Last updated: August 15, 2026
This Privacy Policy is issued by ReAIState LLC ("ReAIstate", "we", "us", or "our"), a Wyoming limited liability company with its principal address at 30 N Gould St, Ste R, Sheridan, WY 82801, USA. ReAIstate operates reaistate.com and the ReAIstate compliance monitoring platform (the "Service") under the brand name ReAIstate, and provides compliance monitoring services for real estate brokerages. This Privacy Policy explains what information we collect, how we use it, and your rights regarding that information.
ReAIstate is a compliance monitoring platform for residential real estate brokerages, owned and operated by ReAIState LLC, a Wyoming limited liability company incorporated on August 15, 2026. Our principal business address is 30 N Gould St, Ste R, Sheridan, WY 82801, USA. For all privacy inquiries, contact us at hello@reaistate.com.
We collect information in three ways:
A. Information you provide directly
— Waitlist signups: name and email address
— Compliance intake form (/comply): brokerage name, contact name, email address, phone number, and attorney or firm name if provided
— Communications sent to hello@reaistate.com
B. Information collected through our compliance monitoring service
For brokerages enrolled in ReAIstate compliance monitoring, we process:
— Agent email communications routed through our scanning infrastructure (BCC or Gmail OAuth)
— Listing content submitted for compliance review
— Scan results, violation flags, and compliance scores
— Timestamps and audit trail data associated with each scan
This content is processed for the purpose of compliance monitoring only. We do not use brokerage communication content for any purpose other than providing the compliance scanning service to the enrolled brokerage.
C. Technical information
— Server logs including IP addresses and browser type when you visit reaistate.com
— Authentication data when you log in to the ReAIstate dashboard
We use the information we collect to:
— Provide the compliance monitoring and evidence ledger service to enrolled brokerages
— Send compliance alerts, violation notifications, and weekly digest emails to designated brokers
— Respond to compliance intake inquiries submitted at reaistate.com/comply
— Maintain the tamper-evident audit ledger that forms the core of the compliance evidence record
— Improve the accuracy and coverage of our compliance rule engine
— Communicate with waitlist members about platform availability
We do not sell your information to third parties. We do not use brokerage communication content to train AI models outside of the compliance scanning service.
All data is stored in Supabase, a SOC 2 compliant database infrastructure provider. Our data handling works as follows:
— Real-time scanning (default): Email content is processed entirely in memory. PII is stripped before processing. Only the SHA-256 hash of the content and the scan result (risk tier, rules triggered, compliance output) are stored in our database. The email body itself is never persisted.
— Batch scanning mode: Processed email text (with PII stripped) is stored temporarily in a scan queue while awaiting processing. This processed text is retained in the queue record after scanning. If you wish to request deletion of queued content, contact hello@reaistate.com.
— Listing content submitted for scanning: Processed and stored as part of the scan session record for the evidence ledger.
Access to brokerage data is restricted by row-level security policies. Each brokerage can only access its own data. Our infrastructure is verified against OWASP Top 10 security standards.
Scan results and compliance audit records are retained for the duration of your subscription and for a reasonable period thereafter to support legal defensibility purposes — the primary value of the evidence ledger. If you wish to request deletion of your data, contact hello@reaistate.com.
Depending on your location, you may have rights under applicable privacy law including:
— The right to access the personal data we hold about you
— The right to correct inaccurate data
— The right to request deletion of your data
— The right to object to or restrict processing
— The right to data portability
For EU/EEA residents, these rights are provided under the General Data Protection Regulation (GDPR). For California residents, these rights are provided under the California Consumer Privacy Act (CCPA). To exercise any of these rights, contact hello@reaistate.com.
reaistate.com uses only essential cookies required for authentication and session management. We do not use tracking cookies, advertising cookies, or third-party analytics cookies.
We use the following third-party services to operate the platform:
— Supabase — database and authentication infrastructure
— Vercel — hosting and deployment
— Resend — transactional email delivery
— Google — OAuth authentication for Gmail integration
— Anthropic — AI compliance scanning models
We do not permit any third-party AI provider to train on your data. Anthropic's commercial API terms do not use customer data to train their models.
In the event of a security breach involving unauthorized access to personal information we control, we will notify affected brokerages without unreasonable delay and in accordance with applicable law, including the New York SHIELD Act. Notification will include a description of the incident, the categories of information involved, and the steps being taken in response.
We may update this Privacy Policy from time to time. We will notify enrolled brokerages of material changes by email. The current version is always available at reaistate.com/privacy.
For any privacy-related questions or to exercise your rights, contact us at hello@reaistate.com, or by mail at ReAIState LLC, 30 N Gould St, Ste R, Sheridan, WY 82801, USA. We will respond within 30 days.