Privacy Policy

Effective Date: May 20, 2026 Version: 1.2


1. Introduction

BreederHQ LLC ("BreederHQ," "we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application, mobile applications, Marketplace, Client Portal, and all related services (collectively, the "Services").

By using the Services, you consent to the practices described in this Privacy Policy. If you do not agree with this Privacy Policy, do not access or use the Services.

BreederHQ LLC is a Kansas limited liability company.

Capitalized terms used in this Privacy Policy have the meanings given in the BreederHQ Legal Definitions Schedule, which is incorporated into this Privacy Policy by reference.


2. Information We Collect

2.1 Account Information

When you create an account, we collect:

  • Email address (for authentication and communication);
  • Name (for display and identification purposes);
  • Password (stored securely using industry-standard one-way hashing — we cannot read your password);
  • Phone number (if provided, for account recovery and communication).

2.2 Business and Profile Information

If you register as a Provider, we may collect:

  • Business name and address;
  • Professional credentials, licenses, certifications, and registry memberships;
  • Tax identification information (for payment processing and tax reporting);
  • Banking information (processed and stored by our third-party payment processor, not by BreederHQ directly).

Where you submit professional credentials, licenses, certifications, or supporting documents, we display the information you submit on your profile or listings as you direct, and we retain the underlying records for the duration of your account. We do not independently validate, evaluate, or vouch for the credentials or documents you submit. Our role is limited to the collection, display, retention, and (where you request) removal of the credential information and supporting documents. Validation, evaluation, and reliance on credentials is described in our Terms of Service and the applicable User Agreement.

2.3 User Content

When you use the Services, you may provide:

  • Photos and videos of animals;
  • Animal records, pedigrees, and breeding data;
  • Health testing results and veterinary records;
  • Contact information for your clients and business contacts;
  • Financial records, invoices, and receipt images;
  • Messages and communications with other users;
  • Documents and agreements;
  • Reviews and feedback.

2.4 Transaction Information

When you participate in Marketplace transactions, we collect:

  • Transaction details (items, amounts, dates);
  • Waitlist and reservation fee records;
  • Communication logs between Providers and Buyers;
  • Dispute and resolution records.

2.5 Device and Technical Information

When you use our mobile app or access the Services, we may collect:

  • Device type, model, and operating system version;
  • Browser type and version;
  • IP address;
  • Push notification tokens (to send you notifications you have enabled);
  • Crash reports and diagnostic information;
  • App version.

2.6 Usage Information

We automatically collect certain information about your use of the Services:

  • Pages and features accessed;
  • Feature usage patterns and frequency;
  • Search queries within the platform;
  • Date and time of access;
  • Referring URLs;
  • Error logs for debugging and service improvement.

2.7 AI Feature Interactions

When you use AI-powered features (AI Assistant, Scout AI), we collect:

  • Your questions and queries submitted to AI features;
  • AI-generated responses;
  • Feedback you provide on AI responses (thumbs up/down);
  • Tool calls and data summaries generated during AI interactions.

This data is used to provide AI features, enforce rate limits, improve response quality, and generate aggregated usage analytics.

2.8 Cookies and Similar Technologies

We use cookies and similar tracking technologies to:

  • Maintain your session and authentication state;
  • Remember your preferences and settings;
  • Analyze usage patterns and improve the Services;
  • Provide security features.

You can control cookie settings through your browser. Disabling cookies may limit functionality of the Services.

2.9 Credential Attestation Records

When you attest to a professional credential through the Services, we record metadata about the attestation: the date and time you submitted the attestation, the text of the attestation as you accepted it (including the version of that text), your account identifier, your IP address, and your user-agent string. We retain these records for the duration of your account and for seven (7) years after account termination for legal, audit, and dispute-response purposes.

2.10 Legal Acceptance Records

When you accept any User Agreement (including the Terms of Service, Acceptable Use Policy, Privacy Policy, Provider Agreement, Buyer Terms, Marketplace Transaction Terms, or Legal Definitions Schedule), we record metadata about the acceptance: the date and time of acceptance, the version of the User Agreement accepted, your account identifier, your IP address, your user-agent string, and the surface and flow through which you accepted. We retain these records for the duration of your account and for seven (7) years after account termination for legal, audit, and dispute-response purposes.

