Privacy Policy
Last Updated: April 12, 2026
This Privacy Policy describes how Due Dili, operated by Due Dili LLC, collects, uses, and shares information about you when you use our platform at myduedili.com (the "Service"). We are committed to protecting your privacy while fulfilling our mission of real estate transparency.
By using the Service, you consent to the data practices described in this Privacy Policy. Please read this policy carefully before using our Service.
1. Information We Collect
We collect information in the following ways:
Information You Provide Directly
- Account Information: Email address, display name, and password (stored as a hash — we never see your plain-text password).
- Professional Profile: If you subscribe to Pro, you may provide details about your professional services, specialties, and contact preferences.
- Uploaded Documents: Property-related documents you upload to the platform (e.g., inspection reports, HOA records, permits, disclosures). These are processed by AI to extract insights — raw files are never served publicly.
- Portfolio Documents: If you use the homeowner portfolio feature (Premium/Pro), documents you upload to your private portfolio are processed identically — insights extracted, raw files kept private.
- Contact Submissions: Messages or inquiries you send to Pro users through the platform.
- Support Requests: Any communications you send to our support team.
Information Collected Automatically
- Usage Data: Pages visited, searches performed, features used, and time spent on the platform.
- Device Information: Browser type, operating system, device type, and screen resolution.
- Technical Data: IP address, cookies, session tokens, and log data.
- Location Data: General geographic location based on IP address (not precise GPS tracking).
Information from Third Parties
- Payment Data: Stripe processes your payments and provides us with transaction confirmations. We do not store your credit card numbers or full payment details.
- Address Data: When you search for properties, Mapbox provides geocoding and address resolution data.
2. How We Use Your Information
We use the information we collect for the following purposes:
- Provide the Service: Create and manage your account, process uploads, and deliver platform functionality.
- Process Payments: Handle subscription billing and payment confirmations through Stripe.
- AI Document Processing: Uploaded documents are transmitted to the Anthropic Claude API to extract structured, anonymized due diligence insights. Raw documents are never stored in a publicly accessible location or served to other users.
- Send Transactional Emails: Password reset links, payment confirmations, subscription updates, and lead notifications for Pro users.
- Improve the Service: Analyze usage patterns, fix bugs, and develop new features.
- Security & Fraud Prevention: Detect and prevent unauthorized access, abuse, or fraudulent activity.
- Legal Compliance: Comply with applicable laws, regulations, and legal obligations.
- Communication: Respond to your inquiries, support requests, and feedback.
3. AI Processing & Document Intelligence
A core architectural principle of Due Dili is that raw documents are never stored in a publicly accessible location or served to other users. When you upload a document, it is processed by the Anthropic Claude API to extract structured, anonymized due diligence insights. Only these derived insights are stored in our database — the original document is retained securely and is never displayed to other users.
What gets extracted: Risk flags, HOA financials, maintenance history, permit records, inspection findings, coverage scores, and other property-relevant data — with personally identifiable information excluded from stored insights.
What is never stored or served publicly: Names, home addresses, Social Security Numbers, phone numbers, email addresses, dates of birth, financial account numbers, or any other sensitive personal data found in uploaded documents.
Portfolio Data: If you use the homeowner portfolio feature (Premium/Pro), documents you upload to your private portfolio are processed identically — Claude extracts insights, and raw files are never publicly accessible. Portfolio insights are visible only to you.
Limitations: AI extraction is automated and best-effort. It is not guaranteed to exclude every instance of PII from derived insights. Please review documents carefully before uploading. We are not liable for any PII that is not successfully identified during extraction.
Please review Anthropic's Privacy Policy for details on how Anthropic handles data processed through their API.
4. How We Share Your Information
Due Dili does not sell your personal information. We share information only in the following circumstances:
Service Providers
- Firebase (Google): Database, authentication, and file storage infrastructure.
- Stripe: Payment processing. Stripe has its own privacy policy governing payment data.
- Anthropic: AI document processing via the Claude API. Documents are transmitted for insight extraction only.
- Mapbox: Address geocoding and map rendering.
- SendGrid: Transactional email delivery.
- Vercel: Platform hosting and deployment infrastructure.
Public Information
AI-extracted property insights and Pro user professional profiles/posts are publicly visible on the platform. Raw documents and personal account information are never made public.
Legal Requirements
We may disclose information if required by law, court order, or governmental authority, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
5. Data Retention
We retain your personal information for as long as your account is active or as needed to provide the Service. If you delete your account, we will remove your personal data in accordance with our data deletion procedures, subject to legal retention requirements.
AI-extracted property insights associated with properties you uploaded documents to may be retained even after account deletion, as they are derived, anonymized data associated with the property rather than your personal account.
6. Data Security
We implement industry-standard security measures to protect your information, including encrypted data transmission (HTTPS), Firebase security rules, and access controls. However, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security of your data.
7. Cookies & Tracking
We use cookies and similar tracking technologies to enhance your experience on the platform. These include:
- Essential Cookies: Required for the Service to function (e.g., authentication tokens, session management).
- Preference Cookies: Remember your settings and preferences.
- Analytics Cookies: Help us understand how users interact with the platform so we can improve it.
You can manage cookie preferences through your browser settings. Note that disabling certain cookies may affect the functionality of the Service.
8. Your Rights & Choices
Depending on your location, you may have the following rights regarding your personal information:
All Users
- Access: View the personal information associated with your account.
- Update: Correct or update inaccurate information through your account settings.
- Delete: Delete your account and associated personal data through account settings.
- Opt Out: Unsubscribe from non-essential communications.
EU Residents (GDPR)
If you are located in the European Union or European Economic Area, you have additional rights under the General Data Protection Regulation (GDPR), including:
- Right to Erasure ("Right to be Forgotten") — Request deletion of your personal data.
- Right to Restriction — Limit how we process your data.
- Right to Portability — Receive your data in a structured, machine-readable format.
- Right to Object — Object to processing of your data for certain purposes.
- Right to Withdraw Consent — Withdraw consent at any time where processing is based on consent.
California Residents (CCPA)
If you are a California resident, you have the following rights under the California Consumer Privacy Act:
- Right to Know — Know what personal information we collect and how it is used.
- Right to Delete — Request deletion of your personal information.
- Right to Opt-Out — Due Dili does not sell personal information, so this right does not currently apply.
- Right to Non-Discrimination — We will not discriminate against you for exercising your CCPA rights.
To exercise any of these rights, you can manage most settings directly in your account. For requests that cannot be fulfilled through the platform, please contact us at privacy@myduedili.com.
9. Children's Privacy
Due Dili is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children under 18. If you believe that a child under 18 has provided us with personal information, please contact us immediately at privacy@myduedili.com so we can take steps to delete that information.
10. International Data Transfers
Due Dili is operated from the United States. If you access the Service from outside the United States, your information may be transferred to, stored in, and processed in the United States. By using the Service, you consent to such transfers.
For EU residents, we rely on appropriate legal mechanisms (such as Standard Contractual Clauses) to ensure your data is protected when transferred internationally.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make changes, we will update the "Last Updated" date at the top of this page. We encourage you to review this policy periodically.
Continued use of the Service after changes to this Privacy Policy constitutes acceptance of the updated policy. If you do not agree with the changes, please discontinue use of the Service.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our handling of your personal information, please contact us:
Due Dili LLC
8635 W Sahara Ave Unit #4177
Las Vegas, NV 89117
Privacy Inquiries: privacy@myduedili.com
General Support: support@myduedili.com
Website: myduedili.com
We aim to respond to all privacy-related requests within 30 days of receipt.