-U.S. data protection laws to which you may be accustomed.
2. Information We Collect
We collect information that you provide directly, information collected automatically when you use the Service, and information from third-party providers.
2.1 Information You Provide Directly
Account information. You create an account either with an email address and password, or via Single Sign-On (“SSO”) through Google. We collect: - If you use email/password: your email address (verified by a one-time code) and a password, which is hashed and stored by our identity provider (AWS Cognito); we never see or store your plaintext password. - If you use Google SSO: your name, email address, and a unique identifier from Google.
We do not access additional information from your SSO provider beyond what is necessary to authenticate you and set up your account. We may add additional SSO providers (such as Facebook or Apple) in the future; this Policy will be updated when we do.
Property search and scoring activity. When you use the Service, we collect: - Property addresses you enter - Asking prices you enter - Date and time of each scoring request - Your account tier at the time of each request
Chat conversations (free and paid tiers). Chat is available on the free tier (subject to usage limits) and the paid tier (unlimited, with cross-session memory). When you interact with the chat feature, we collect: - Messages you send - Responses generated by our service - Date and time of each conversation turn - Tools invoked during the conversation (e.g., web searches, property-data lookups) - On the free tier, a count of your daily messages (to enforce usage limits)
Saved content (paid tier). When you save a property, we collect: - The property (address and a place identifier) and the asking price you entered - The date you saved it. Multi-property comparison is generated on demand from your saved properties; we do not store free-text notes or named comparison sets.
Payment information (paid tier). When you upgrade to a paid tier: - We do not store your credit card number, expiration date, or CVV. These are processed and stored by Stripe, our payment processor. - We store your Stripe customer identifier, subscription status, plan tier, and billing email if different from your account email.
Buyer’s-agent invite code information. If you redeem an invite code from a buyer’s agent: - The code you redeemed - The issuing agent’s name, brokerage, and contact information (provided by the agent) - The agent-buyer association (linking your account to the inviting agent for the duration of the invite-code access period)
Communications with us. If you contact our support or otherwise correspond with us, we retain those communications and any information you provide in them.
2.2 Information Collected Automatically
Server and request logs. Our servers automatically record standard request information for security, abuse prevention, rate limiting, and reliability, including: - Your IP address - Request metadata (timestamps, the API endpoints called, and error/diagnostic information). We do not operate third-party product-analytics or behavioral-tracking tools, and we do not derive your geographic location from your IP address beyond what is inherent in routine server logging.
Cookies and similar technologies. We use cookies and similar technologies for authentication (via AWS Cognito), session management, security, and to remember your preferences. We do not use cross-site tracking cookies or third-party advertising trackers. We do not participate in cross-context behavioral advertising. See our Cookie Policy below (Section 13).
2.3 Information from Third Parties
Property data providers. To generate reports and Tilt Scores, we obtain licensed property data from ATTOM Data Solutions, including deed records, tax assessment data, property characteristics, building permits, ownership records, sales history, automated valuation model (AVM) data, and related information. This information relates to specific properties and may include the names of property owners as recorded in public records.
Government and public data. Property attributes such as flood-zone designation are obtained through our licensed property-data provider (ATTOM), which sources from government and public records. For the paid-tier cost-to-own calculator, we use the current average mortgage rate from the Federal Reserve Economic Data (FRED) service (no personal information is sent to FRED).
Web search. For free-tier reports and certain chat queries, we use Tavily (or a similar provider) to search publicly available web content. Web search results are processed to inform your report but are not separately retained as your personal information.
2.4 Information We Do NOT Collect
To be explicit about practices we deliberately avoid:
- We do not collect, store, or use racial, religious, national-origin, sexual-orientation, gender-identity, familial-status, or disability information about you. We do not use such information in any aspect of the Service.
- We do not perform any cross-context behavioral advertising or share your information with advertising networks.
- We do not access your contacts, calendar, location data, microphone, camera, or other device-level information beyond what your browser provides during normal web use.
- We do not collect biometric information.
- We do not knowingly collect information from individuals under the age of 18.
