Privacy Policy
This Privacy Policy describes how VekterCore ("we," "us," or "our") collects, uses, stores, and protects your information when you use our website, web application, mobile applications, and related services (collectively, the "Service"). By using the Service, you agree to the collection and use of information as described in this policy.
1. Information We Collect
1.1 Account Information
When you create a VekterCore account, we collect:
- Full name and email address
- Company name and business information
- Phone number
- Billing and payment information (processed securely by Stripe)
- User role and organizational affiliation
1.2 Service Usage Data
When you use the platform, we collect data generated through your operations, including:
- Work orders, job details, and scheduling information
- Customer records and service history
- Estimates, invoices, and payment records
- Notes, photos, documents, and digital signatures
- Equipment and asset records
- Service agreement and contract details
1.3 Location Data
Our mobile applications collect GPS location data from field technicians to enable:
- Real-time technician tracking on the dispatch map
- Route optimization and drive time calculations
- Automated geofence-based clock-in and clock-out
- Location stamping on photos and job site check-ins
Location data is collected only during configured work hours and can be disabled by the organization administrator at any time. Technicians are informed when location tracking is active.
1.4 Device and Technical Data
We automatically collect:
- IP address and browser type
- Device type, operating system, and app version
- Pages visited and features used within the Service
- Crash reports and performance data
- Cookie and session identifiers
1.5 Communication Data
If you contact us for support, submit a demo request, or communicate through the Service, we collect the content of those communications.
2. How We Use Your Information
We use your information to:
- Provide the Service — process work orders, manage schedules, generate invoices, track technicians, and deliver all platform functionality
- Manage your account — authenticate users, manage roles and permissions, process subscription billing
- Improve the Service — analyze usage patterns, identify bugs, develop new features, and optimize performance
- Communicate with you — send transactional emails (appointment confirmations, invoice receipts, password resets), product updates, and support responses
- Ensure security — detect fraud, prevent unauthorized access, and maintain platform integrity
- Comply with legal obligations — respond to legal requests and enforce our Terms & Conditions
3. How We Share Your Information
We do not sell your personal information. We share data only in these circumstances:
3.1 Service Providers
We use trusted third-party services to operate the platform:
| Provider | Purpose | Data Shared | |----------|---------|-------------| | Supabase | Database hosting and authentication | Account data, service data | | Stripe | Payment processing | Billing and payment information | | Postmark | Transactional email delivery | Email addresses, notification content | | Vercel | Web application hosting | Technical/usage data | | Apple / Google | Mobile app distribution and push notifications | Device tokens, app usage |
3.2 Within Your Organization
Data entered into VekterCore is shared among authorized users within your organization based on their role and permissions. Organization administrators control access levels.
3.3 Legal Requirements
We may disclose information if required by law, subpoena, court order, or government request, or if necessary to protect the rights, safety, or property of VekterCore, our users, or the public.
3.4 Business Transfers
If VekterCore is acquired, merged, or sells assets, your information may be transferred as part of that transaction. We will notify you before your data becomes subject to a different privacy policy.
4. Data Storage and Security
4.1. Your data is stored on secure servers provided by Supabase, which uses encryption at rest (AES-256) and in transit (TLS 1.2+).
4.2. We implement industry-standard security measures including:
- Role-based access control and row-level security
- Encrypted authentication tokens
- Regular security audits and monitoring
- Secure API endpoints with rate limiting
4.3. While we take extensive measures to protect your data, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security.
5. Data Retention
5.1. We retain your data for as long as your account is active and as needed to provide the Service.
5.2. Upon account cancellation, your data is available for export for 30 days. After this period, it is permanently deleted from our systems within 90 days.
5.3. We may retain certain data longer if required by law (e.g., financial records, tax documentation) or to resolve disputes.
5.4. Aggregated, anonymized data that cannot identify you may be retained indefinitely for analytics and product improvement.
6. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access your personal data and request a copy
- Correct inaccurate or incomplete data
- Delete your personal data (subject to legal retention requirements)
- Export your data in a machine-readable format
- Opt out of marketing communications
- Restrict certain processing of your data
- Object to processing based on legitimate interests
To exercise any of these rights, reach out through our Contact page. We will respond within 30 days.
7. Cookies and Tracking
7.1. We use essential cookies to maintain your session and authenticate your identity. These are necessary for the Service to function.
7.2. We use analytics cookies to understand how the Service is used and to improve performance. You can opt out of analytics cookies through your browser settings.
7.3. We do not use advertising or third-party tracking cookies.
8. Children's Privacy
VekterCore is a business platform not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children. If we discover that a child has provided us with personal data, we will delete it promptly.
9. International Data Transfers
Your data may be processed in the United States or other countries where our service providers operate. We ensure appropriate safeguards are in place for international transfers in compliance with applicable data protection laws.
10. Changes to This Policy
We may update this Privacy Policy periodically. Material changes will be communicated via email or in-app notification at least 30 days before taking effect. The "Last updated" date at the top of this page reflects the most recent revision.
11. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please reach out through our Contact page.
If you believe your data rights have been violated, you have the right to lodge a complaint with your local data protection authority.