Privacy Policy: Peer Benchmarks & Best Practices

How Vanta uses shop data when delivering industry insights. Last updated July 13, 2026.

This policy is operated by Vanta Brand Scaling LLC ("Vanta", "we"), including the product known as Bay Ops Brain. It is written for shop owners and operators who use Vanta.

1. Plain-language summary

Vanta (and Bay Ops Brain) helps tire and auto service shops run better day to day. When we sell best practices or peer comparisons, shop owners naturally ask whether we are sharing their data with competitors.

Short answer

We never show another shop your identifiable numbers, people, customers, or playbooks. We may use de-identified, aggregated patterns across many shops so we can tell you what shops like yours typically do. You can turn peer comparison off. Your customers, calls, and shop knowledge stay yours.

2. Who this covers

This policy covers multi-tenant use of operational data for (a) running your shop inside the product, (b) coaching and best-practice recommendations, and (c) anonymized peer benchmarks. It supplements (and does not replace) the general Vanta Privacy Policy and your Master Service Agreement / DPA.

3. Data we process

3.1 Your private shop data (never shared with other customers)

  • Point-of-sale and end-of-day sales reports you connect or forward
  • Employee accounts, time clock, training completion, points, and kudos
  • Call recordings/transcripts and scores (when telephony is connected)
  • Customer / VIP / fleet contact records you enter
  • Shop playbooks and knowledge you teach to Bay Ops Brain
  • Photos, checklists, messages, and other day-to-day ops content

3.2 Peer layer (aggregated only)

From private data we may derive de-identified aggregates such as medians and ranges for metrics like car count bands, attach rates, gross profit bands, or payroll-as-a-percent-of-gross-profit bands, grouped by coarse attributes (bay count band, region band, shop type). These aggregates power shops-like-yours comparisons and best-practice suggestions.

4. What we will never do

  • Sell or disclose your identifiable shop data to other customers or competitors
  • Show another shop your store name, address, exact revenue, or employee names in peer views
  • Share call audio, customer PII, VIP lists, or shop-specific scripts as peer content
  • Publish a case study that identifies you without your written permission
  • Use your live ops data for acquisition deal sourcing without a separate, explicit agreement
  • Give preferential access to peer data to any tire operator who holds equity in Vanta (we do not structure the company that way)

5. How anonymization works

5.1 Minimum cohort size (k-anonymity)

We do not display a peer statistic unless the comparison group has enough shops that no single shop can be reverse-engineered. Default floor: at least 8 shops in the bucket. If a city or metro has too few shops, we broaden the geography (city to metro to state to region) or suppress the metric.

5.2 Bucketing, not pinpointing

We group shops into bands (for example 1-2 bays, 3-4 bays, 5-8 bays; revenue bands; franchise tire vs multi-service independent). We do not label peer rows with store names or street addresses.

5.3 Time smoothing

Peer metrics use rolling windows (typically 30-90 days) and medians/ranges, not what one store did yesterday. That reduces re-identification risk and avoids surveillance theater.

5.4 Separate data planes

PlaneWhat lives there
Tenant-privateFull POS detail, calls, employees, Bay Ops Brain knowledge. Only your users and authorized admins.
Product contentGeneral playbooks and training Vanta authors. Not sourced from your private docs.
Peer layerOnly aggregates that pass cohort and de-identification rules.

6. Your choices

6.1 Peer comparison modes

  • Private only: see your trends vs your own goals. No peer bands.
  • Peer benchmarks (default for participating shops): compare to anonymized cohorts.
  • Enterprise exclude: multi-store / enterprise customers may request exclusion from the peer contribution pool while still using the product.

6.2 How to opt out or ask questions

Contact [email protected] (or your named customer success contact) to turn off peer comparison, request exclusion from aggregates, or ask what metrics are in the peer pool. We will confirm changes in writing.

7. Legal basis and contracts

Processing for the product is under your service agreement. Use of de-identified aggregates for product improvement and peer benchmarks is disclosed in the MSA / DPA. Where required by law or enterprise policy, we obtain additional consent. If law requires deletion, we delete or de-identify personal data as described in the main Privacy Policy; aggregates that no longer identify anyone may remain.

8. Security

Shops are isolated with multi-tenant access controls (including row-level security where applicable). Admin access to production data is least-privilege and auditable. We do not allow random staff to browse other shops' dashboards for research.

9. Customer-facing script (for your team)

"We never show another shop your numbers or your people. We only use de-identified patterns across many stores so we can tell you things like: shops your size usually keep payroll under about half of gross profit. You can turn peer comparisons off anytime. Your customers, calls, and playbook stay yours."

10. Updates

We may update this policy as the product grows. Material changes will be posted with a new effective date and, for paid customers, communicated through account contacts.

See also our general Privacy Policy and Support page. © 2026 Vanta Brand Scaling LLC / Bay Ops Brain.