3. How We Use Your Information
We use the information we collect for the following purposes:
3.1 To Provide the Service
- To authenticate you and maintain your account
- To generate Tilt Reports and (for paid users) verified Tilt Scores
- To enable the chat feature with appropriate context
- To save and retrieve your reports, comparisons, and conversation history
- To process payments and manage your subscription
- To send service-related communications (account confirmations, payment receipts, alert notifications, security notices)
- To enforce our Terms of Service and prevent abuse
3.2 To Improve the Service
- To calibrate our scoring methodology against observed property-market outcomes (the “calibration corpus”)
- To improve our system prompts, report templates, and methodology
- To analyze aggregated patterns of usage, errors, and feature engagement
- To develop new features
- To monitor performance, security, and reliability
3.3 To Communicate With You
- To respond to your inquiries and provide customer support
- To send important administrative communications about the Service
- To send optional marketing communications, where permitted (you may opt out at any time --- see Section 6)
3.4 To Comply With Legal Obligations
- To respond to subpoenas, court orders, regulatory requests, and other legal process
- To enforce our Terms of Service
- To detect and prevent fraud, abuse, security incidents, and harmful activity
- To establish, exercise, or defend legal claims
3.5 For Aggregated Research and Analysis
We may use aggregated, de-identified information for research, analysis, and commercial purposes --- including the development of aggregated market intelligence, methodology calibration studies, and property-market research reports. Aggregated or de-identified information is not personal information under this Policy. See Section 4.3 below.
4. How We Share Your Information
We share your information in the following circumstances:
4.1 With Service Providers
We share information with third-party service providers who process information on our behalf to operate the Service:
- Amazon Web Services (AWS): hosting (Amplify, Lambda, API Gateway), database (DynamoDB), file storage (S3), authentication (Cognito), AI/LLM (Bedrock), maps and address lookup (Amazon Location Service), secrets management, logging and monitoring (CloudWatch), and related services.
- Stripe: payment processing and subscription management.
- Tavily (or similar provider): web search for report generation.
- ATTOM Data Solutions: licensed property data provider.
- AWS Bedrock with Anthropic Claude: large language model service for report generation and chat. Per AWS’s commercial terms, your inputs and outputs are not used to train the underlying model.
- Federal Reserve Economic Data (FRED): current average mortgage-rate data for the paid-tier cost-to-own calculator (no personal information is sent).
These service providers are contractually bound to use information only to provide services to us and to protect the information they handle.
4.2 With Buyer’s Agents (B2B2C)
Note: the buyer’s-agent invite program and the associated agent dashboard are not yet generally available. When offered, the following will apply. If you redeem an invite code from a buyer’s agent, we share with that agent: - The fact that you redeemed their code and have an active paid-tier account - The properties you have analyzed using the Service while under the invite-code access
We do not share with the agent: the contents of your chat conversations, your saved notes, or any communication you have with PriceTilt support.
This sharing supports the buyer’s agent’s representation of you in a real estate transaction. You may revoke this association by contacting PriceTilt support.
4.3 Aggregated and De-Identified Information
We may share aggregated or de-identified information --- information that has been processed so that it cannot reasonably be linked to you or your household --- with third parties for research, analysis, and commercial purposes. This may include, without limitation:
- Aggregated property-market insights and trend reports
- Aggregated user behavior patterns (e.g., common search categories, regional usage patterns)
- Calibration data showing scoring accuracy across property categories
- Research outputs for academic, journalistic, or industry purposes
Aggregated or de-identified information is not personal information under this Policy. We do not re-identify or attempt to re-identify aggregated or de-identified information and we contractually require any recipients of such information not to re-identify it.
4.4 In Business Transfers
If we are involved in a merger, acquisition, financing, reorganization, bankruptcy, sale of all or part of our assets, or other transfer of ownership or control, your information may be transferred to the successor entity. The successor entity will be bound by the privacy commitments of this Policy or will notify you of any material changes.
4.5 For Legal Compliance and Protection
We may disclose information if we believe disclosure is required to: - Comply with applicable law, regulation, legal process, or governmental request - Enforce our Terms of Service - Detect, prevent, or otherwise address fraud, security, or technical issues - Protect the rights, property, or safety of PriceTilt, our users, or the public
4.6 With Your Consent
We may share your information with other parties when you give us explicit consent to do so.
4.7 What We Do NOT Do
To be explicit:
- We do not sell your personal information as that term is defined under the California Consumer Privacy Act (CCPA). We do share aggregated/de-identified information as described above, but aggregated/de-identified information is not personal information.
- We do not share your personal information for cross-context behavioral advertising. We do not participate in advertising networks.
- We do not share the contents of your chat conversations with anyone other than the service providers needed to deliver the chat feature (e.g., AWS Bedrock).
