Privacy Policy
Privacy Policy
Essential Reef
Effective upon publication
ESSENTIAL REEF & CO. LLC ("Essential Reef," "we," "us," "our") operates the Essential Reef mobile application (the "App"), an invite-only community and marketplace for reef hobbyists. This Privacy Policy explains how we collect, use, share, and protect your personal information.
By using the App, you consent to this Privacy Policy.
1. Information We Collect
Information You Provide
- Account information: email address, password (stored in encrypted form), display name, optional profile photo, optional social media handles (Instagram, TikTok, YouTube)
- Content you create: messages, posts, photos, tank parameters, livestock entries, dosing logs, marketplace listings, auction bids, reviews, reports
- Marketplace information: sale and auction listing details, fulfillment information (shipping coordination), buyer/seller coordination messages
- Payment confirmation data: screenshots or notes of off-platform payment confirmations (we do not process payments; we only record that they occurred)
- Communications with us: support requests, feedback, DMCA notices
Information Collected Automatically
- Device information: device type, operating system, app version
- Usage information: features used, screens viewed, interaction timestamps
- Technical logs: error reports, crash data (for app stability)
- IP address: captured by our backend infrastructure (Supabase) for security and rate limiting
Information From Third Parties
- Authentication: if you sign in via email confirmation, we receive the confirmation status from our email service
- No social login integrations currently active
2. How We Use Your Information
We use your information to:
- Provide, operate, and maintain the App
- Authenticate you and secure your account
- Display your profile and content to other users (based on your visibility settings)
- Enable marketplace transactions (connecting buyers and sellers; we are not a party to transactions)
- Send transactional emails (confirmation, password reset, important account notices)
- Moderate content and enforce our Community Guidelines
- Investigate reports of policy violations, fraud, or abuse
- Respond to support requests and legal requirements
- Improve the App (analytics, bug fixes, feature development)
- Comply with legal obligations
We do not use your information for third-party advertising.
3. How We Share Your Information
With Other Users
- Your profile (display name, optional photo, optional social handles) is visible to other authenticated users
- Content you post in public channels is visible to all app users
- Direct messages are visible only to participants
- Marketplace listings are visible to all authenticated users unless you make them private
With Service Providers
- Supabase (Supabase, Inc.): our backend infrastructure; stores your data and handles authentication. See supabase.com/privacy
- Anthropic (if AI features are enabled): AI suggestions and chat features may process your messages and tank data to generate responses
- Email service providers: to deliver transactional emails
- Analytics and crash reporting: aggregated, non-identifying usage statistics
For Legal Reasons
We may disclose your information if required by law, subpoena, or court order, or to:
- Protect the rights, property, or safety of Essential Reef, our users, or others
- Investigate suspected fraud or abuse
- Enforce our Terms of Service
Business Transfers
If Essential Reef is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you via email or in-app notice before your information becomes subject to a different privacy policy.
We Do Not Sell Your Data
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
4. Your Rights and Choices
Account Management
- Access and edit: you can view and edit your profile from the Profile tab
- Delete your account: contact us at support@essentialreef.com to request account deletion. We will delete your account and personal data within 30 days, except for information we are legally required to retain or that is necessary for legitimate business purposes (e.g., transaction records, moderation history)
- Opt out of notifications: manage push notification preferences in your device settings
Your Content
- You retain ownership of content you create
- You can delete your posts, messages, listings, and other content at any time
- Deleted content is removed from view immediately; backups may be retained for up to 90 days
GDPR Rights (European Economic Area users)
If you are in the EEA, you have the following rights under the General Data Protection Regulation:
- Right to access: request a copy of your personal data
- Right to rectification: correct inaccurate data
- Right to erasure: request deletion of your data (subject to legal retention requirements)
- Right to restriction of processing: limit how we use your data
- Right to data portability: receive your data in a machine-readable format
- Right to object: object to processing based on legitimate interests
- Right to withdraw consent: where we rely on consent as the legal basis
To exercise these rights, email support@essentialreef.com. We will respond within 30 days.
Legal basis for processing (GDPR): we process your personal data based on:
- Your consent (for optional features)
- Performance of a contract (to provide the App)
- Legitimate interests (security, fraud prevention, product improvement)
- Legal obligations
CCPA Rights (California users)
If you are a California resident, you have the following rights under the California Consumer Privacy Act:
- Right to know: what personal information we collect, use, and share
- Right to delete: request deletion of your personal information
- Right to opt out: of the sale of personal information (we do not sell personal information)
- Right to non-discrimination: we will not discriminate against you for exercising these rights
To exercise these rights, email support@essentialreef.com.
5. Data Security
We take reasonable measures to protect your information:
- All data transmission is encrypted with TLS
- Passwords are hashed using industry-standard algorithms
- Database access is protected by row-level security policies
- Regular security audits and monitoring
However, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.
6. Data Retention
- Account data: retained while your account is active
- Content (posts, messages, listings): retained until you delete them or until your account is deleted
- Transaction records: retained for up to 7 years for legal and accounting purposes
- Backups: retained for up to 90 days after deletion
- Moderation records: retained indefinitely for safety and pattern analysis
7. Children's Privacy
Essential Reef is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If we learn we have collected information from a child under 13, we will delete it.
Users between 13 and 18 must have parental or guardian permission to use the App.
8. International Data Transfers
Essential Reef is based in the United States. If you use the App from outside the United States, your information will be transferred to, stored, and processed in the United States. By using the App, you consent to this transfer.
For EEA users: we rely on standard contractual clauses and Supabase's data protection framework for these transfers.
9. Content Moderation and User-Generated Content
The App contains user-generated content. We review reports of inappropriate content within 24 hours and take action (removal, warning, suspension, or ban) as appropriate.
Content you report is reviewed by our moderation team. The report itself (reason, reporting user, timestamps) is logged; the reported content may be removed.
We are not responsible for content posted by other users but take reasonable steps to enforce our Community Guidelines.
10. Cookies and Tracking
The App itself does not use cookies (it's a native mobile app). Our supporting website (essentialreef.com) may use minimal cookies for session management and analytics. No advertising cookies are used.
11. Third-Party Links and Services
The App may contain links to third-party websites or services (social media handles, YouTube videos, etc.). We are not responsible for the privacy practices of these third parties. Please review their privacy policies.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- Posting the updated policy in the App and on our website
- Sending an email to your registered email address
- Displaying an in-app notice
Continued use of the App after changes constitutes acceptance of the revised policy.
13. Contact Us
Questions about this Privacy Policy or your personal information? Contact us:
- Email: support@essentialreef.com
- Mail: ESSENTIAL REEF & CO. LLC, 1555 NE 176 ST, North Miami Beach, FL 33162
For GDPR-related inquiries: support@essentialreef.com (Subject: GDPR Request)
For CCPA-related inquiries: support@essentialreef.com (Subject: CCPA Request)
© 2026 ESSENTIAL REEF & CO. LLC — All rights reserved.