Legal
Privacy Policy
This Privacy Policy explains how Confianza Services, LLC dba STrOp App (“we,” “us,” “our”) collects, uses, and protects your information when you use the STrOp application (“Service”). STrOp is currently in Beta.
By using the Service, you agree to this Privacy Policy. If you do not agree, do not use the Service.
Our stance, in four sentences. Your data is yours — isolated at the database layer, exportable in full, and deletable for real. Every outside company that touches it has one job, is named in Section 5 below, and is disclosed before we start using it. We never sell your data and never let anyone use it to train their models. Where something isn’t true yet, we say so rather than hide it.
1. Information We Collect
Information You Provide
- Account information: Name, email address, and any profile details you choose to add.
- Company information: Your business name, trade, license and DIR registration numbers, addresses, and default rates.
- Business data: Operational content you create or upload — projects, estimates, bids, proposals, contracts, schedules of values, timecards, daily reports, T&M tickets, change orders, pay applications, photos, documents, and notes.
- Worker information: If you use payroll or certified-payroll features, you provide information about your employees, including names, addresses, classifications, pay rates, hours, and Social Security numbers. See Section 9 for how we treat this.
- Billing information: If you are a paying customer, your legal entity name, accounts-payable contact, billing address, the construction-volume band you declare for pricing, and invoice/payment history. We do not collect or store payment card numbers — see Section 7.
- Communications: Messages you send us, including support requests, feedback, and beta-signup form submissions.
Information Collected Automatically
- Usage data: Pages visited, features used, actions taken within the Service, and timestamps.
- Device and connection data: Browser type, operating system, IP address, and general location (city/region level, not precise).
- Error and performance data: When something breaks, diagnostic information about the failure. This is scrubbed before it leaves the Service — see Section 5.
- Cookies: We use essential cookies to keep you logged in and maintain your session. We do not use advertising or third-party tracking cookies, and the Service contains no analytics or tracking scripts. If this changes, we will update this policy and notify you first.
Information From Our Marketing Site
The beta-request form on stropapp.com collects your name, email, company, and message, and submits them to our application. That form is protected by Cloudflare Turnstile, a bot check that processes interaction data to confirm you are a person.
2. How We Use Your Information
We use your information to:
- Operate the Service — authenticate you, save your work, and deliver features.
- Improve the Service — understand how the Service is used, identify bugs, and prioritize development.
- Communicate with you — respond to support requests, send service-related notices, and share product updates.
- Bill you — issue invoices and collect payment, if you are a paying customer.
- Ensure security — detect and prevent fraud, abuse, or unauthorized access.
We do not use your information to:
- Sell your data to third parties.
- Build advertising profiles.
- Send you marketing emails from third parties.
- Train artificial-intelligence models — ours or anyone else’s. See Section 6.
3. How We Store and Protect Your Information
Your data is stored in PostgreSQL databases hosted by Supabase on Amazon Web Services infrastructure, in the United States (US West). The application itself runs on DigitalOcean in the United States.
Protections in place today:
- Database-level isolation. Every record belongs to your organization and is scoped by PostgreSQL Row-Level Security — enforced by the database itself, not by application code that could forget. This is verified by an automated two-tenant test suite that runs on every change.
- Encryption in transit (TLS) and at rest.
- Social Security numbers are separately encrypted at the application layer, with a key held apart from the database. They are decrypted only at the moment a certified-payroll report is generated, and they are never sent to any AI provider or included in error reports.
- Error reports are scrubbed before transmission — cookies, headers, and request bodies are stripped entirely, and anything shaped like an SSN is redacted.
STrOp is in Beta. No system is completely secure, and we cannot guarantee absolute security.
4. Who Can See Your Data Inside Your Organization
Access within your organization is governed by the role you assign each member. Your organization’s administrators can invite members, set roles, and export or delete organization data. We do not control those choices — they are yours.
Our staff may access your data only to operate the Service: to investigate a problem you report, to respond to a security incident, or where required by law.
5. Service Providers
We do not sell your personal information. We use a short list of service providers, each with one narrowly defined job. Every one acts as a data processor on our behalf, and all of them store data in the United States unless noted.
| Provider | What it does | What it can see |
|---|---|---|
| Supabase (on AWS) | Database, authentication, and file storage | The primary copy of all of your data |
| DigitalOcean | Runs the application | Data in transit while the application processes it |
| Anthropic | Document AI — reading contracts, answering questions about your documents, reading scanned pages | Extracted document text and page images. Never Social Security numbers |
| Voyage AI | Builds the search index that makes document search work | Text of the documents being indexed |
| Resend | Sends email — sign-in links, invitations, notifications, reports | Recipient addresses and message contents |
| Postmark | Receives email sent to per-project inboxes | Inbound messages and their attachments |
| Sentry | Error and performance monitoring | Scrubbed diagnostic data (see Section 3) |
| Cloudflare | DNS, hosting for our marketing site, and the bot check on our beta form | Marketing-site visitor data; bot-check interaction data. Traffic to the application does not pass through Cloudflare |
| OpenStreetMap (Nominatim) | Converts project addresses into map coordinates | Project addresses submitted as lookup queries. This is a volunteer-operated service; we intend to replace it with a provider under contract before general availability |
| Instatus | Our public status page | Only incident notices we write ourselves, plus your email if you subscribe to updates |
| SMB accounting and banking providers | Invoicing and payment collection for paying customers | Billing contact and invoice information only — no project or worker data |
We may also disclose information if required by law, subpoena, or court order, or to protect our rights, safety, or property.