5. Data Retention
We retain your information for as long as your account is active and for a reasonable period thereafter to: - Allow you to reactivate your account - Comply with our legal obligations - Resolve disputes - Enforce our agreements - Preserve the integrity of our calibration corpus and methodology
Specific retention practices:
- Account information: retained for the lifetime of your account plus 7 years after account closure, or as required by applicable law
- Scoring records: not linked to your identity (keyed to the property, not to you) and retained indefinitely as part of our methodology calibration corpus
- Chat conversations: retained for the lifetime of your account and removed when you delete your account (we do not currently offer deletion of individual conversations separately from account deletion)
- Saved reports: retained for the lifetime of your account; subscription-lapsed accounts retain read-only access to saved reports per our Terms of Service
- Payment records: retained for 7 years for tax and accounting compliance
- Server logs: retained for 30 days
After account deletion, we may retain aggregated/de-identified information indefinitely as it is no longer personal information under this Policy.
6. Your Rights and Choices
6.1 Account Access and Modification
You may access, update, or correct your account information at any time through your account settings. You may delete your account at any time from your account settings (Account, then Delete account). Deletion is immediate and removes your account identity and associated data --- profile, saved properties, alerts, and chat history --- and cancels any active subscription. You may also request deletion by emailing support@pricetilt.com.
6.2 Communications Preferences
You may opt out of marketing communications at any time using the unsubscribe link in any marketing email. You cannot opt out of essential service communications (account confirmations, security notices, payment receipts) while you have an active account.
6.3 California Privacy Rights (CCPA / CPRA)
If you are a California resident, you have the following rights under the California Consumer Privacy Act and California Privacy Rights Act:
- Right to Know. You may request that we disclose the categories and specific pieces of personal information we have collected about you, the sources of that information, the purposes for collection, and the categories of third parties with whom we share information.
- Right to Delete. You may request that we delete personal information we have collected from you, subject to legal exceptions.
- Right to Correct. You may request that we correct inaccurate personal information we maintain about you.
- Right to Limit Use of Sensitive Personal Information. Although we do not deliberately collect “sensitive personal information” as defined under California law, if any is inadvertently collected (e.g., through chat conversations), you may request that we limit its use.
- Right to Non-Discrimination. We will not discriminate against you for exercising your privacy rights.
To exercise these rights, contact us at privacy@pricetilt.com. We will respond within 45 days as required by California law and may extend the response period by 45 additional days when reasonably necessary.
Authorized agents. You may designate an authorized agent to make requests on your behalf. We may require verification of the agent’s authority.
Do Not Sell or Share My Personal Information. As stated in Section 4.7, we do not sell personal information or share it for cross-context behavioral advertising. Accordingly, no opt-out is required for our practices. If our practices change, we will update this policy and provide an opt-out mechanism.
6.4 Other State Privacy Rights
If you are a resident of a U.S. state with applicable privacy legislation (including but not limited to Virginia, Colorado, Connecticut, Texas, Oregon, Washington, and other states with comprehensive privacy laws), you may have rights similar to those described in Section 6.3. To exercise these rights, contact us using the address above. We will honor verified requests in accordance with applicable state law.
6.5 Cookies and Tracking
You may configure your browser to refuse cookies. Note that doing so may impair the functionality of authenticated areas of the Service. We do not honor Global Privacy Control (GPC) signals at this time because we do not engage in sale or sharing for cross-context behavioral advertising. If our practices change, we will honor GPC signals as required by law.
6.6 Account Closure
You may close your account at any time. When you delete your account, your account identity and associated personal information are removed promptly (typically immediately). Residual copies in backups and server logs are purged within 30 days. De-identified scoring data that is not linked to you is retained as described in Section 5.
7. Security
We use industry-standard security measures to protect your information from unauthorized access, disclosure, alteration, and destruction. These measures include:
- AES-256 encryption at rest for all data stored in AWS DynamoDB and S3
- TLS 1.3 encryption in transit for all communications with our service
- AWS Cognito for identity management (passwords are hashed by Cognito; we never see your plaintext password)
- AWS Secrets Manager for API key and credential storage
- Least-privilege IAM role configuration with environment-isolated permissions
- Periodic review of our configuration, dependencies, and access controls
- AWS Bedrock Guardrails on all LLM invocations for content filtering and PII detection
No security measure is perfect. Despite our efforts, we cannot guarantee that information will be absolutely secure. We will notify affected users in the event of a security breach as required by applicable law.
