Call 205-281-0940
Your Privacy Matters

Privacy Policy

Plain-English answers to what we collect, who we share it with, and what choices you have.

Last Updated: 2026-05-26

This Privacy Policy applies to Proctor Building Co., Inc. (doing business as USA Property Rehab) and to all services provided through usarehabproperty.com.

Our Commitment to Privacy

Proctor Building Co., Inc. ("we," "our," or "us") respects your privacy and is committed to handling your personal information responsibly. This policy explains, in plain English, what we collect, how we use it, who we share it with, and the choices you have. If you don't want to read the whole thing, the short version is: we collect what we need to do the job, we don't sell your data to anyone, and you can email us any time to see or delete what we have.

Information We Collect

  • Contact details: your name, email address, and phone number when you fill out a quote form, contact form, or scheduling request.
  • Property details: project address, property type, scope of work, and any photos you choose to upload.
  • Live chat transcripts: messages you send through the on-site chat widget, including any contact details you share there.
  • Website usage: IP address, browser type, device, pages viewed, and time on site — collected via Google Analytics.
  • Payment information: handled directly by Stripe. We never see or store your full card number — we receive only the last 4 digits and a transaction confirmation token.
  • Communication history: records of emails, phone calls, and text messages exchanged with our team.

How We Use Your Information

  • To provide the property rehab and maintenance services you request.
  • To respond to quotes, schedule appointments, and keep you updated on active projects.
  • To process payments, send invoices, and keep accounting records.
  • To send service-related and (with consent) marketing emails — you can opt out of marketing at any time.
  • To improve our website and services using anonymized analytics.
  • To comply with Alabama state law, federal law, and IRS recordkeeping requirements.

Data Security

  • HTTPS everywhere — every page is served over TLS.
  • Data encrypted at rest in our database and file storage.
  • Multi-factor authentication (MFA) required for staff accounts.
  • Principle of least privilege — staff only see the customer data needed for their role.
  • Regular security review and timely patching of dependencies.
  • Payment data handled inside Stripe's PCI-compliant infrastructure — we never touch raw card numbers.

Third-Party Processors We Use

To run the site and serve customers, we rely on a small set of third-party vendors. Each one only receives the data it needs to do its specific job, listed below. We do not sell, rent, or trade your personal information to anyone for marketing purposes.

Groq

AI chatbot prompts and responses

Your chat messages are sent transiently for response generation. Per Groq's policy, prompts are not used to train models.

Crisp.chat

Live chat widget on the site

Chat transcripts, plus any name or email you share inside the chat.

Cal.com

Appointment scheduling

Your name, email address, and the time slot you request.

Cloudflare Turnstile

Anti-spam / bot protection on forms

Anonymous behavioral signals only — no PII is collected by Turnstile.

Brevo

Transactional and marketing email

Your name, email address, and email-engagement history (opens, clicks).

Stripe

Payment processing

Stripe handles all card data in its own PCI-compliant environment. We receive only the last 4 digits, card brand, and a confirmation token.

Google Analytics

Anonymized website analytics

Truncated IP, browser, device, and page-view events. We honor the browser Do-Not-Track header — when DNT is on, analytics scripts are not loaded.

Google Maps

Service-area maps and location lookups

Your IP address at the time of the map request.

Cookies and Similar Tracking

Necessary cookies

Session cookies, CSRF protection, and the Cloudflare Turnstile anti-spam cookie. These are required for the site to function and cannot be disabled.

Analytics cookies

Google Analytics is used to measure how the site is performing. We honor your browser's Do-Not-Track signal — if DNT is enabled, analytics scripts are not loaded at all.

No advertising cookies

We do not load third-party advertising or retargeting cookies on this site.

Your Privacy Rights

For California residents (CCPA)

  • Right to know: ask what personal information we hold about you and how it has been used.
  • Right to delete: ask us to delete the personal information we hold about you, subject to legal exceptions (e.g., we must keep accounting records for 7 years).
  • Right to opt out of sale: we do not sell personal information, so there is nothing to opt out of — but you have the right to confirm this.
  • Right to non-discrimination: we will not charge you more or provide worse service for exercising any of these rights.

To exercise any of these rights, email donnie@usarehabproperty.com. We respond within 30 days.

For EU and UK residents (GDPR)

  • Access: request a copy of the personal data we hold about you.
  • Rectification: correct anything that's wrong.
  • Erasure: ask us to delete your data ("right to be forgotten"), subject to legal retention rules.
  • Restriction: ask us to pause processing while a dispute is resolved.
  • Portability: get a copy of your data in a portable, machine-readable format.
  • Objection: object to processing based on legitimate interest, including marketing.

Lawful basis for processing: consent (where you fill out a form or opt in), contract (to deliver services you've requested), and legitimate interest (security, anti-fraud, and anonymized analytics).

How Long We Keep Your Data

  • Form submissions (quote / contact / scheduling): retained for 24 months.
  • Live chat transcripts: retained for 12 months.
  • Website analytics (Google Analytics): 26 months — GA's default retention window.
  • Payment records: 7 years, as required by IRS recordkeeping rules.
  • Accounting and tax records: 7 years.

Do-Not-Track

We honor your browser's Do-Not-Track (DNT) header. When DNT is enabled, our analytics scripts are not loaded at all — we don't just stop reporting, we don't load Google Analytics in the first place.

When We Share Information

  • Service providers: the third-party processors listed above, each within its specific role.
  • Trusted contractors and suppliers who help deliver a specific job — limited to the information needed for that job.
  • Legal requirements: when required by law, court order, or government authority.
  • Business transfers: in connection with a merger, acquisition, or sale of business assets.
  • We do NOT sell, rent, or trade your personal information to third parties for marketing.

Contact Us About Privacy

If you have questions about this Privacy Policy, want to exercise your CCPA or GDPR rights, or have any concern about how we handle your information, please reach out:

Email

For privacy inquiries

donnie@usarehabproperty.com

Phone

Speak with our privacy officer

(205) 281-0940

Mail

Written correspondence

Proctor Building Co., Inc.
Privacy Officer
Birmingham, AL

Service-area business — no walk-in office. Email or call for privacy requests; the full mailing address is provided to verified requesters on a per-request basis.

Response time: we respond to privacy requests within 30 days. For urgent concerns, call us directly at (205) 281-0940.