Privacy Policy
Last updated: March 2026
1. Who We Are
Lokaaro ("we", "us", "our") is a local business directory serving communities in North Carolina. We operate the website at lokaaro.com. Questions about this policy can be sent to [email protected].
2. What We Collect
We collect the minimum information needed to operate the directory:
- Account information — name, email address, and password (hashed) when you register.
- Business listing data — name, address, phone, website, description, and photos submitted by business owners.
- Reviews and ratings — text and star ratings you submit for businesses.
- Usage data — pages visited, search queries, clicks on phone numbers and websites. This is collected in aggregate and is not linked to individual identities for public users.
- Payment information — if you subscribe to Pro, billing is handled entirely by Stripe. We do not store your card number or payment details.
- Cookies — we use a session cookie to keep you logged in, and analytics cookies to understand how the site is used. We do not use advertising or tracking cookies.
3. How We Use Your Information
- To operate your account and business listing
- To display your reviews and ratings on business profiles
- To provide business owners with analytics on their listing performance
- To send transactional emails (email verification, subscription receipts, review notifications)
- To detect and prevent spam, fake reviews, and abuse
We do not sell your personal information. We do not use your data for advertising.
4. Health Information — HIPAA Notice
Lokaaro is a business directory. We are not a healthcare provider, health plan, or healthcare clearinghouse, and we are not a Business Associate under HIPAA.
We do not collect, store, or process Protected Health Information (PHI) as defined by HIPAA. Specifically:
- We do not handle patient records, medical histories, diagnoses, or treatment information.
- Reviews posted on Lokaaro are voluntary, user-generated content. Any personal health information a user chooses to include in a review is submitted at their own discretion and is not protected under HIPAA on our platform.
- We list health and wellness businesses (gyms, therapists, chiropractors, etc.) as directory entries only — the same way we list restaurants or auto shops. Appearing in our directory does not create a covered relationship under HIPAA.
If you are a healthcare provider and have questions about your listing, contact us at [email protected].
5. Third-Party Services
- Stripe — payment processing for Pro subscriptions. Stripe's privacy policy applies to payment data.
- Google Fonts / CDN assets — loaded from third-party CDNs. Standard web requests are made to their servers.
We do not share your personal data with any other third parties.
6. Data Retention
We keep your account data for as long as your account is active. If you delete your account, personal information is removed within 30 days. Business listings and reviews are retained in anonymized form for directory integrity.
7. Your Rights
You can:
- Access or update your account information at any time
- Request deletion of your account by emailing [email protected]
- Opt out of non-essential emails via the unsubscribe link in any email we send
8. Security
Passwords are hashed and never stored in plain text. Access to production data is restricted. We use HTTPS for all traffic. Despite these measures, no system is completely secure — please use a strong, unique password for your account.
9. Changes to This Policy
We may update this policy as the product evolves. Significant changes will be communicated by email or a notice on the site. The "last updated" date at the top of this page reflects the most recent revision.
10. Contact
For privacy-related questions or requests: [email protected]