Privacy Policy

Last updated 7 August 2026 · BuzzMeBro, Toronto, Ontario, Canada

BuzzMeBro runs a buzzer that rings your phone, so the least we can do is be exact about what that means for your data. This policy says what we collect, what we deliberately do not collect, who else touches it, and how to make us delete it. It is written to be checked, not skimmed.

The short version

  • We never record your calls. No audio from a buzz is captured, stored or listened to, by us or by anyone.
  • We never store your IP address. Where we need to count requests to stop abuse, we store a salted one-way hash instead, so the table cannot identify anyone.
  • We never see your card. Payment details go straight to Stripe.
  • We do not sell your data, and we run no advertising or tracking pixels.

What we collect

To run the service we hold:

  • Your phone number, and the phone number of every person on your resident list. This is the core of the product: it is what the buzzer rings.
  • A name, if you give one. It is optional and it exists so your roommates can tell each other apart in the app.
  • Where your apartment is — your postal or ZIP code, your unit label as your building lists it, and your building’s address. We need the first to find a local number and the others so a visitor reaches the right unit.
  • The buzzer number we buy for you, and your building’s panel line where it is known.
  • A record of each buzz: when it started, what happened (answered, opened, missed), who opened the door, and how long it took. Not who was at the door, and not what was said.
  • Billing records — your Stripe customer and subscription identifiers, invoice status and referral credits. Card numbers are held by Stripe, never by us.
  • A log of messages we send you, and the basis on which we sent each one, so we can prove a promotional message had your consent.

What we deliberately do not collect

  • Call audio or recordings. The system bridges a call; it does not capture it.
  • Raw IP addresses. Rate-limiting stores a salted digest, and the salt lives outside the database, so a leaked table cannot be reversed to identify visitors.
  • Location beyond your postal code. We never ask for or track device location.
  • Advertising or cross-site tracking data. There are no third-party trackers on this site; a strict Content-Security-Policy blocks third-party scripts outright.
  • Your contacts, photos, microphone or anything else on your phone.

Why we use it, and on what basis

We use the information above to provide the service, verify that a phone belongs to the person adding it, buy and operate your number, take payment, prevent fraud and abuse, answer your support requests, and meet legal obligations.

We rely on your consent, given when you sign up and when each resident verifies their phone, and on the necessity of processing to deliver a service you asked for. Promotional messages are sent only with express opt-in under Canada’s anti-spam legislation (CASL) — the box is never pre-ticked, and every promotional message we send records which consent it relied on. You can withdraw consent at any time.

Who else sees it

We use a small number of service providers, each for one job. We do not sell personal information, and we do not share it for anyone else’s marketing.

ProviderWhat they do for usWhere they process
SupabaseDatabase, authentication and file storageCanada / United States
TwilioPlacing and bridging the buzzer calls, and sending SMSUnited States
StripePayments, subscriptions and invoicesUnited States
PostmarkTransactional email (receipts, notices)United States
CloudflareTurnstile bot check on sign-up formsUnited States
VercelWebsite and application hostingUnited States
SentryError monitoring, when enabledUnited States

We may also disclose information where the law requires it, or to protect someone’s safety or our legal rights.

Where your data goes

Several of the providers above process data in the United States. That means your information may be stored or handled outside Canada and can be accessible to courts and authorities in that country under its laws. We use providers that commit to appropriate contractual protections, and we keep the amount of personal information sent to them to what each one needs to do its job.

How long we keep it

  • Your account and resident list: while your account is open. Removing a resident removes their number from the list immediately.
  • Your buzzer number: held for 15 days after cancellation so you can change your mind, then released.
  • The buzz log: kept as an append-only record. It cannot be edited or deleted, by us or by anyone, because a door log that can be rewritten is not a log. It holds no audio and no visitor identity.
  • Billing records: kept as long as Canadian tax and accounting law requires.
  • Abuse-prevention records: short-lived, and identify no one.

Your rights

Under Canadian privacy law (PIPEDA) and equivalent provincial laws, you may:

  • ask what personal information we hold about you and get a copy;
  • have inaccurate information corrected;
  • withdraw consent, including for promotional messages, at any time;
  • ask us to delete your account and its personal information, subject to records we are required to keep, and to the append-only buzz log described above;
  • complain to us, and to the Office of the Privacy Commissioner of Canada.

Email privacy@buzzmebro.com and we will respond within 30 days. We may need to verify your identity by the phone number on the account before acting on a request.

How we protect it

Security is built into how the data is stored, not added afterwards. In particular:

  • every table holding customer data enforces row-level isolation at the database, so one apartment cannot read another’s rows even if application code is wrong;
  • signed-out visitors have no database access of any kind;
  • the buzz log and the credit ledger are append-only, with update and delete permanently revoked from every role;
  • every phone is verified by one-time code before the buzzer will ring it;
  • data is encrypted in transit, the site runs a strict Content-Security-Policy with no third-party scripts, and credentials are never stored in our source code.

No system is perfectly secure. If you believe you have found a vulnerability, tell us at security@buzzmebro.com and we will work with you in good faith.

Children

The service is not for children. We do not knowingly collect information from anyone under 18. If you believe a child’s number is on a resident list, contact us and we will remove it.

Changes to this policy

If we change how we handle your information we will update this page and change the date at the top. Where a change is material we will tell you directly before it takes effect.

Contact

BuzzMeBro, Toronto, Ontario, Canada. Privacy questions and requests: privacy@buzzmebro.com. Everything else: support@buzzmebro.com.