Legal
Privacy Policy
Effective September 19, 2026
This policy explains how Camberline Systems(“we,” “us,” or “our”) handles information in Camberline(the “Service”), our software for running construction work — projects, schedules, estimates, invoicing, daily logs and the client portal.
Two different roles, and the difference matters.For the records a customer keeps in their own workspace — their jobs, their clients, their invoices — the customer decides what goes in and what happens to it, and we only process it to run the Service for them. For the account itself — who signed up, who their users are, how the Service is used and secured — we decide, and this policy is our own. If you are a homeowner or a subcontractor whose details are in a builder’s workspace, the builder is the company to ask first; we will help them answer you.
1. What we collect
- Account information — names, email addresses, roles and company details entered when a workspace and its users are set up, and the billing address invoices go to.
- The records you create — projects, clients, leads, estimates, invoices, change orders, schedules, time entries, daily logs, photos, files, messages and notes.
- Data from systems you connect — when you link an account such as QuickBooks Online, a bank or an advertising account, we read and store what that feature needs. Section 3 names each one.
- Usage and technical data — sign-in sessions, audit records of who changed what, server logs and basic device and browser information needed to operate and secure the Service.
We do not collect payment card details. Billing is by invoice, and no card number is stored in the Service.
2. What we use it for
- Running the Service, and supporting the people who use it.
- Synchronising records with the accounting, banking and messaging systems you have connected.
- Generating documents, reports and AI-assisted drafts inside the Service (section 4).
- Security, abuse prevention, debugging, and meeting legal and accounting obligations.
- Billing you, and telling you about the Service — outages, changes, and renewal.
We do not sell personal information, we do not share it for cross-context behavioural advertising, and we do not use one customer’s data to serve another. We do not permit the AI provider below to train on your content.
3. Who else can see it (subprocessors)
These companies process some data on our behalf so the Service can work. Each sees only what its part needs.
- Supabase — the database, sign-in and file storage. Effectively everything in a workspace is stored here, in the United States.
- Vercel — hosts and serves the application.
- Anthropic (Claude) — the AI features. Receives the text, documents or images a feature needs to answer, and returns the answer (section 4).
- Intuit (QuickBooks Online) — when you connect it: customers, invoices, bills, payments and related accounting records, synchronised both ways.
- Slash — when you connect it: bank accounts, per-job cards, transactions, and the payment links sent to your clients.
- Slack— when you connect it: notifications and the messages exchanged in a job’s shared channel, including messages from clients you invite into one.
- Google— Google Analytics for website traffic, and Google Ads spend reporting, for customers who connect them. These cover a customer’s own marketing, not their job records.
- Meta — advertising performance and lead-form submissions, for customers who connect a Meta ad account.
- Our email provider — outbound mail: portal invitations, notifications, reminders and the replies that come back. Mail is sent from the sending address the customer configures.
We also disclose information when the law requires it, to protect rights and safety, and to a successor if the business is transferred. Nothing else.
4. AI features
Some features send your text, documents or images to Anthropic to be read, summarised or drafted from: the assistant, plan takeoffs, invoice and quote reading, the Playbook, the financial workbook and the weekly client letter. The provider returns a response and we store the response with your records. Your content is not used to train the provider’s models. AI output can be wrong — it should be checked before anyone relies on it. Our Terms say the same thing, at slightly more length.
5. Where it is stored, and for how long
Data is stored in the United States. We keep it while a workspace is active, and after a subscription ends we keep it for 30 days so the customer can request an export (see the Terms), after which it may be deleted; backups age out on their own schedule after that. Audit records and records we are required to keep for legal, tax or accounting reasons are kept for as long as that obligation lasts. Disconnecting an integration removes the credential we hold for it; records already synchronised into the workspace stay until deleted.
6. Security
Encryption in transit, row-level security in the database so a workspace can only reach its own data, scoped credentials, role-based permissions inside each workspace, and an audit log of who changed what. No system is perfectly secure, but access is limited to the people and services that need it.
7. Your rights
Depending on where you live, you may have the right to access, correct, export or delete your personal information, and to withdraw consent for a connected integration. If you are a customer, most of this you can do in the Service; for anything else write to support@camberlinesystems.com. If your details are in a builder’s workspace, ask the builder first — we will pass a request on and help them answer it. We do not discriminate against anyone for exercising a privacy right.
8. Children
The Service is for business use and is not directed to children under 16.
9. Changes to this policy
We may update this policy. For a material change we will give notice by email to workspace owners, or in the Service, at least 30 days before it takes effect; otherwise the updated effective date above is the notice. The subprocessor list in section 3 changes as integrations are added — that list is kept current rather than announced each time.
10. Contact
Privacy questions and requests: support@camberlinesystems.com. Legal notices: legal@camberlinesystems.com.