Trust & Compliance

Trust Center

Enterprise-grade protection for your construction project data. Review our security practices, privacy policy, and terms of service.

Secure AWS Infrastructure

Hosted on AWS with server-side encryption (AES-256) and TLS 1.3 for data transmission. Your drawings and specs are protected at rest and in transit.

Your Data Stays Yours

We don't train public AI models on your documents. We may use your documents to improve our document-processing models (to better read drawings); this doesn't use your project content in a way that could identify you, and you can opt out anytime. Each project is isolated—zero data sharing between customers.

Data Segregation

Strict programmatic controls prevent any data crossover between customers. Your information remains separate and confidential.

Data Deletion on Request

Request deletion of your project data at any time via email. We honor deletion requests promptly. Enterprise customers can configure automatic deletion after 30, 60, or 90 days.

Access Controls

Role-based access control ensures only authorized users see project data. Share results with specific team members. Audit logs track all access.

Where Your Files Live

Complete transparency about your data storage and handling

Storage Location

AWS US-West-2 region with data centers in Northern California. Amazon S3 with object-level access controls. Your data stays in the US.

Who Can Access

Role-based access control: Users access only their own projects or those shared with them; Admins have organizational access. Strict data segregation between customers.

Data Deletion

Delete your data anytime via the app or by request to [email protected].

No Public AI Training on Your Data

We don't train public AI models on your data. Third-party LLM providers (OpenAI, Anthropic, Google) are contractually prohibited from using your content for training. We may use your documents to improve our document-processing models; you can opt out at [email protected].

Enterprise Security Features

Built for organizations with strict security requirements

Authentication & Access Control

Firebase authentication with token validation for every request. SSO integration available. MFA via TOTP apps (DUO, Google Authenticator). Role-based access controls.

Security Documentation

Security and privacy details published on this Trust Center. Specific questions can be sent to [email protected].

AWS Infrastructure

Hosted on AWS ECS with least-privilege IAM roles. Automated daily backups (60-day retention), monthly backups (1-year retention), and point-in-time recovery for 35 days. S3 file versioning enabled for recovery.

Incident Response

Documented incident response procedures. Prompt notification to affected customers in the event of a data breach.

Questions About Security?

Need a security review packet or have compliance questions?