Privacy Policy

Last updated: March 2026

Terms of Service Privacy Policy

1. Information We Collect

We collect information you provide directly (account details, project data, uploaded files), information collected automatically (usage data, IP addresses, browser type), and information from third-party services (OAuth providers).

2. How We Use Your Information

We use collected information to provide and improve the Service, authenticate users, generate reports, communicate with you about your account, and comply with legal obligations. We do not sell your personal information to third parties.

3. Data Storage and Security

Files are stored in encrypted AWS S3 storage. Database data is encrypted at rest. We use industry-standard security practices including TLS encryption for data in transit.

4. Bank Portal Access

When you share a bank portal link, the recipient can view project data you have made visible. Portal access is logged in our audit trail. You can revoke portal access at any time.

5. Data Retention

We retain your data for as long as your account is active. Upon account deletion, we delete your data within 30 days, except where required by law.

6. Your Rights (CCPA/GDPR)

You have the right to access, correct, delete, or export your personal data. To exercise these rights, contact us at privacy@drawbridge.app.

7. Cookies

We use session cookies for authentication. We use analytics cookies to understand usage patterns. You can disable cookies in your browser, though this may affect functionality.

8. Contact

For privacy questions, contact us at privacy@drawbridge.app.