01 / SCOPE
Who this policy covers
This Privacy Policy applies to the SiteReadout website, SiteReadout SOLO Android and iOS applications, and the related field-reporting services (together, the "Service"). SiteReadout ("we," "us," or "our") provides construction project reporting, document generation, open issue tracking, time and mileage records, expense records, and related tools.
02 / DATA COLLECTED
Information the Service processes
Account and security
Email address, display name, account identifier, authentication events, membership status, and MFA or company SSO settings.
Project and field content
Project and company details, jobsite addresses, contacts, notes, photos, drawings, markups, voice input, reports, issue logs, templates, logos, invoices, and exports.
Work and expense records
Time entries, worker and subcontractor details, mileage records, trip addresses, receipts, vendors, categories, amounts, approvals, and related records entered by the account owner.
Location and device context
GPS coordinates, accuracy, timestamps, and verification status when a user initiates a location-dependent action; basic device, network, and request information needed to operate and secure the Service.
Camera, photo-library, microphone, file, and location access occurs only after the user chooses a related feature and the operating system presents the applicable permission prompt.
03 / HOW DATA IS USED
Why SiteReadout uses this information
- Authenticate users and enforce account, MFA, SSO, and subscription access.
- Save and synchronize private project records across authorized devices.
- Create, edit, organize, and export reports, issue logs, invoices, timecards, mileage logs, and expense records.
- Process user-requested AI assistance, transcription, document extraction, and professional rewriting.
- Provide project weather, address lookup, GPS verification, reminders, support, fraud prevention, and service security.
- Comply with legal obligations, investigate misuse, and protect users and the Service.
SiteReadout does not use personal or sensitive data for third-party advertising and does not sell personal data.
04 / SERVICE PROVIDERS
Processors that help operate SiteReadout
We disclose data only as needed to operate features a user requests, meet legal obligations, or protect the Service. Current provider categories include:
- Supabase for authentication, database services, and private file storage.
- Netlify for website hosting, server functions, and delivery infrastructure.
- OpenAI for user-requested AI analysis, rewriting, extraction, and assistant features.
- Stripe for membership billing on the SiteReadout website. The native application does not collect full payment-card details.
- Expo, Google Play, and Apple for native application building, distribution, updates, and platform services.
- Weather, geocoding, and email-delivery providers when those features are requested or enabled.
These providers process data under their own terms and privacy commitments. We do not authorize them to use SiteReadout customer content for unrelated advertising.
05 / LOCATION DATA
Location is event-based, not continuous
Location is requested when a user verifies a jobsite, clocks in or out, or starts or completes a mileage record. Records may include coordinates, accuracy, time, project, and whether the event met the account owner's GPS policy.
A user can deny a location request through device settings. Features that require verified location may be unavailable or marked "NOT GPS VERIFIED — LOCATION CANNOT BE CONFIRMED." Account owners may allow documented exceptions according to their workplace policy.
06 / RETENTION AND DELETION
Keeping and deleting records
We retain account and customer content while an account is active and as reasonably necessary to provide the Service, maintain security and transaction records, resolve disputes, and meet legal obligations. Users can delete supported records within the Service. Deleting a record may not immediately remove temporary backups, audit records, or information that must be retained by law.
To request deletion of a SiteReadout account and its associated personal data, open the SiteReadout account-deletion page. The public page provides a prepared request, verification steps, the data covered, and applicable retention periods. We will verify the request and delete or de-identify eligible account data. Private project content owned by another organization may remain under that organization's instructions and applicable retention obligations.
07 / SECURITY
How information is protected
SiteReadout uses HTTPS encryption in transit, authenticated sessions, database access controls, private storage policies, and server-side secret management. Optional authenticator MFA and configured company SSO provide additional account protection. No service can guarantee absolute security, so users should protect their credentials and report suspected unauthorized access promptly.
08 / YOUR CHOICES
Access, correction, permissions, and complaints
Users can review and correct many account and project fields in the Service, control device permissions in operating-system settings, and request access, correction, export, or deletion by contacting us. Applicable privacy laws may provide additional rights based on a user's location. We may need to verify identity before completing a request.
The Service is intended for construction professionals and is not directed to children under 13. We do not knowingly collect personal data from children under 13.
09 / CONTACT AND UPDATES
Questions about this policy
We may update this policy as SiteReadout changes. The effective date above identifies the current version. Material changes will be communicated through the Service or another appropriate channel.
PRIVACY CONTACTjessylebron@gmail.com