Privacy policy
Last updated: September 2026 · Version 3.7 · Multi-region scope (Chile, EU, USA, Brazil and others).
1. Data controller
This policy applies to Mappsite (hereafter "the site" or "we"), a discovery platform for businesses of every size. The site has changed its name and is moving to a new domain: while the move lasts it answers on both mappsite.com and buscapymes.cl, which are the same service and the same controller, and old links keep working.
Data controller — Cristóbal Ignacio Martínez Urtubia, a natural person. He decides what the personal data this policy covers is used for.
To exercise your rights over your data, or for any question about it, write to us through the contact page: it is the channel in force and we handle it ourselves.
2. What data we handle
- Account data (if you register): email, encrypted password, display name, the language we write to you in and, optionally, phone and delivery address. The language is stored so we can write to you in it —emails, notifications and the app— and it is not used for anything else: not for prices, not for terms, not to decide what you see. You change it by choosing another language in the app.
- Public data about your business (if you own it and publish it): name, address, phone, email, social profiles, opening hours, photos and delivery area.
- Requests to businesses (bookings, messages, orders): name, contact details, notes and, where applicable, delivery address.
- Approximate location: only if you allow it in your browser, to show nearby businesses. The coordinates are not stored. What is recorded is the district and region you search from, together with the search term and never with your name. Where you left your car inside a venue is a different thing and has its own bullet further down.
- Technical data: activity logs, session identifiers and strictly necessary cookies (see the Cookie policy).
- What you talk about in a business's AI chat —its virtual assistant— is kept by that business: what you write and what the artificial intelligence replies are recorded so that whoever runs the business can read them in their dashboard. You are not asked for any details to ask a question: without signing in, the conversation shows up for the business as “Visitor” with a code; when signed in, with your name. We do not store your IP address or any fingerprint of your browser with the conversation. The text also travels to Cloudflare to generate the reply. The questions the AI chat could not answer are also grouped by topic with artificial intelligence —only their text, without names, emails or phone numbers— for the daily summary that whoever runs the business receives. It is kept for the period the business chooses —30, 90, 180 or 365 days from the last activity; 180 if it does not choose— and you can ask for it to be deleted whenever you want: from the chat itself, from your account, or on this very page with the conversation code. If you chat while signed in and the assistant leaves a booking or an order ready for you, we also note which products or services they were, linked to your account, so that the business's AI assistant knows what you talked about if you write to it later. That assistant receives it with a reference that does not identify you, never with what you wrote, your name, email or phone number, and it is deleted after 30 days.
- Vehicle and parking: the plate, model and colour you save in your profile, and the mark of where you left the car inside a venue, with the time.
- Queue and table: the name you use to take a turn or to occupy a table. It is optional and each business decides whether to ask for it.
- Site usage: which pages and products are opened and what is searched for, to build each business's statistics. It is a count and it carries no identifier of yours: not your name, not your account, and not a visitor identifier, which no longer exists (see the Cookie policy). Two visits of yours are indistinguishable from visits by two people.
- Point of sale and cash register (if the business charges at the counter): which member of its team made each charge, the opening and closing of each cash-register shift —who opened it, who closed it, and any free-text notes the business writes— and the inventory movements each sale or refund creates. This is operational information about the business and its team: a counter sale needs no account and leaves no data of its own about the person buying.
- Booking a time without an account: an email address and a WhatsApp number are required, and a phone number is optional. We use the email to send you the booking receipt, the reminder before the time and any notice if that appointment changes. The WhatsApp and phone numbers are there so the business can contact you: Mappsite does not send WhatsApp messages or make calls. All three are stored with the booking and the business can see them. Ordering or buying without an account does not require an email or a WhatsApp number; each business decides whether to ask for a name.
- What a business's AI assistant does: it can reply to the messages you write to that business, accept or decline your order, and confirm or decline your booking (see section 10). To do so it reads your message, your name and the order or appointment awaiting an answer. We record what it did, when and who authorised it; and when a change was made by an AI agent, the name that agent introduced itself with and an identifier of the run in which it did it. That name is declared by the caller: we do not verify it.
- Third-party AI agents: a person's AI assistant —one that is not Mappsite's— can read a business's public page and, unless that business has switched it off, book a time or place an order on someone's behalf. It must identify itself, say on whose behalf it acts and leave an email address or a WhatsApp number for that person. We store what it declared —the agent's name, on whose behalf it said it acts and that contact— together with the booking or order it created, and the business can see it. If the contact is an email address and it is a booking, we send the receipt there; over WhatsApp we send nothing automatically. All of this is what the agent declares: Mappsite cannot verify that the person exists or that they authorised it.
2.1 Sensitive data
We do not ask you for sensitive data (health, ethnic origin, beliefs, political or trade union membership, socio-economic situation, sexual life or orientation, gender identity, biometric or genetic data) and no form on the site requests any.
