Privacy Policy
Last updated: September 24, 2026
This Privacy Policy explains how Verix LLC (“LotLiftr,” “we,” “us”) collects, uses, discloses, and protects information when you use the LotLiftr web application and Chrome browser extension (together, the “Service”). By using the Service you agree to this Policy.
1. Who this applies to
LotLiftr is a business-to-business tool used by automotive dealerships and their staff. We handle dealership business data, staff account information, and buyer information processed through the optional Marketplace lead and reply features described below.
2. Information we collect
- Account & authentication data: the email address and (hashed) password used to sign in, your display name, your role (manager or rep), and the dealership you belong to.
- Dealership information: dealership name, inventory source URL, plan/subscription tier, and configuration you provide.
- Scraped inventory data: vehicle and product listings we retrieve from your designated inventory page, including titles, prices, mileage, specifications, descriptions, and image URLs.
- AI-generated content: listing titles and descriptions generated from your inventory data, and replies generated using relevant buyer messages and inventory details.
- Facebook Marketplace listing URLs & posting activity: the URL of a listing a rep posts and which rep posted it, used for per-rep tracking and the manager leaderboard. We do not collect your Facebook password. The extension works within your signed-in Facebook session to read listing information, including listing links, displayed prices, and status.
- Marketplace conversations and leads: when you choose Scan inbox, visible buyer names, message previews, listing titles, and conversation identifiers are sent to LotLiftr to match conversations with your dealership’s inventory and save matching leads. Reply processing may also read the relevant buyer message and record generated replies and delivery outcomes.
- Usage & operational data: scrape run logs, refresh counts, budget usage, error reports, and similar telemetry.
- Cookies & session data: a session cookie that keeps you signed in. See “Cookies” below.
- Support communications: messages you send us through the contact form, including your name and email.
3. How we use information
- To provide, operate, and maintain the Service.
- To scrape and enrich your inventory and prepare listings.
- To attribute postings to reps and power the leaderboard.
- To match Marketplace conversations to inventory and organize buyer leads.
- To generate AI replies and, when you enable Auto-reply, send eligible responses through your signed-in Facebook account.
- To enforce plan limits, budgets, and refresh cadence.
- To send transactional email (sign-in, billing, alerts, support).
- To secure the Service, prevent abuse, and debug errors.
- To comply with legal obligations.
4. Service providers (sub-processors)
We share data with the following processors strictly to operate the Service. Each is bound by its own terms and privacy commitments:
- Supabase: database, authentication, and storage.
- Vercel: application hosting and edge delivery.
- Firecrawl: inventory web scraping.
- Google (Gemini API): AI enrichment of listings and reply generation using relevant buyer-message content and inventory details.
- Stripe: subscription billing and payment processing.
- Resend: transactional email delivery.
- Sentry: error monitoring and diagnostics.
- Upstash: rate limiting and caching.
We do not sell your personal information. Payment card details are handled directly by Stripe; we never store full card numbers.
5. Cookies and sessions
We use strictly necessary cookies to keep you authenticated. We do not use third-party advertising or cross-site tracking cookies. Disabling session cookies will prevent you from signing in.
6. Data retention
We retain account and dealership data for as long as your account is active and as needed to provide the Service. Inventory and associated history support listing tracking and inventory updates. Saved lead data and reply records are not deleted merely by turning off Auto-reply or signing out of the extension. See the contact process below for deletion requests. We retain certain records as required for legal, tax, and audit purposes.
7. Your rights and data deletion
Depending on your jurisdiction, you may have rights to access, correct, export, or delete your personal information. To exercise any of these rights, or to request deletion of your account and associated data, contact us at our contact page. We will respond within the timeframe required by applicable law.
8. Security
We use industry-standard safeguards including encrypted transport, row-level tenant isolation, and least-privilege access. No system is perfectly secure; you are responsible for keeping your credentials confidential.
9. International transfers
Our providers may process data in the United States and other countries. By using the Service you consent to such transfers where permitted by law.
10. Children
The Service is a business tool not directed to children and is not intended for anyone under 18.
11. Changes to this Policy
We may update this Policy. Material changes will be posted here with a new “Last updated” date.
12. The browser extension
The LotLiftr Chrome extension is an optional tool that prefills the Facebook Marketplace listing form from your dealership inventory. You review every listing and click Publish yourself. The extension never publishes a Marketplace listing or clicks Publish for you. This is separate from optional Auto-reply, which can send messages as described below.
When you use it, the extension handles:
- Authentication information: the email and password you enter at sign-in are sent to our authentication provider (Supabase), and the resulting session token is stored locally on your device so you stay signed in.
- Personally identifiable information: your sign-in email address, which identifies your LotLiftr account and the rep a post is attributed to.
- Website content: it reads the Facebook Marketplace page you are creating or viewing in order to prefill the listing form from your inventory and to capture the published listing’s URL. That URL, and the fact that you posted it, are sent to LotLiftr for per-rep tracking and the manager leaderboard. It also reads listing prices and status for listing checks and price reviews.
- Inbox scanning: when you choose Scan inbox, the extension reads visible Marketplace conversation information, including buyer names, message previews, listing titles, and conversation identifiers. This information is sent to LotLiftr to match conversations with your dealership’s inventory and save matching leads. Scanning with Auto-reply turned off does not send replies.
- AI replies: when you use AI reply features, relevant buyer-message content and inventory details are sent to Google’s Gemini API to generate a response. If you enable Auto-reply, the extension may open eligible conversations and send responses through your signed-in Facebook account without requiring approval of each message. Confirm that Facebook and LotLiftr are signed into the intended seller and rep accounts before enabling it.
The extension works within your signed-in Facebook session. It does not collect or store your Facebook password, collect your browsing history, or monitor unrelated browsing. It interacts with supported Facebook pages for the features above and with LotLiftr’s installation page to report extension readiness. Extension data is used to provide these features and is processed by the relevant service providers described above; we do not sell it or use it for advertising.
13. Contact
Questions? Reach us via the contact page or write to Verix LLC, 801 Booth Rd., Warner Robins, GA 31088.
