OpsDepo Privacy Policy

Effective date: October 1, 2026
Who we are: Ops Depo LLC ("OpsDepo," "we," "us"), a Utah limited liability company. Contact: support@opsdepo.com.

OpsDepo is business software for field-service companies (fabricators, roofers, garage-door shops, and similar trades). This policy explains what information we collect, how we use it, who we share it with, and the choices you have. It applies to app.opsdepo.com, opsdepo.com, and related services (the "Service").

1. Two kinds of people, two roles

  • Account users are the business owners and team members who sign in to OpsDepo. For account users we are the data controller (we decide how your account data is used).
  • Your customers are the homeowners and businesses whose jobs, bids, invoices, and contact details you enter into OpsDepo. For that information we act as a processor on your behalf: you decide what to enter and how to use it; we store and process it to provide the Service and don't use it for anything else.

2. Information we collect

From account users

  • Identity and sign-in: name, email, phone (optional), and authentication data handled by our identity provider (Clerk). We never see or store your password.
  • Business details: company name, address, trade, team members and roles, catalog items and prices, payment terms, and settings you choose.
  • Usage data: pages visited, actions taken, device and browser type, IP address, and timestamps, collected through server logs and essential cookies.

About your customers (entered by you)

  • Names, addresses, phone numbers, email addresses, job details, photos you upload, bids, invoices, payments, and notes.

Payments

  • Card and bank payments are processed by Stripe. Stripe collects payment details directly; we receive confirmation of payment, the last four digits of a card, and payment status. We do not store full card numbers.

Accounting integration (optional)

  • If you connect QuickBooks Online, we receive an access token from Intuit and, with your permission, read your chart of accounts, tax codes, customers, and items, and write customers, items, invoices, and payments that you create in OpsDepo. Tokens are encrypted at rest. You can disconnect at any time in Settings → Accounting.

Files

  • Photos, receipts, and documents you upload are stored in Cloudflare R2 under your business's own storage prefix.

AI features

  • Some features (for example, drafting a bid description or summarizing a job) send the relevant text to Anthropic's API to generate a response. We send only what is needed for the feature; Anthropic does not use data sent through its API to train its models.

3. How we use information

  • To provide, maintain, and secure the Service.
  • To process payments and send transactional messages (invoice sent, payment received, sync status).
  • To support you when you contact us.
  • To improve the Service using aggregated or de-identified usage data.
  • To meet legal obligations.

We do not sell personal information. We do not use your customers' information for advertising, and we do not share it with other OpsDepo customers.

4. Who we share information with

Service providers who process data on our instructions and under contract:

  • Clerk — authentication and sessions
  • Stripe — payment processing
  • Intuit (QuickBooks Online) — only if you connect it, and only the records the integration is designed to sync
  • Cloudflare — file storage (R2) and network security
  • Anthropic — AI features, as described above
  • Vercel — application hosting
  • Railway — database hosting (PostgreSQL, located in the United States)

We may also disclose information if required by law, to protect the rights and safety of users, or as part of a merger or acquisition (with notice to you).

5. Security

Data is encrypted in transit (TLS) and at rest. Each business's data is isolated in the database by row-level security enforced at the database layer. Integration tokens are encrypted with a key held separately from the database. Access to production systems is limited to named personnel with multi-factor authentication. We log administrative and billing actions. No system is perfectly secure; if we become aware of a breach affecting your data we will notify you without undue delay.

6. Retention

We keep account data for as long as your account is active. After an account is closed we delete or de-identify personal information within 90 days, except where we must retain records for tax, accounting, or legal reasons (for example, invoice and payment records, which are kept for seven years). Backups are retained on a rolling schedule and purged thereafter.

7. Your choices and rights

  • Access, correction, export: owners can view and edit business and customer data in the app and export invoices at any time.
  • Deletion: email support@opsdepo.com to close an account or delete specific records; we respond within 30 days.
  • Marketing: we send transactional messages only; there is no marketing list to opt out of.
  • Cookies: we use essential cookies for sign-in and security. We do not use advertising cookies.
  • California residents (CCPA/CPRA): you may request to know, delete, or correct personal information we hold, and we will not discriminate for exercising those rights. We do not sell or share personal information for cross-context behavioral advertising. Requests: support@opsdepo.com.
  • Your customers' rights: if one of your customers contacts us about data you entered, we will refer them to you and assist you in responding.

8. Children

The Service is for businesses and is not directed to anyone under 18. We do not knowingly collect information from children.

9. Changes

We will post changes here and update the effective date. For material changes we will notify account owners by email before they take effect.

10. Contact

Ops Depo LLC · support@opsdepo.com