Skip to main content
Autotrayce

Privacy notice

How information is used during the private beta

Updated 7 October 2026

This notice describes the current Autotrayce beta. Processing grounds and outstanding provider and retention information must be finalised before beta admission is expanded.

Provider information: Base44 Data Processing Addendum and subprocessor list (checked 7 October 2026). These describe Base44’s service; app-specific settings still need confirmation.

Who operates Autotrayce

Autotrayce is operated by Edward Allen. Contact address: 25 Ernest Road, Alton, GU34 1GN. For privacy enquiries and requests concerning your personal information, email hello@autotrayce.com.

Accounts and beta access

Base44 processes your email and authentication credentials to register and secure your account. We also hold profile details you provide, membership and organisation records, and beta requests, approval decisions and access dates to administer the service. Registering does not itself subscribe you to newsletters.

Sourcing work and AI

Search requirements are sent to our Base44 backend. Text searches use Base44’s AI service to interpret requirements; structured filters with no search text do not use AI interpretation. AI report generation also sends the report inputs to Base44’s AI service. Base44 lists OpenAI and Anthropic as LLM subprocessors. The provider used for each Autotrayce request and the app-specific AI retention settings have not yet been confirmed. Do not submit confidential programme names, pricing or unnecessary personal information.

Drafts, saved projects and sharing

Supplier Discovery drafts are held in session storage in the originating browser tab, expire after four hours and are removed on the next draft access or when you sign out or clear drafts. Browser session recovery may restore tab storage. Draft references do not share the draft with another person. Saved projects, comments, shortlists and reports are separate records on Base44; access depends on your account, organisation and project permissions. Organisation administrators and authorised collaborators may have access to shared work.

Contact and beta feedback

Contact forms store your name, email, subject and message. Beta feedback also records its category and page section, together with your account name and email so our team can investigate and respond. Search text, full page URLs and project IDs are not attached automatically to feedback. Anything you type in the message is included.

Newsletters and programme alerts

Newsletter forms store your email, signup source and any selected interests. Programme alerts additionally store the company, role, frequency and filters you choose and confirmation/unsubscribe records. Programme alerts use email confirmation; general newsletter signup is a separate flow. To stop messages or request removal, contact hello@autotrayce.com; programme alerts also provide unsubscribe links. Delivery and suppression records may be needed to respect your choice.

Operational reliability

For signed-in users, a view crash sends a fixed error code to an administrator-only incident queue independently of optional analytics. We do not send error messages, stack traces, sourcing text or URLs in this signal. Records include timestamps and a hashed account identifier used to suppress repeats; this is pseudonymous, not anonymous. Base44 may also attach service metadata. Minimal alerts go to our support mailbox. Incidents are reviewed for retention after resolution; automated deletion is not enabled.

Optional analytics

If you allow analytics, app-managed tracking records page names, access prompts and limited workflow signals such as success, error and result-count ranges. These records can include Base44 account and timestamp metadata and are not anonymous. The beta workflow event payload does not include sourcing text, project IDs or query strings. Rejecting analytics stops future app-managed analytics; it does not erase earlier records or disable necessary hosting, authentication and security processing.

Browser storage

We use cookies and browser storage for authentication, your privacy choice and requested features such as theme, comparison selections, recent directory searches and sourcing drafts. The analytics choice is valid for 12 months, after which optional tracking is disabled until renewed. Other locally saved preferences may remain until you clear them or clear site data. Clearing storage may sign you out or remove unsaved work. Base44 manages authentication storage.

Service providers and payments

Base44 provides application hosting, authentication, record and file storage, AI and email integrations. Paid checkout uses Stripe; checkout and membership records contain information needed to process the transaction and administer access. External links and externally hosted media involve their respective services. Base44’s published subprocessor list includes US-based data hosting, server, email, media, logging and AI services, and Wix in Israel. Its Data Processing Addendum describes international-transfer mechanisms, including adequacy, the Data Privacy Framework and Standard Contractual Clauses as applicable. The specific hosting region, transfer mechanism and AI retention settings for this app require confirmation; we do not promise UK-only processing or zero AI retention.

Retention and deletion

The four-hour sourcing-draft limit and 12-month analytics-choice period are implemented in the app. An operational retention schedule has been approved, but automated server-record deletion is not enabled. The administrator’s read-only review flags analytics after 90 days, closed enquiries and terminal beta grants after 12 months, and certain withdrawn or unconfirmed subscriptions after 30 days. A flag requires review of holds, shared ownership and email suppression before any removal; it does not confirm deletion. Base44’s DPA allows backup and legally required retention after termination, without specifying a backup-erasure interval on that page. Provider logs, AI retention and backup periods require confirmation. Archiving a project is not erasure, and signing out does not delete saved projects or account records. Contact us to request access, correction, deletion or information about retention; some records may need to remain for security, legal obligations or the rights of other users.

Privacy requests

Email hello@autotrayce.com with your request. Do not send passwords or unnecessary identity documents. We may need to verify your identity and clarify the records involved. Depending on the circumstances, data-protection rights include access, correction, erasure, restriction, objection, portability and withdrawal of consent. You may also raise a concern with the UK Information Commissioner’s Office (ico.org.uk).

Cookies at Autotrayce

We use browser storage for sign-in, requested features and your preferences. Optional app analytics runs only if you allow it. Hosting and security processing still applies.

Cookie notice