Legal · Privacy

Privacy Policy

Effective Date: June 14, 2026  ·  GScoreARS LLC · Orlando, Florida
This Privacy Policy describes how GScoreARS LLC collects, uses, stores, shares, and protects your personal data. It applies to all visitors, registered guests, and business members who interact with the GScoreARS platform and is designed to comply with the EU General Data Protection Regulation (GDPR), the Florida Information Protection Act (FIPA), and applicable global privacy law.
1. Who We Are & Data Controller Identity

GScoreARS LLC ("GScoreARS," "we," "us," or "our") is a guest reputation intelligence platform headquartered in Orlando, Florida. We operate the GScoreARS platform at gscorears.com and related web applications.

Joint Controller Arrangement: For data submitted about you by a member property (hotel or hospitality business), both GScoreARS and the submitting property operate as independent data controllers, each determining the purpose and means of processing for their own use of that data. This arrangement is governed by our Business Member Agreement. You may direct data subject requests to either controller.

For GDPR purposes, GScoreARS LLC is the primary point of contact for data subject requests. Contact: privacy@gscorears.com

2. Data We Collect

We collect the following categories of personal data:

3. How We Use Your Data

We do not use your data for advertising, behavioral tracking for third-party marketing, or any purpose beyond operating and improving the GScoreARS platform.

4. Legal Basis for Processing (GDPR)

For users in the European Economic Area (EEA) and United Kingdom, we process personal data under the following legal bases:

5. Third-Party Data Collection & GDPR Article 14 Compliance

When a member hotel submits a behavioral report about you, that constitutes collection of personal data about you from a third party. GDPR Article 14 requires that you be informed of this practice. GScoreARS satisfies this obligation through upfront disclosure at registration — by accepting the Personal Member Agreement, you receive full advance notice that member hotels may submit reports about your stays at any time. No separate per-report notification is sent; the disclosure is made once, in full, before any report can exist.

Specifically, the Personal Member Agreement (Section 5.1) discloses: (a) the categories of businesses that may submit reports (registered GScoreARS member hotels and hospitality businesses); (b) the types of data they may submit (stay dates, behavioral notes, incident records, positive recognition); (c) that reports will affect your GScore and tier; and (d) your right to access and dispute any report through your member account.

You may view all reports associated with your profile at any time by logging into your GScoreARS account. GScoreARS does not send automatic email notifications for individual report events.

6. Data Sharing

We do not sell your personal data. We share data only as follows:

7. Your Rights

You have the following rights regarding your personal data. To exercise any of them, email privacy@gscorears.com:

We will respond to all data subject requests within 30 days. Complex or high-volume requests may be extended by an additional 60 days with notice.

8. Data Retention

We retain personal data for as long as your account is active or as required by applicable law. Specific retention periods:

9. Local Storage & Session Data

The GScoreARS web application does not use advertising or tracking cookies. Platform functionality relies on browser localStorage and sessionStorage — client-side storage that remains on your device and is not transmitted to third parties. This storage is used to maintain your session state, remember tab selections, and preserve form progress.

You may clear localStorage at any time through your browser settings (Settings → Privacy/Site Data → Clear site data). Clearing this data will log you out and reset any in-progress form data.

Third-party data transfer via Google Fonts: As noted in Section 6, loading this website causes your browser to contact Google's servers to retrieve fonts. This is the only third-party data transfer initiated by standard page loads. No advertising pixels, social tracking scripts, or analytics SDKs are loaded on this platform.

10. Security

GScoreARS implements the following security measures to protect your data:

No system is 100% secure. In the event of a data breach that poses a risk to your rights, we will notify affected individuals and relevant supervisory authorities within 72 hours of discovery, as required by GDPR Article 33/34.

11. International Data Transfers

GScoreARS is operated from the United States. If you access the platform from the EEA, UK, or other jurisdictions with data transfer restrictions, your data may be transferred to and processed in the United States. Where required, we rely on Standard Contractual Clauses (SCCs) approved by the European Commission as the legal mechanism for such transfers.

12. Children's Privacy

The GScoreARS platform is not directed at individuals under the age of 18. We do not knowingly collect personal data from minors. If you believe a minor's data has been submitted to the platform, contact us immediately at privacy@gscorears.com and we will delete it promptly.

13. Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices, legal obligations, or platform features. Material changes will be communicated via email and a visible notice on the platform at least 30 days before taking effect. Continued use of the platform after the effective date constitutes acceptance of the updated policy.

14. Contact & Supervisory Authority

For all privacy inquiries, data subject requests, or concerns:
privacy@gscorears.com
GScoreARS LLC · Orlando, Florida · United States

If you are located in the EU/EEA and believe your rights have not been respected, you may file a complaint with your local supervisory authority. A list of EU data protection authorities is available at edpb.europa.eu. UK residents may contact the Information Commissioner's Office (ICO) at ico.org.uk.

This Privacy Policy is distinct from the Personal Member Agreement and Business Member Agreement. Please review all documents relevant to your account type.