Privacy Policy

Last updated: October 13, 2025

1. Introduction

ScopeGuard ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, password
  • Billing Information: Payment details (processed securely through our payment provider)
  • Contracts: Contract files you upload to our service
  • Communications: Emails and messages you forward to our service
  • Support Communications: Any correspondence with our support team

2.2 Information Collected Automatically

  • Usage Data: Pages visited, features used, time spent
  • Device Information: Browser type, operating system, IP address
  • Cookies: We use cookies to enhance your experience

3. How We Use Your Information

We use the information we collect to:

  • Provide and maintain the ScopeGuard service
  • Analyze your contracts to extract deliverables and scope
  • Monitor your communications for out-of-scope requests
  • Generate change orders and track revenue
  • Process your payments
  • Send you service updates and marketing communications (with your consent)
  • Respond to your support requests
  • Improve our service and develop new features
  • Protect against fraud and abuse

4. AI and Machine Learning

Important: We use AI to analyze your contracts and communications. However:

  • Your data is never used to train AI models that serve other customers
  • AI processing happens in isolated, secure environments
  • Your contracts and client information remain confidential
  • We use industry-standard AI providers with strict data protection agreements

5. Data Sharing and Disclosure

We do not sell your personal information. We may share your information only in these limited circumstances:

  • Service Providers: Third-party vendors who help us operate (e.g., payment processors, hosting providers)
  • Legal Requirements: When required by law or to protect our rights
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • With Your Consent: When you explicitly authorize us to share specific information

6. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: AES-256 encryption for data at rest, TLS 1.3 for data in transit
  • Access Controls: Strict role-based access to your data
  • Regular Audits: Security assessments and penetration testing
  • SOC 2 Type II Compliance: Independently verified security controls
  • Data Backups: Regular encrypted backups stored securely

7. Data Retention

We retain your information for as long as your account is active or as needed to provide services. Specifically:

  • Active Accounts: Data is retained while your subscription is active
  • Cancelled Accounts: Data is retained for 30 days after cancellation for reactivation
  • Deleted Accounts: Data is permanently deleted within 90 days of account deletion
  • Legal Requirements: Some data may be retained longer if required by law

8. Your Rights and Choices

You have the following rights regarding your data:

  • Access: Request a copy of your personal data
  • Correction: Update or correct inaccurate information
  • Deletion: Request deletion of your account and data
  • Export: Download your data in a portable format
  • Opt-out: Unsubscribe from marketing emails
  • Object: Object to certain data processing activities

To exercise these rights, contact us at support@scopeguard.app

9. Cookies and Tracking

We use cookies and similar tracking technologies to:

  • Keep you logged in
  • Remember your preferences
  • Analyze usage patterns
  • Measure marketing effectiveness

You can control cookies through your browser settings.

10. International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place through standard contractual clauses and other approved mechanisms.

11. Children's Privacy

ScopeGuard is not intended for use by children under 18. We do not knowingly collect information from children.

12. GDPR Compliance (EU Users)

If you are in the European Economic Area (EEA), you have additional rights under GDPR, including the right to lodge a complaint with your local data protection authority.

13. California Privacy Rights (CCPA)

California residents have additional rights under the CCPA, including the right to know what personal information we collect and the right to opt-out of the sale of personal information (we do not sell your information).

14. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the service. Continued use after changes constitutes acceptance.

15. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us: