Compliance & Methodology
Last updated: July 2026
Review software has a trust problem: gated flows, hidden fees, and locked contracts. This page documents exactly how Dependify collects reviews and messages customers — the same standard we hold ourselves to in every client agreement, published so anyone can verify it.
Our Methodology: Everyone Is Asked
After every completed job, the customer receives a short check-in text. Then — with no exceptions based on sentiment — every customer receives the same Google review link:
- Happy or silent customers receive the review request the next day.
- Unhappy customers receive the identical review request after a 72-hour service-recovery window, during which the business owner is alerted immediately and given the chance to make things right.
- One follow-up nudge may be sent to customers who haven't responded — then the sequence stops. Never a fourth message.
The check-in changes timing and support routing — never who gets asked. Withholding review links from unhappy customers is review gating, and we don't do it.
Google Review Policy Alignment
- The same review link goes to 100% of customers — no selective solicitation of positive reviewers.
- No incentives, discounts, gifts, or payments are offered in exchange for reviews — ever.
- No fake, purchased, employee, or AI-written reviews. We never write review text for customers.
- Review content is entirely the customer's own words, posted by the customer, on Google's platform. Google — not Dependify — controls publication, filtering, and removal.
FTC Rule Alignment (16 CFR Part 465, 2024)
The FTC's Rule on the Use of Consumer Reviews and Testimonials prohibits fake reviews, incentivized reviews without disclosure, insider reviews, and review suppression. Dependify's flow is built against each clause: no review text is created by us or by AI, no compensation is tied to reviews, no customer is ever routed away from Google based on how they feel, and unhappy customers are helped through customer service — then asked like everyone else.
Messaging Compliance (TCPA / CTIA / 10DLC)
- Messages are sent only to our clients' own customers — people with an established business relationship. No purchased, rented, or scraped lists, ever; clients warrant this in their agreement.
- All traffic is registered with US carriers via The Campaign Registry (A2P 10DLC).
- The first message of every sequence identifies the business and includes opt-out language. STOP is honored instantly, permanently, and globally.
- Quiet hours are enforced server-side per recipient timezone: nothing sends before 8am or after 9pm local time.
- Every message — inbound and outbound — is logged with timestamp, recipient, content, and delivery status, retained for 4 years as a TCPA defense file.
What We Never Do
- Review gating — "1–3 stars go to a private form, 4–5 stars go to Google" flows.
- Discounts or gifts for reviews.
- Review text written for customers, employee reviews, or purchased reviews.
- Purchased or scraped contact lists.
- Annual lock-in contracts or cancellation windows. Month-to-month, cancel by email.
Data & Subprocessors
Customer contact data is used solely to deliver the service and is never sold or used to market unrelated services. We store only what the service requires: name, phone, email, and last-job details. Our subprocessors are Twilio (messaging), Google (Business Profile APIs), Anthropic (response drafting), Resend (email), and Vercel (hosting). Details are in our Privacy Policy; data is exportable on termination within 30 days.
Verify Us
These commitments are contractual: our Terms of Service (§5) bind us to uniform review requests and prohibit gating and incentives, and our SMS Consent Policy documents message content, timing, and opt-out handling. Questions or a compliance concern? Email hello@dependifyllc.com.