They can still reach us, because there are free-text fields: the note on a booking or a message to the virtual assistant. You do not need to write any of that to book, order or ask, and we recommend that you do not. What you write to the assistant is stored and the business reads it: if you mention something about your health there, it stays in that conversation until the period chosen by the business runs out or you ask for it to be deleted. The note on a booking is also stored, and it is deleted after 180 days. If you need to give a health detail, give it to the business in person or through its direct channel.
3. Purposes and legal basis
We handle your data in order to:
- Run the platform and let you search for and contact businesses (performance of the service).
- Deliver your request to the business owner and allow their reply (performance).
- Security, fraud prevention and service improvement (legitimate interest).
- Communications and non-essential trackers, if there were any (only with your consent).
- Comply with applicable legal obligations.
We do not sell your personal data and we do not share it with third parties for advertising. Under CCPA/CPRA (California), this amounts to not "selling or sharing" your personal information.
4. Who it is shared with (processors)
When you book or message a business, that data is delivered directly to the owner of that business so they can reply to you. Mappsite is not a commercial intermediary: it makes the contact possible.
We use providers that handle data on our behalf:
- Supabase — database and authentication.
- Cloudflare — hosting and site delivery.
- Cloudflare R2 — storage and delivery of the photos and videos each business publishes, served from cdn.mappsite.com.
- Cloudflare Workers AI — the engine behind the virtual assistant, each business's AI assistant and the content translation. It receives the text you write to the virtual assistant or to the business's assistant; when a business's assistant attends to its customers, also the messages you wrote to that business and the name of whoever placed an order or a booking awaiting an answer; if you talked to that business's virtual assistant while signed in, which products or services were left ready and how it ended, with a reference that does not identify you and never with what you wrote; the business information the assistant needs (catalogue, prices, opening hours), and the content being translated. All of it solely to generate the reply, the proposal or the translation. It also receives, without names, emails or phone numbers, the questions a business's AI chat could not answer, solely to group them by topic in that business's daily summary. The businesses' assistant runs on factotum, a service of the same controller as this policy, hosted on Cloudflare, which is what passes it on to Workers AI. It does not receive audio or voice recordings.
- Resend — transactional email delivery (confirmations, notifications and password recovery). It receives your email address and the content of the message. While the domain move lasts there are two sending regions at once: mail on the new domain is handled in Ireland (European Union) and mail on the legacy domain in São Paulo (Brazil).
- Google — optional sign-in (OAuth).
- Geoapify — address search. When an address is typed into a form, it receives that text and, if a point is already marked on the map, its approximate coordinates, solely to suggest matching addresses. It processes that data in the European Union. OpenStreetMap / CARTO / Nominatim / Photon — maps and area names from a coordinate.
- Cloudflare Turnstile — anti-abuse check. When you create an account, request a password reset link, write to us, send an order, book a time, join a waiting list or take a table, your browser solves a Cloudflare check. It receives your IP address and technical signals from your browser in order to tell a person apart from an automated program. It does not receive what you write or your contact details, and it is not used for advertising or to track you across other sites.
- Flow — payment gateway for business subscriptions. Card payment is switched off and, while it stays that way, we send it no data.
We choose providers that offer public, verifiable data protection terms and security guarantees. A Data Processing Agreement (DPA) is in force with Supabase, Cloudflare and Resend: Supabase (Data Processing Addendum v1, dated 1 August 2026), Cloudflare (Customer DPA v6.4, dated 3 April 2026) and Resend (Data Processing Addendum, updated 31 December 2025). All three form part of each provider's terms of service and take effect when those terms are accepted, so there is no separately signed copy: do not go looking for one, a signature is not what makes them valid. The remaining providers on the list handle the data under their own terms of service and data protection terms.
5. International transfers
Some providers process data outside your country (for example, in the USA, the EU or Brazil). Those transfers rely on the European Union Standard Contractual Clauses, incorporated within each provider's Data Processing Agreement as listed in section 4; Cloudflare also publishes its standard clauses annex separately. Like the agreement they belong to, those clauses are deemed executed when the provider's terms of service are accepted, with no separate signature. This is also the safeguard Chilean law 19.628 accepts for transferring data to another country: contractual clauses with adequate guarantees.
6. Your rights
Depending on your country, you can exercise the following rights:
- Access: obtain a copy of your data.
- Rectification: correct inaccurate data.
- Erasure or cancellation ("right to be forgotten"): delete your account and your data.
- Portability: receive your data in a machine-readable format.
- Objection and restriction of processing on justified grounds.
- Withdraw consent at any time (without retroactive effect).
- No sale or sharing (CCPA/CPRA): we do not sell or share your data.
You can exercise them from your account (export data and delete account) or by writing to us from the contact page. We will reply within the applicable legal deadlines.
