Plain-language summary. GBP Autopilot is a software tool for local business owners. We collect the account and business information you give us, public data about your Google Business Profile, and basic usage data. We do not contact your customers and we do not process your customers' personal data — we only generate suggested text and analytics for you to use yourself. We don't sell your data. Payments are handled by our merchant of record, Dodo Payments. You have rights over your data (access, deletion, etc.).

This Privacy Policy explains how P/E Danylo Klymenko, doing business as GBP Autopilot ("we", "us"), registered in Georgia at Tbel Abuseridze street, N 38, flat N 63, Batumi, Adjara 6010, Georgia, collects, uses, and shares information when you use gbpauto.pro and the GBP Autopilot application (the "Services").

1. Information we collect

1.1 Information you provide

  • Account data: name, email address, password (stored only as a hash), and authentication identifiers (e.g., Google sign-in ID).
  • Business data: the business name, location, categories, Google Business Profile identifiers, keywords, competitors, and similar information you enter or connect so we can provide rank tracking, audits, and content suggestions.
  • Support and communications: messages you send us.

1.2 Information collected automatically

  • Usage and device data: pages viewed, features used, approximate location derived from IP, browser/device type, and timestamps, via Google Analytics 4 on our public website (loaded only after cookie consent), our self-hosted analytics inside the app, and server logs.
  • Cookies: see our Cookie Policy.

1.3 Billing data

We do not store full payment card details. Payments are processed by our merchant of record, Dodo Payments. We receive limited billing records (plan, status, last four digits, country for tax) needed to manage your subscription.

1.4 What we do NOT collect

We are a tool you operate. We do not collect, store, or process the personal data of your end customers, and we do not send SMS or email messages to them on your behalf. Any message templates or replies we generate are provided to you; whether, how, and to whom you send them is entirely your decision and responsibility (see our Terms).

2. How we use your information

To provide and operate the Services; authenticate you; track rankings and audit your profile using public data and third-party SEO data; generate content suggestions; process subscriptions; send you transactional and service emails; secure and improve the Services; and comply with law.

3. Legal bases (EEA/UK)

We process data to perform our contract with you (provide the Services), for our legitimate interests (securing and improving the Services), to comply with legal obligations, and with your consent where required (e.g., non-essential cookies).

4. When and with whom we share information

We do not sell your personal information. We share it only with service providers ("subprocessors") that help us run the Services, under appropriate agreements:

  • Hetzner — server hosting (EU).
  • DigitalOcean Spaces — file/object storage.
  • Brevo — transactional email to you (verification, password reset, alerts).
  • Dodo Payments — payments and tax, as merchant of record.
  • Google — Google Business Profile API and AI text generation (Gemini) for the suggestions you request.
  • Google Analytics — aggregated website-traffic analytics on gbpauto.pro (loaded only after cookie consent; Google advertising features disabled).
  • DataForSEO — search-ranking and competitor data used for your rank tracking and audits.

We may also disclose information to comply with law, enforce our terms, protect rights and safety, or in connection with a merger or acquisition.

5. AI-generated content

Some features generate text (e.g., review replies, keyword ideas, outreach templates) using AI. The inputs you provide for these features are sent to the AI provider to produce the output. Outputs are suggestions only — you are responsible for reviewing them and for how you use them. We do not make automated decisions that produce legal or similarly significant effects about individuals.

6. Google API data

If you connect a Google account or Google Business Profile, our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We use that data only to provide the features you request.

7. International transfers

We are based in / host primarily in the EU. Where data is transferred internationally, we rely on appropriate safeguards (e.g., Standard Contractual Clauses).

8. Data retention

We keep account and business data while your account is active and for a reasonable period afterward to meet legal, tax, and security obligations, then delete or anonymize it. You can request deletion at any time (see §10).

9. Security

We use session cookies, hashed passwords (argon2), encryption in transit (TLS), least-privilege access, and isolated infrastructure. No method is 100% secure, but we work to protect your data.

10. Your rights

Depending on your location (e.g., GDPR/UK GDPR, CCPA/CPRA), you may have rights to access, correct, delete, port, or restrict processing of your data, and to object or withdraw consent. To exercise them, email privacy@gbpauto.pro. We do not discriminate against you for exercising your rights.

11. Children

The Services are not directed to anyone under 18, and we do not knowingly collect their data.

12. Changes

We may update this Policy; we will post the new version here and update the "Last updated" date. Material changes will be communicated where appropriate.

13. Contact

P/E Danylo Klymenko (doing business as GBP Autopilot) Tbel Abuseridze street, N 38, flat N 63, Batumi, Adjara 6010, Georgia Email: privacy@gbpauto.pro · Phone: +995 (511) 11-14-73