2.11 Identity Verification (Stripe Identity)

Where you choose to complete identity verification through our Third-Party Identity Verification Provider (Stripe Identity, operated by Stripe, Inc.), Stripe collects and processes your government-issued identification and biometric data in accordance with Stripe's own privacy policy and procedures. BreederHQ does not receive or store your government identification document or biometric data. BreederHQ receives from Stripe only the result of the verification (success or failure), a Stripe-generated session identifier, and the date of the verification, which we store to display the Third-Party Identity Verification Passthrough indicator under §2.6 of the Terms of Service. See Stripe's privacy policy at stripe.com/privacy for details on Stripe's handling of your identification data.


3. How We Use Your Information

We use the information we collect to:

3.1 Provide and Operate the Services

  • Create and manage your account;
  • Authenticate your identity and maintain session security;
  • Process transactions and facilitate Marketplace activity;
  • Enable communication between Providers and Buyers;
  • Display your listings and profile information as directed by you;
  • Provide AI-powered features (AI Assistant and Scout) that answer questions about your data and the platform.

3.2 Improve and Develop the Services

  • Analyze usage patterns to improve features and user experience;
  • Identify and fix technical issues through crash analytics and error logging;
  • Develop new features and functionality;
  • Conduct internal research and analytics;
  • Improve AI response quality through aggregated analysis of query patterns.

3.3 Communicate With You

  • Send push notifications you have enabled;
  • Send transactional emails (account verification, password resets, transaction confirmations);
  • Send service announcements and updates;
  • Respond to your support requests and inquiries.

3.4 Safety and Security

  • Detect, prevent, and investigate fraud, abuse, and policy violations;
  • Monitor for unauthorized access or suspicious activity;
  • Enforce our Terms of Service and other policies;
  • Respond to Credential Disputes under §8.4 of the Acceptable Use Policy;
  • Comply with legal obligations.

3.5 Payment Processing

  • Process payments through our third-party payment processor;
  • Issue tax reporting documents as required by law (e.g., IRS Form 1099-K);
  • Manage subscription billing.

4. How We Share Your Information

We do not sell your personal information. We may share your information in the following circumstances:

4.1 With Your Consent

When you explicitly authorize sharing, such as publishing a Marketplace listing or sharing information through the Client Portal.

4.2 Marketplace and Client Portal

  • Marketplace listings: Information you include in a listing (animal or service descriptions, photos, pricing, Provider profile, credential attestations and uploaded supporting documents) is publicly visible to Marketplace visitors;
  • Client Portal: Information you choose to share with your clients through the portal is accessible to those clients;
  • Messages: Communications sent through the platform messaging system are accessible to the intended recipients.

4.3 Service Providers

We share information with third-party vendors who help us operate the Services:

Service CategoryPurposeData Shared
Payment ProcessingProcessing transactions and payoutsTransaction data, banking info, tax ID
Identity VerificationProvider identity verification (Stripe Identity)Government identification and biometric data submitted by the Provider directly to Stripe
Cloud Hosting and StorageData hosting and infrastructureAll platform data (encrypted)
Push Notification ServicesMobile push notificationsDevice tokens, notification content
Crash Reporting and DiagnosticsApplication stability monitoringDevice info, crash logs
Email Delivery ServicesTransactional email deliveryEmail addresses, email content
AI Processing (Anthropic)AI Assistant and Scout AI featuresYour queries, relevant data summaries (see Section 4.4)
Public Registry LookupThird-Party Registry Passthrough confirmationProvider's credential identifier and issuing body name (no Personal Information beyond the attested credential data)

Each of these service providers has their own privacy policy governing their use of data. We require our service providers to protect your data and use it only for the purposes we specify.

4.4 AI Data Processing

When you use AI-powered features (AI Assistant, Scout AI), your data is processed by our AI service provider, Anthropic, which operates the Claude AI model. Here is what you should know:

What data is sent to Anthropic:

  • Your question or query text;
  • Relevant summaries of your platform data needed to answer your query (for example, animal counts, breeding plan status, financial summaries, contact information);
  • Individual data records are truncated to a maximum of 4,000 characters before transmission;
  • Conversation history within the current chat session.

