Privacy & Security

Your Privacy Matters to Us

Effective Date: April 16, 2026  ยท  Rolling Repairs LLC, Acworth, Georgia

At Rolling Repairs, protecting your personal information isn't an afterthought โ€” it's built into every layer of how our platform works. This page explains exactly what data we collect, how it's protected, and the technical security measures we've put in place to keep your account and information safe.

Security at a Glance

๐Ÿ”

Multi-Factor Authentication

Admin accounts are protected with Time-based One-Time Password (TOTP) MFA โ€” a six-digit rotating code required at every login.

๐Ÿ”’

256-Bit Encryption in Transit

All data transmitted between your device and our servers is encrypted using TLS โ€” the same standard used by banks and major e-commerce platforms.

๐Ÿ›ก๏ธ

Database Access Rules

Server-side database rules enforce that each customer can only access their own appointments. No customer can view, modify, or delete another customer's data.

๐Ÿ“ต

Card Data Never Stored

We never store your card number, CVV, or expiry on our servers. Payment processing will be handled exclusively through Stripe's PCI-compliant infrastructure.

๐Ÿงฑ

Content Security Policy

Our web server enforces strict Content Security Policy headers that block unauthorized scripts and prevent cross-site scripting (XSS) attacks.

โšก

Rate Limiting

Booking submissions are rate-limited to five per 24-hour period per account, protecting against automated abuse and spam.

1. Information We Collect

When you create a Rolling Repairs account or book a service, we collect the following:

We do not collect your Social Security number, government ID, or financial account information. Payment card details are processed by Stripe and are never transmitted to or stored on Rolling Repairs servers.

2. How Your Account Is Protected

Your Rolling Repairs account is secured through an industry-standard cloud authentication platform used by thousands of production applications. Here's how it protects you:

3. Database Security

All customer data is stored in a fully managed cloud database with automatic encryption at rest, operated by Google. Access is governed by server-side security rules that we have written and deployed โ€” these rules are enforced at the infrastructure level and cannot be bypassed by client-side code.

Specifically, our rules enforce the following:

4. Website & Infrastructure Security

The Rolling Repairs website and customer portal are built with security hardening at the server and application level:

5. Payment Security

Rolling Repairs takes payment security extremely seriously. Our payment architecture is designed with one core principle: your card data never touches our servers.

6. How We Use Your Information

We use the information we collect exclusively to:

We do not sell, rent, or trade your personal information to any third party for marketing or advertising purposes. We do not use your data to train AI models. We do not share your information with any outside party except as required to deliver the service (e.g., payment processing via Stripe) or as required by law.

7. Data Retention

We retain your account and appointment records for up to 3 years following your last appointment. This is necessary for warranty tracking, legal compliance, and service history. You may request deletion of your account and associated data at any time by contacting us at rollingrepairsco@gmail.com. Deletion requests are processed within 30 days, subject to any legal hold requirements.

8. Your Rights

You have the right to:

9. Changes to This Policy

We may update this Privacy & Security Policy as our platform evolves. When we make material changes, we will update the effective date at the top of this page. We encourage you to review this page periodically. Continued use of our platform after any update constitutes your acceptance of the revised policy.

10. Contact Us

If you have questions, concerns, or requests regarding your privacy or the security of your data, please contact us directly: