Privacy Policy
ONE Hub · One Luxury International · Last updated September 12, 2026
What ONE Hub is
ONE Hub is an internal tool used by licensed agents at One Luxury International to manage property showings, appointments, contacts, deals, documents and marketing work. It is not a consumer product and is not intended for use by the general public.
Information about agents who use it
Signing in with a Google Workspace account gives ONE Hub your name, email address and profile photo. We also store per-agent settings such as calendar colour preferences and your MLS member ID.
With your explicit consent at sign-in, ONE Hub requests access to your Google Calendar (to create and update showing appointments) and, separately and optionally, to Gmail (to send weekly updates and open-house lead emails from your own address rather than a generic one). These tokens are stored so the features keep working and are used for nothing else. You can revoke either at any time from your Google account.
Information about other people
This is the most important section. Agents record information about third parties in the course of their work: client and prospect names, email addresses and phone numbers; the property addresses they viewed; the dates and times of showings; and free-text notes an agent writes about an appointment. Open-house sign-in sheets capture the same categories from members of the public who attend.
Those people are not ONE Hub users and did not create an account. Their information is entered by an agent and is visible to that agent and, for shared listings, to the brokerage team. It is not sold, rented, or used for advertising.
Optional iPhone features
With your permission, ONE Hub checks proximity to scheduled properties on your phone to offer arrival and feedback reminders during the appointment window. Your device location is not sent to ONE Hub’s servers or stored as a travel history. Apple’s location and geocoding services are used to locate property addresses.
Widgets, Live Activities, and Siri use a limited local copy of your own showing addresses and times. This copy expires after 24 hours and is cleared when you sign out. You control location permissions and Lock Screen access in iPhone Settings.
Items shared from other apps are staged locally for review and uploaded when you choose Save in Share Inbox. These may include photos, PDFs, links and text, and are associated with the receiving account. Uploads through the media library and assistant also store the files or images you choose with your account.
After you connect Siri and allow AI sharing, native note and to-do actions send the dictated text to our server and OpenAI for interpretation, then save the resulting note or to-do to your account. Apple handles speech recognition; these actions send text, not an audio recording. An uncertain request may retain its text in the protected device Keychain for retry. Disconnect shortcuts in Agent Notebook or turn AI sharing off in Settings to stop future AI capture requests.
The website keyboard reads a local list of your listing links. It does not request Full Access, read the message you are typing, or send keystrokes to our servers.
Documents, communications and deal information
When you use these features, we store uploaded photos and documents, saved notes, message and email content, and deal details such as sale prices, commissions, deductions and expenses. These records are linked to the signed-in account and relevant property or transaction, and used to provide the requested brokerage tools.
AI sharing choices
ONE Hub’s built-in AI features are off until you explicitly allow sharing with OpenAI. External AI app connections use the separate consent described below. Before your choice, the app explains that requests may include conversations, attachments, dictated text, property details, and relevant client, contact or deal information. OpenAI processes that information to provide the requested response. You can decline and continue using non-AI features, or change your choice in Settings → General → AI privacy. Revoking permission stops future AI requests; it does not delete records already saved.
Only submit information you are authorized to use. AI responses may contain mistakes and should be checked before you rely on them. For OpenAI’s handling of submitted data, see OpenAI’s privacy policy.
Connected AI apps
When you connect ChatGPT, Codex, Claude, or another supported AI client to ONE Hub, you separately authorize the access shown on the consent screen. Depending on the permissions you select and the tools requested, ONE Hub may return contact and lead information, appointment addresses and dates, transaction information, notes, documents, or other records your account can access. Write permissions allow supported changes; additional agent-workflow permissions can enable actions such as communications, cancellations, and publishing. Review the information and the proposed action before approving it.
The connected AI provider receives your prompts and the tool results returned to it, and handles them under its own terms, privacy policy, and account settings. This connection is separate from the AI privacy switch for ONE Hub's built-in assistant. Turning off that switch does not disconnect an external AI app. To stop an external app's access, use Settings → Connections → AI connections → Disconnect.
ONE Hub stores the client registration, the granted permissions, and access and refresh credential hashes. Access credentials expire after one hour; refresh credentials rotate and expire after 30 days unless refreshed, revoked, or otherwise invalidated. Additional agent-workflow access uses an encrypted delegated session so approved workflows can run with the connected account's permissions. Disconnecting revokes the grant and clears that delegated session. It does not undo completed changes or remove data already received by the AI provider.
For security and troubleshooting, ONE Hub records the account and connection identifiers, tool or action name, time, and outcome of MCP calls. These audit records are linked to the account; they are separate from anonymous page analytics. The MCP audit does not intentionally store tool arguments, CRM text, or credential values. Audit and connection records have no fixed automatic deletion period in the current service and are retained for operational and security needs, subject to applicable requirements and deletion requests.
Usage data
We collect anonymous usage analytics — which screens are opened, device type, approximate region — to understand which features are used. This is not linked to your identity and is not used to build a profile of you.
Who we share it with
ONE Hub runs on third-party infrastructure and shares data with those providers only as needed to operate:
- Supabase — database and authentication
- Vercel — application hosting and anonymous analytics
- Google — sign-in, Calendar, Gmail
- Resend — sending email
- Stellar MLS / Bridge — property listing data (this flows in, not out)
- Connected AI providers — receive the information returned by tools you authorize; see Connected AI apps above and the chosen provider’s privacy policy.
- OpenAI — assistant conversations and attachments, dictated showing details, acquisition-search requests, market summaries, and property comparisons are processed to provide AI features
We do not sell personal information, and we do not use it for advertising.
How long we keep it
Showing and appointment records are retained as business records for as long as the brokerage needs them, and for at least as long as Florida requires brokerages to keep transaction records. Agent accounts are removed when someone leaves the firm, and an agent can delete their own account at any time (see below). If you are a client or open-house guest and want your information removed, contact us using the details below and we will delete it.
Deleting your account
Agents can delete their own account at any time from Settings, without contacting anyone. Deleting your account permanently removes your sign-in, your profile, your connected Google Calendar and Gmail access, your notification devices and any API tokens you created. You will not be able to sign in again.
Showings, appointments and open-house records you logged are kept afterwards as One Luxury International business records — Florida requires brokerages to retain transaction records — but they are unlinked from your name and email address.
Your choices
You can request access to, correction of, or deletion of personal information we hold about you. Agents can revoke Google Calendar or Gmail access at any time without losing access to the rest of the app.
Children
ONE Hub is a workplace tool and is not directed at anyone under 18.
Contact
One Luxury International
nick@oneluxuryint.com
If this policy changes materially we will update the date at the top of this page.