What data is NOT sent to Anthropic:

  • Your password or authentication tokens;
  • Payment or banking information;
  • Tax identification numbers;
  • Data belonging to other organizations (all queries are scoped to your organization only).

Anthropic's data handling:

  • Anthropic processes your data solely to generate AI responses;
  • Under our commercial agreement, Anthropic does not use data submitted through our API for training AI models;
  • For details on Anthropic's data practices, see Anthropic's usage policy at anthropic.com/policies.

Your controls:

  • Organization administrators can disable AI features entirely for all users in their organization through Settings;
  • You can delete your AI query history at any time through the Help Center;
  • AI features require explicit consent before first use.

4.5 Legal Requirements

We may disclose your information when required to:

  • Comply with applicable law, regulation, legal process, or governmental request;
  • Enforce our Terms of Service and other agreements;
  • Protect the rights, safety, or property of BreederHQ, our users, or the public;
  • Detect, prevent, or address fraud, security, or technical issues;
  • Cooperate with law enforcement or regulatory investigations;
  • Report substantiated Credential Disputes to the issuing body or applicable licensing authorities where required by law.

4.6 Business Transfers

If BreederHQ is involved in a merger, acquisition, reorganization, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change and any choices you may have regarding your information.


5. Data Storage and Security

We take the security of your data seriously:

5.1 Security Measures

  • All data is transmitted over HTTPS using TLS encryption;
  • Passwords are stored using industry-standard one-way hashing (we cannot read your password);
  • Authentication tokens are stored in secure device storage;
  • Database access is restricted, monitored, and logged;
  • We conduct regular security reviews and vulnerability assessments;
  • Data is hosted on industry-standard cloud infrastructure with enterprise-grade physical and network security;
  • AI queries are transmitted to Anthropic over encrypted connections.

5.2 Data Location

Your data is stored on servers located in the United States. AI queries are processed by Anthropic's infrastructure in the United States.

5.3 Security Limitations

While we implement commercially reasonable security measures, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security of your data.

5.4 Breach Notification

In the event of a data breach that affects your personal information, we will notify you in accordance with applicable data breach notification laws.


6. Data Retention

  • Account data is retained for as long as your account is active, and for a reasonable period after deletion to comply with legal obligations;
  • Transaction records are retained for at least seven (7) years for tax and legal compliance;
  • Credential Attestation records are retained for the duration of your account and for seven (7) years after account termination for legal, audit, and dispute-response purposes;
  • Legal Acceptance records are retained for the duration of your account and for seven (7) years after account termination for legal, audit, and dispute-response purposes;
  • Media files (photos, videos, uploaded supporting documents) are retained until you delete them or your account is deleted;
  • Messages are retained for as long as both parties' accounts are active;
  • Crash reports are retained for ninety (90) days;
  • AI query logs (questions, responses, and feedback submitted to AI features) are retained for ninety (90) days, then automatically deleted;
  • AI conversations are retained until you delete them or your account is deleted;
  • Usage analytics are retained in aggregated, anonymized form indefinitely;
  • Deleted data may persist in encrypted backups for up to thirty (30) days before permanent deletion.

7. Your Rights and Choices

7.1 Access and Portability

You have the right to access your data through the Services at any time. You may request a copy of your data in a portable, machine-readable format by contacting us.

7.2 Correction

You may update or correct inaccurate information in your account at any time through your account settings, or by contacting us.

7.3 Deletion

You may request deletion of your account and associated personal data by contacting us. Upon deletion:

  • Your profile and listings will be removed from the platform;
  • Your personal data will be deleted from our active systems;
  • Some data may be retained as required by law (for example, transaction records for tax compliance, Credential Attestation records and Legal Acceptance records for the retention periods set forth in §6);
  • Data in encrypted backups will be permanently deleted within thirty (30) days.

7.4 Opt-Out of Communications

  • Push notifications: Disable through your device settings or in-app notification preferences;
  • Marketing emails: Unsubscribe using the link provided in each email;
  • Transactional emails: Cannot be opted out of while your account is active (these are necessary for account security and service operation);
  • AI features: Organization administrators can disable AI features through Settings. Individual users can delete their AI query history through the Help Center at any time.

