Privacy Policy

Last updated: July 5, 2026

This policy describes what Carhowcollects when you use carhow.app, what we do with it, and who processes it on our behalf. The short version: we collect what we need to build and deliver your report, and we don't sell it.

What we collect

  • Your email address, so we can deliver your report and respond to support requests
  • Your ZIP or postal code, used for climate and regional pricing analysis
  • The vehicle details you enter — year, trim, mileage, VIN, and asking price

Payment is handled entirely by Stripe. Your card data never touches Carhow servers.

How we use it

  • To generate and deliver your report
  • To provide customer support
  • To send transactional email about your purchase (not marketing spam)

Who processes it

We use a small set of service providers to run Carhow:

  • Stripe — payment processing
  • Supabase — report and purchase-record storage
  • Resend — transactional email delivery
  • Vercel — hosting and privacy-friendly analytics
  • Reddit Pixel— advertising measurement. If you arrive from a Reddit ad, we report conversion events to Reddit, including a hashed version of your email address ("advanced matching") so Reddit can attribute the purchase to the ad. The hash is one-way; we do not send your plain email address.
  • NHTSA public APIs — VIN decoding and recall lookups. Only the VIN is sent; no personal information accompanies it.

How long we keep it

We retain your report and the purchase record associated with it so you can re-download your report and so we can honor refunds and support requests.

Your rights

You can request a copy of your data or ask us to delete it by emailing support@carhow.app from the address you purchased with. We do not sell personal data. Ever.

Contact

Privacy questions: support@carhow.app