Privacy Policy
Last updated: March 22, 2026
1. Information We Collect
We collect information you provide directly, including:
- Account information: name, email address, password (hashed), company details
- Business data: estimates, proposals, invoices, client records, project updates
- Payment information: processed securely by Stripe — we never store card numbers
- Usage data: how you interact with the platform (pages visited, features used)
- Photos: project photos uploaded for estimates and project updates
2. How We Use Your Information
We use collected information to:
- Provide, operate, and improve the ContractorIQ platform
- Process payments and manage subscriptions
- Send transactional emails (invoice reminders, review requests)
- Send product updates and announcements (you may opt out)
- Generate AI-powered estimates and proposals using your project details
- Provide customer support
3. Data Storage & Security
Your data is stored in Supabase (PostgreSQL) hosted on AWS infrastructure in the US East region. We use row-level security to ensure your data is isolated from other users. All data is encrypted in transit (TLS) and at rest. We retain your data for as long as your account is active, plus 30 days after cancellation.
4. Third-Party Services
We use the following third-party services:
- Supabase: database and authentication
- Stripe: payment processing (subject to Stripe's Privacy Policy)
- OpenAI: AI-powered estimate and proposal generation
- Resend: transactional email delivery
- Vercel: hosting and infrastructure
We do not sell your personal data to any third parties for advertising or marketing purposes.
5. Your Rights
You have the right to:
- Access: request a copy of your personal data
- Correction: update inaccurate information via your Settings page
- Deletion: request deletion of your account and associated data
- Portability: export your data in a machine-readable format
- Opt-out: unsubscribe from marketing emails at any time
6. Cookies
We use essential cookies for authentication (Supabase session tokens). We do not use tracking or advertising cookies. You may disable cookies in your browser, but this may affect your ability to log in.
7. Children's Privacy
ContractorIQ is not intended for use by individuals under 18 years of age. We do not knowingly collect personal information from children.
8. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or in-app notification at least 30 days before they take effect.
9. Contact Us
For privacy-related questions or to exercise your rights, contact us at privacy@contractoriq.app.