7.5 Do Not Track

The Services do not currently respond to "Do Not Track" signals from browsers.


8. California Privacy Rights (CCPA/CPRA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA):

8.1 Right to Know

You have the right to request that we disclose the categories and specific pieces of personal information we have collected about you, the categories of sources, the business purpose for collection, and the categories of third parties with whom we share your information.

8.2 Right to Delete

You have the right to request deletion of your personal information, subject to certain exceptions (such as legal compliance and transaction record-keeping).

8.3 Right to Correct

You have the right to request correction of inaccurate personal information.

8.4 Right to Opt-Out of Sale/Sharing

We do not sell your personal information. We do not share your personal information for cross-context behavioral advertising purposes.

8.5 Right to Non-Discrimination

We will not discriminate against you for exercising your privacy rights.

8.6 How to Exercise Your Rights

To exercise your California privacy rights, contact us at privacy@breederhq.com. We will verify your identity before processing your request. You may also designate an authorized agent to make requests on your behalf.

8.7 Categories of Information Collected

In the preceding twelve (12) months, we may have collected the following categories of personal information:

  • Identifiers (name, email, IP address);
  • Commercial information (transaction records, products purchased);
  • Internet or electronic network activity (browsing history, usage data);
  • Geolocation data (derived from IP address);
  • Professional or employment-related information (business information for Providers);
  • Inferences drawn from the above categories.

9. European Privacy Rights (GDPR)

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR):

9.1 Legal Basis for Processing

We process your personal data based on:

  • Contract performance: Processing necessary to provide the Services you have requested;
  • Legitimate interests: Processing necessary for our legitimate business interests (service improvement, security, fraud prevention);
  • Consent: Processing based on your explicit consent (AI features, marketing communications, optional analytics);
  • Legal obligation: Processing required to comply with applicable laws.

9.2 Your GDPR Rights

  • Right of access — Request a copy of your personal data;
  • Right to rectification — Request correction of inaccurate data;
  • Right to erasure — Request deletion of your data (subject to legal retention requirements);
  • Right to restriction — Request limitation of processing in certain circumstances;
  • Right to data portability — Receive your data in a structured, machine-readable format;
  • Right to object — Object to processing based on legitimate interests, including AI data processing;
  • Right to withdraw consent — Withdraw consent at any time where processing is based on consent.

9.3 AI Processing and GDPR

AI features use your data based on your explicit consent. You may withdraw consent at any time by disabling AI features in your organization settings or by contacting us. When consent is withdrawn, your AI query logs can be deleted through the Help Center or upon request.

9.4 Data Transfers

Your data is stored and processed in the United States. By using the Services, you consent to the transfer of your data to the United States. We implement appropriate safeguards for international data transfers, including Standard Contractual Clauses where required. Our AI service provider (Anthropic) also processes data in the United States under appropriate safeguards.

9.5 Data Protection Officer

For GDPR-related inquiries, contact us at privacy@breederhq.com.

9.6 Supervisory Authority

You have the right to lodge a complaint with your local data protection supervisory authority.


10. Children's Privacy

The Services are not intended for children under 13 years of age (or 16 in the EEA). We do not knowingly collect personal information from children under these ages. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at privacy@breederhq.com and we will take steps to delete such information.


11. Third-Party Links

The Services may contain links to third-party websites or services, including without limitation Public Registries operated by issuing bodies (such as the American Farrier's Association, American Kennel Club, Orthopedic Foundation for Animals, and state veterinary licensing boards). We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party websites or services you visit.


12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the updated policy on our website;
  • Updating the "Effective Date" at the top of this page;
  • Sending an email notification for significant changes.

Your continued use of the Services after changes are posted constitutes your acceptance of the updated Privacy Policy.


13. Contact Us

If you have questions about this Privacy Policy or our privacy practices, please contact us:

BreederHQ LLC Email: privacy@breederhq.com Website: breederhq.com/contact

For California privacy rights requests: privacy@breederhq.com For GDPR-related inquiries: privacy@breederhq.com


By using BreederHQ, you acknowledge that you have read, understood, and agree to the practices described in this Privacy Policy.