See our Trust page at pricetilt.com/security for more details.
8. Children’s Privacy
The Service is not directed to children under the age of 18, and we do not knowingly collect information from individuals under 18. If we learn that we have collected information from a person under 18, we will delete it. If you believe we have inadvertently collected such information, please contact us at [privacy@pricetilt.com].
9. International Users
The Service is intended for use by individuals located in the United States. If you access the Service from outside the United States, please be aware that your information will be processed in the United States, which may have data protection laws that are different from your country. We do not currently market the Service to individuals outside the U.S. and do not represent that the Service complies with the General Data Protection Regulation (GDPR) or other non-U.S. privacy frameworks.
10. Third-Party Links and Sources
The Service may contain links to or cite content from third-party websites and services (for example, government data portals, news media, and real estate information services). This Privacy Policy does not apply to those third parties, and we are not responsible for their privacy practices. Please consult the privacy policies of any third party before providing information to them.
11. Methodology Disclosure
PriceTilt’s scoring methodology and system prompts are proprietary and we do not disclose their specific weights, formulas, or internal structure in any user-facing response. This is a business decision, not a privacy decision. However, you have the right to understand what information about you (not about our methodology) we collect and use, and this Policy describes those practices.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you by email and/or by prominent notice on the Service before the changes take effect. The “Last updated” date at the top of this Policy indicates when it was last revised. Your continued use of the Service after the effective date constitutes acceptance of the updated Policy.
13. Cookie Policy
We use cookies and similar technologies for the following purposes:
- Authentication. AWS Cognito session cookies authenticate your account across requests. These are required for the paid-tier features to function.
- Session management. We use session cookies to maintain state during your visit.
- Preferences. We may use cookies to remember your preferences (e.g., theme, region).
We do not use: - Third-party tracking cookies - Advertising cookies - Cross-site behavioral tracking - Fingerprinting or device tracking
You may disable cookies in your browser settings. Doing so may impair authentication and prevent access to paid-tier features.
14. Notice at Collection (CCPA Required)
This Notice at Collection is provided at or before the point of collection of your personal information, as required by California law.
Categories of personal information we collect (over the past 12 months):
Category (Cal. Civ. Code § 1798.140) Examples
Identifiers Name (Google sign-in), email, IP address, provider id
Customer records information Name, billing email, contact information
Commercial information Service tier, properties scored, subscription status
Internet activity information Pages visited, features used, search queries within the Service
Geolocation data None inferred; IP appears in server logs only
Audio, electronic, visual information None collected
Professional/employment information None collected
Inferences drawn from other PI None used for behavioral profiling or advertising
Categories of sensitive personal information we collect:
We do not deliberately collect sensitive personal information as defined under California law. Chat conversations are user-generated and may inadvertently include sensitive information that you choose to share --- we recommend not sharing sensitive personal information in chat. If sensitive information is inadvertently collected, you may request that we limit its use under Section 6.3.
Purposes for collection:
- Provide the Service (account, scoring, chat, saved reports, payment)
- Improve the Service (calibration corpus, methodology evolution)
- Communicate with you (service messages, optional marketing)
- Comply with legal obligations
- Security and fraud prevention
- Aggregated research (de-identified only)
Sale or sharing of personal information:
We do not sell or share personal information for cross-context behavioral advertising.
Retention: See Section 5 above.
15. Contact Us
For privacy-related questions, requests, or concerns:
By email: privacy@pricetilt.com
By mail: PriceTilt LLC [Mailing address --- to be set after entity formation; PO Box or registered agent address] Seattle, WA
For general support: support@pricetilt.com.
Companion Document: Data Collection Notice (for use at signup form)
Before you sign up:
When you create a PriceTilt account (with an email and password, or via Google), we collect:
- Your email address (and your name, if you sign in with Google)
- The properties you search and prices you enter (used to generate your reports)
- Your chat conversations with our service
- Service usage data (request and error logs)
We use this information to provide the PriceTilt service, to improve our scoring methodology, and to communicate with you. We may share aggregated and de-identified information --- never your individual identifying information --- for research and commercial purposes.
We do not: - Sell your personal information - Share your information for advertising - Collect race, religion, family status, or other protected demographics - Knowingly collect information from people under 18
California residents have specific rights to know, delete, and correct their information. See our Privacy Policy for full details.
By signing up, you agree to our Terms of Service and Privacy Policy.
[Sign up with email / Continue with Google --- buttons]