Privacy Policy
Last updated October 8, 2026
JobsiteHQ is a job-logging app for contractors. This policy explains what it stores, which other companies it sends data to, and how to get your data back or have it removed.
Two kinds of people in this policy
Contractors sign up and use the app. Clients are the homeowners and businesses a contractor works for. Clients never create an account; they appear here because a contractor records their details, and because they may open an estimate, invoice or summary link a contractor sends them.
A contractor decides what to record about their clients and is responsible for having a reason to record it. JobsiteHQ stores and processes it on the contractor's behalf.
What is stored on your phone
JobsiteHQ saves to your device first, so it works with no signal. Jobs, clients, punch list items, photos, receipts, documents, estimates, invoices and voice recordings are written to your browser's local storage and synced to the server when you are back online. Clearing your browser's site data for jobsitehq.app erases the local copy.
Settings puts a housekeeping pass on the device: once a recording has uploaded and its job is finished, the local audio is removed, and jobs finished and untouched for 30 days keep only small photo previews locally. The server copies are unaffected.
What is stored on the server
Your account and business details, clients, jobs, punch lists, estimates, invoices, payment records and referral links are stored in a Postgres database hosted by Supabase, along with how you found JobsiteHQ: the tags on the link of your first visit, the name of the website that sent you, any trial or referral code you used, and your answer if you tell us how you heard about us. Photos, voice recordings, job documents and business logos are stored in Supabase Storage. Access is restricted per account at the database level, so one contractor cannot read another's rows.
Other companies that process your data
These are the only third parties JobsiteHQ sends your content to, and what each receives:
| Company | Receives | For |
|---|---|---|
| Supabase | Account, all job and client records, uploaded files | Hosting the database, file storage and sign-in |
| Deepgram | Voice recordings you make on a job walkthrough | Turning speech into text |
| Anthropic | Transcripts of those recordings; photos of receipts; plan sets you ask to have read | Drafting the punch list; reading a receipt's vendor and total; listing the work on a set of plans for an estimate or the punch list |
| Stripe | Subscription billing details; for contractors who take payments, the identity and bank details Stripe collects directly | Subscriptions, and client card payments |
| Twilio | A client's phone number and the message text, when you send a text from the app | Delivering the SMS |
| Resend | Email addresses and message contents for app email | Sending sign-in codes and notifications |
| Vercel | Requests to the site, including IP address | Serving the application |
JobsiteHQ does not sell your data, and does not share it with advertisers.
Payment information
Card numbers never reach JobsiteHQ. Subscription payments and client payments are handled by Stripe on Stripe's own pages and infrastructure. Contractors who accept payments complete Stripe's onboarding directly, and the identity and banking details that process requires are given to Stripe, not to us. JobsiteHQ stores only the resulting account reference and the status Stripe reports back.
Client payments go to the contractor's own Stripe account, not through a JobsiteHQ account.
Links you send to clients
Estimates, invoices, job summaries and referral pages are shared as links containing a long random token. Anyone holding the link can view that one document, so treat the link as you would the document. These pages are excluded from search engine indexing, and outbound links on them are marked so the token is not passed to the site being visited.
Analytics
JobsiteHQ uses Google Analytics and HeyCatch on the signed-in app and on its public pages (the home page, templates and comparisons) to count visits and see which features get used. HeyCatch also records which buttons and links are used, and once you sign in it ties that activity to your account's email address. Neither is loaded on the pages clients open — estimate, invoice, summary and referral links — because those URLs carry access tokens that would otherwise be sent to them. In the app, HeyCatch also removes access tokens and your clients' phone numbers and email addresses from any link it records. Automated browsers are excluded so testing does not register as real use.
How long data is kept
Records are kept while your account is open, because the whole point is a job history you can look back at. Delete a job, client, photo, receipt or document in the app and it is removed from the server, and its stored files are deleted along with it.
Getting your data out, and getting it deleted
Settings has a download that gives you everything in your account as a ZIP file — records as readable files, plus your photos, recordings and documents. There is also a tax export for paid invoices and material receipts over a date range.
To have your account and its data deleted, email support@jobsitehq.app from the address on the account. Deletion is handled by request rather than a button in the app. Download your ZIP first if you want to keep anything, because deletion cannot be undone. Some records may be retained where they are needed for tax, accounting or legal reasons, and payment records held by Stripe are governed by Stripe's own retention rules.
If you are a client rather than a contractor and want to know what a contractor holds about you, contact that contractor — the records are theirs. If you cannot reach them, write to us at the address above and we will help.
Children
JobsiteHQ is a business tool and is not intended for anyone under 18.
Changes
If this policy changes in a way that affects what is collected or who receives it, the date at the top changes and account holders are notified by email.
Contact
Questions about this policy, or about data held about you: support@jobsitehq.app.