Before we add a new provider that would receive your data, we will update this policy and notify you — see Section 11.
6. Artificial Intelligence
STrOp uses AI to read documents, answer questions about your project records, and extract information from contracts and scanned pages.
What is sent: extracted text from documents you upload, images of scanned pages, and the questions you ask along with the relevant excerpts retrieved to answer them.
What is never sent: Social Security numbers. They are excluded from every AI call, on every path.
Training: Our document-AI provider (Anthropic) operates under commercial terms that prohibit training on our data and delete API logs within seven days. We do not train models on your data, and we do not permit anyone else to.
Search indexing: Building the document-search index requires sending document text to our embedding provider (Voyage AI). We have exercised that provider’s data-use opt-out, so document text is used only to generate your search index — never to train models. The same commitment applies across both providers: your data trains no one’s models, ours or anyone else’s.
You remain responsible for reviewing AI-generated output before relying on it. AI features assist your judgment; they do not replace it.
7. Payments
If you are a paying customer, we invoice you through standard business accounting and banking systems, and you pay by ACH transfer, check, or wire.
Pricing is based on the construction volume you declare to us. Your price comes from the volume band you tell us when you sign up and confirm at each renewal — we do not inspect your project data to set or verify your bill. What’s inside your account never determines what you pay.
We never see, transmit, or store payment card numbers. There is no card on file, no stored payment method, and no payment processing inside the Service. If we introduce one, it will be named in Section 5 and you will be notified first.
8. Data Retention, Export, and Deletion
While your account is active, we retain your data so the Service works.
You can export everything, yourself, at any time. Settings → Data & Privacy produces a complete export of your organization’s records and files, checksummed so you can verify it is intact. You do not need to ask us.
Deletion is real. When an administrator requests deletion of an organization:
- There is a grace period during which the request can be cancelled — this protects you from an accidental or malicious deletion.
- After the grace period, your data is permanently erased from our production systems, table by table, in an order that leaves nothing orphaned. We aim to complete this within 8 days of the grace period ending.
- Backups. We keep encrypted daily backups of the database on a rolling retention of approximately 7 days. Deleted records age out of those backups within that window, so your data is fully gone within about a week of the deletion completing. Uploaded files are not held in these backups — they are removed outright.
- We keep a record of the fact that a deletion happened — organization name, who asked, when, and how many records were removed. This log contains no customer content. It exists so we can prove the deletion occurred.
- Deletion may be paused if we are under a legal obligation to preserve records. If that happens, we will tell you why.
Individual accounts can be removed from an organization by its administrators at any time.
9. Worker Information and Your Legal Role
When you enter information about your employees — including Social Security numbers for certified payroll — you are the business responsible for that information, and we process it on your behalf and under your instructions. We do not use it for any purpose of our own.
Under the California Consumer Privacy Act as amended by the CPRA, employee and job-applicant information carries the same protections as consumer information. If one of your workers exercises a privacy right, that request goes to you as their employer. We will support you in responding to it, including by producing an export.
10. Your Rights
You have the right to:
- Access the personal data we hold about you.
- Correct inaccurate or incomplete data.
- Export your data in a portable format — available self-serve, as described in Section 8.
- Delete your account and associated data.
- Withdraw consent at any time by discontinuing use of the Service.
To exercise any of these rights, contact privacy@stropapp.com. We will respond within 30 days.
California Residents
Under the California Consumer Privacy Act (CCPA/CPRA), California residents have the right to know what personal information is collected, the right to request deletion or correction, the right to limit use of sensitive personal information, and the right to opt out of the sale or sharing of personal information. We do not sell or share personal information, and we do not use sensitive personal information for any purpose other than delivering the Service. We will not discriminate against you for exercising these rights. To submit a request, contact us at the email above.
11. Changes to This Policy
We may update this Privacy Policy from time to time.
If we make material changes — including adding any service provider that would receive your data — we will notify you by email or in-app notice at least 15 days before the changes take effect. Continued use of the Service after changes take effect constitutes acceptance.
Changes to this policy are announced through the same product-update channel as feature releases, so the notice reaches you where you already read about STrOp.
12. Children’s Privacy
The Service is not directed at anyone under 18. We do not knowingly collect information from children. If we discover that we have collected data from a child under 18, we will delete it promptly.
13. Third-Party Links
The Service may contain links to third-party websites or services. We are not responsible for their privacy practices. We encourage you to review the privacy policies of any third-party services you visit.
14. Contact Us
Questions or concerns about this Privacy Policy? Contact us at:
Confianza Services, LLC dba STrOp App
Email: privacy@stropapp.com