7. Retention
We keep your account data for as long as the account is active: it is the live state of your profile, your favourites and your preferences, and it does not pile up. When you delete your account we erase or anonymise your personal data, except for what we must retain by legal obligation.
Whatever does not depend on your account is deleted on its own, on these terms:
- 7 days: the marker that stops a single request from an AI assistant acting for whoever manages a business from leaving two proposals when it is retried. It keeps neither the request nor the response: only which business and which proposal it belongs to.
- 30 days: the mark of where you left your car, whatever a business sends to its bin, how much of a business's AI assistant quota each request reserved and was charged, and which products or services were left ready when you talked to a business's virtual assistant while signed in.
- 90 days: a queue turn, a table occupancy, an entry on a waiting list and the record of what a business's AI assistant did —what it prepared, what was applied, who authorised it and, if an agent did it, the name it introduced itself with—.
- 180 days: the free-text note you write when booking or ordering and the notices already delivered to you. The Direct messages you exchange with a business and what you talk about in its AI chat are kept for the period that business chooses: 30, 90, 180 or 365 days from the last activity, and 180 if it chooses none. Each conversation is deleted as a whole, not message by message: half a conversation says less than none.
- 365 days: the trail of the instructions the person running a business gave their assistant and later changed or withdrew. The instruction in force does not expire: it is the business's own criterion and stands until someone corrects it; what is deleted is the superseded version.
- 400 days: page and product view statistics and search terms. They are a count and carry neither your name nor any identifier of yours.
In a booking or an order, the note is deleted, not the transaction. The record of what you ordered is kept as a record of the transaction and for as long as the law requires; the comment you wrote by hand is deleted after 180 days. That is why you can still see your order and no longer the text you left with it.
There is data we cannot delete even if you ask us to, because another law requires us to keep it: payment records and the detail of a transaction, under tax and accounting rules, and the record that you gave your consent, because the law requires us to be able to prove it.
1460 days (four years): everything you write to us as the administrators of the app — the messages from a business, support tickets and whatever arrives through the contact page. What is at stake there is not a purchase but the use of personal data, and that is the term in which the law allows a claim about it and requires us to be able to prove what we answered. A ticket is deleted as a whole, replies included, four years after the last message on that same subject. And there are two kinds of data for which no term has been set yet. One is the internal trail of actions, where one rule pushes towards deletion and another towards keeping: it is held for as long as it is needed to handle a complaint and the term is under review. The other is what a third-party AI agent declared when booking or ordering —its name, on whose behalf it said it acts and the contact it left—, which is currently kept with no deletion date. We are not giving you a number that does not exist yet.
Three different things happen when you delete your account. Everything that is only yours is erased: your profile, your favourites, your preferences, your notices, your messages with a business and the mark of where you left your car. The transactions the law requires us to keep are unlinked from you — orders, bookings and payments stop pointing at your account, and your delivery address and the notes you wrote go with them. And the record that you gave your consent is kept, with your identifier, because it is the only proof that we asked you for it.
8. Security
We apply reasonable technical and organisational measures (encryption in transit, row-level access control in the database, encrypted passwords). No system is one hundred per cent secure; in the event of an incident affecting you, we will act in accordance with the applicable law.
9. Minors
Mappsite is intended for people over 18 years old. We do not knowingly collect data from minors. If you believe a minor has given us data, contact us so we can delete it.
10. Automated decisions and artificial intelligence
Mappsite, on its own account, does not make automated decisions with significant legal effects on you. A business can, however, let its AI assistant decide on its behalf, as explained below.
Each business's virtual assistant replies automatically, using an artificial intelligence system, based on what that business published on its page. It decides nothing for you and closes nothing in your name: it leaves the booking or the order ready for you to confirm.
A business's AI assistant can attend to you. It can answer the messages you write to that business, accept or decline your order, and confirm or decline your booking. Every message it writes to you carries a line in front saying it was written by an artificial intelligence. Whoever runs the business decides each of those three things separately and can switch them off; if the business's plan includes them, they arrive switched on. They also decide whether a person reviews what the assistant prepares first, or whether the assistant applies it without confirmation: in that case nobody reviews it before it reaches you, and the assistant starts working on its own when a message, an order or a booking comes in. If you disagree with what it decided, write to the business.
Your own AI assistant can act for you. If you use an AI assistant from another company, it can book or order at a business on your behalf, unless that business has switched it off. It is recorded as done by an agent, with what the agent declared (section 2). Mappsite does not verify who that agent is or that you authorised it. What your assistant does with your data before it reaches us depends on the company that offers it, not on Mappsite.
11. Supervisory authority
You can complain to the data protection authority of your country (in Chile, the Personal Data Protection Agency; in the EU, your national authority).
12. Changes
We may update this policy. The date of the last update appears at the top. In the event of material changes, we will give notice on the site.
See also: Terms of use · Cookie policy.