Privacy Policy
Last updated: April 27, 2026 · Effective for all customers of All In One Tires & Auto Service
1. Who We Are
All In One Tires & Auto Service ("we," "us," or "our") operates the website at allinoneautoservice.com and provides automotive repair and tire services at 996 W Evelyn Ave, Sunnyvale, CA 94086.
This Privacy Policy explains how we collect, use, and protect information you provide when you use our website or services.
2. Information We Collect
Information You Provide Directly
- Contact information — name, phone number, email address
- Vehicle information — year, make, model, trim, license plate, VIN, mileage
- Appointment details — preferred date, time, service requested, notes
- Service history — work performed, estimates, invoices, payment method
Information Collected Automatically
- IP address — collected when you approve a service estimate via email link, stored as part of the electronic authorization record
- Timestamp — date and time of any electronic authorization action
- Browser/device type — collected by our hosting provider for security purposes
Third-Party Services We Use
- Supabase — SOC 2 certified database provider that stores customer and vehicle records
- EmailJS — email delivery service for appointment confirmations, estimates, and invoices
- NHTSA APIs — used to check vehicle safety recalls by VIN (no personal data is transmitted)
3. How We Use Your Information
We use the information we collect to:
- Schedule and confirm service appointments
- Prepare and deliver service estimates and invoices
- Contact you about your vehicle service status
- Send appointment reminders and service follow-ups
- Maintain a record of services performed on your vehicle
- Create and retain electronic authorization records when you approve estimates
- Comply with legal, tax, and regulatory requirements
We do not use your information for advertising, sell it to third parties, or share it with data brokers.
5. Data Retention
We retain your information for as long as necessary to provide our services and comply with legal obligations:
- Customer and vehicle records — retained for the lifetime of the customer relationship plus 3 years
- Estimate authorization records — retained for 7 years as business records
- Invoice and payment records — retained for 7 years per California tax law requirements
- Appointment data — retained for 3 years
You may request deletion of your personal information subject to any applicable legal retention requirements.
6. California Privacy Rights (CCPA)
If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):
You may request a copy of the personal information we have collected about you, including the categories of data, the purposes for which it is used, and who it has been shared with.
You may request deletion of your personal information. We may retain certain data where legally required (e.g., financial records, service authorization records).
We do not sell your personal information. This right does not apply to our operations.
We will not discriminate against you for exercising any of your CCPA privacy rights.
To exercise your rights, contact us at [email protected] or call (408) 543-9196. We will respond within 45 days as required by law.
7. Security
We take reasonable measures to protect your information:
- All data is transmitted over HTTPS (TLS encrypted)
- Customer data is stored in Supabase, which is SOC 2 Type II certified
- Staff portal access requires password authentication with role-based permissions
- No payment card data is stored on our systems
No method of transmission over the internet is 100% secure. While we use commercially reasonable measures to protect your information, we cannot guarantee absolute security.
8. Children's Privacy
Our website is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe we have inadvertently collected such information, please contact us immediately and we will promptly delete it.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any significant changes by updating the "Last updated" date at the top of this page. We encourage you to review this policy periodically. Continued use of our services after changes constitutes acceptance of the revised policy.
10. Contact Us
If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact us: