Privacy Policy
Your privacy is our priority. This policy explains how we collect, use, and protect your information.
Introduction
Welcome to InstantSolarReport.com ("InstantSolarReport," "we," "our," or "us"). We are committed to protecting your privacy and ensuring transparency about how we collect, use, and safeguard your personal information when you use our solar analysis platform at instantsolarreport.com.
This Privacy Policy complies with the California Consumer Privacy Act (CCPA), California Privacy Rights Act (CPRA), General Data Protection Regulation (GDPR), and applicable U.S. privacy laws as of 2025.
Information We Collect
Personal Identifiers
- • Email addresses for report delivery and customer communication
- • IP addresses for security, analytics, and geo-targeting compliance notices
- • Device identifiers and browser information for service delivery
Source: Directly from you and automatically collected
Business Purpose: Service delivery, customer support, legal compliance
Property & Location Data
- • Property addresses for solar feasibility analysis
- • Precise geolocation coordinates (latitude/longitude)
- • City, state, ZIP code, and utility service territory
- • Property characteristics inferred from address (roof type, size estimates)
Source: Directly from you and Google Maps Geocoding API
Business Purpose: Solar analysis calculations, report generation
Energy & Financial Data
- • Monthly electricity bill amounts
- • Energy usage patterns and consumption data
- • Utility rate information from your service area
- • Property type and system capacity preferences
Source: Directly from you and NREL URDB API
Business Purpose: Solar savings calculations, financial projections
Payment Information
- • Payment method details (processed securely by Stripe - we don't store card details)
- • Billing addresses and customer names
- • Transaction history and payment status
Source: Directly from you via Stripe payment processing
Business Purpose: Payment processing, fraud prevention, tax compliance
Usage & Analytics Data
- • Website usage patterns and page views
- • Feature usage and conversion metrics
- • Error logs and performance data
- • Customer support interactions
Source: Automatically collected during service use
Business Purpose: Service improvement, technical support, analytics
AI Processing & Automated Decisions
AI Content Enhancement
We use OpenRouter API with Claude 3.5 Sonnet to enhance solar report content with personalized insights and recommendations. This AI processing:
- • Analyzes your property data and energy usage to generate tailored content
- • Creates personalized recommendations based on your location and usage patterns
- • Does not make automated decisions affecting your legal rights or financial status
- • Is used solely for report enhancement and educational content
You have the right to opt-out of AI processing by contacting us before report generation.
Third-Party Services & Data Sharing
NREL (National Renewable Energy Laboratory)
We share your address and energy data with NREL's PVWatts and URDB APIs for official solar calculations. NREL is a U.S. government laboratory with strict data protection standards.
Google Maps Platform
Your addresses are geocoded using Google Maps APIs for precise location analysis. Google's privacy policy applies to this processing.
Stripe (Payment Processing)
Payment information is processed by Stripe under PCI DSS compliance. We don't store or have access to your full payment card details.
PDF.co & OpenRouter
Report generation uses PDF.co for document creation and OpenRouter for AI content. Data is processed securely and not retained by these services beyond generation.
We DO NOT sell your personal information
We do not sell, rent, or trade your personal information to third parties for marketing purposes. Data sharing is limited to the service providers listed above for operational purposes only.
Data Retention Periods
Your Privacy Rights
California Residents (CCPA/CPRA)
- Right to know what personal information we collect
- Right to delete personal information
- Right to correct inaccurate information
- Right to limit use of sensitive information
- Right to non-discrimination for exercising rights
EU Residents (GDPR)
- Right of access to your data
- Right to rectification (correction)
- Right to erasure ("right to be forgotten")
- Right to data portability
- Right to object to processing
How to Exercise Your Rights
We will respond to your request within 30 days (45 days for complex requests). Identity verification may be required.
Data Security
We implement industry-standard security measures to protect your information:
- • SSL/TLS encryption for all data transmission
- • Secure database hosting with Supabase (SOC 2 Type II certified)
- • Regular security audits and monitoring
- • Limited access controls and employee training
- • Automatic data expiration and secure deletion
Contact Us & Policy Updates
Privacy Officer Contact
Policy Updates
We may update this Privacy Policy to reflect changes in our practices or legal requirements. Material changes will be communicated via email or prominent notice on our website 30 days before taking effect.
Compliance Statement
This Privacy Policy complies with the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA), the European General Data Protection Regulation (GDPR), and applicable federal privacy laws as of August 2025. For residents of other states with privacy laws, similar protections may apply.