1. Scope
This Policy applies to personal information processed by Estimatic AI as a controller for our website visitors, account holders, prospects, and end-users of public Estimatic AI pages. When we process personal information on behalf of a customer (for example, Customer Data submitted through their workspace), we act as a processor and our customer controls how that data is used.
2. Information We Collect
Information you provide directly
- Account information: name, email, phone, password, company, role, trade.
- Billing information: payment method (handled by our payment processors), billing address, tax ID.
- Profile and onboarding details: company name, service area, primary trade.
- Customer Data: estimates, line items, scopes, pricing, photos, and project records you submit.
- Communications: messages, support tickets, survey responses, and content you share with us.
Information collected automatically
- Device and log data: IP address, device identifiers, browser type, OS, language, referrer, pages viewed, timestamps.
- Usage data: features used, clicks, AI prompts, AI outputs, errors, performance metrics.
- Cookies and similar technologies: see our Cookie Policy.
- Approximate location derived from IP address.
Information from third parties
- Identity providers (e.g., Google) when you sign in with a third-party login.
- Integrations you authorize (CRMs, accounting systems, suppliers, telephony providers).
- Payment processors and fraud-prevention providers.
- Marketing, enrichment, and analytics partners.
3. How We Use Personal Information
We use personal information to:
- provide, operate, secure, support, and improve the Services;
- create and manage your Account, authenticate users, and prevent fraud;
- process transactions, payments, refunds, taxes, and chargebacks;
- provide AI features, including generating, ranking, and improving AI outputs;
- send transactional messages, security alerts, service updates, and one-time codes;
- send marketing communications where permitted, including product updates and offers;
- monitor performance, debug, and conduct analytics;
- comply with law, legal process, and contractual obligations;
- enforce our Terms and protect rights, property, and safety.
4. Legal Bases (EEA / UK)
Where the GDPR or UK GDPR applies, we rely on the following legal bases: performance of a contract, our legitimate interests (operating, improving, and securing the Services), compliance with legal obligations, and your consent (for example, for certain marketing and cookies). You may withdraw consent at any time without affecting prior processing.
5. How We Share Personal Information
- Service providers and subprocessors who help us operate the Services (cloud hosting, analytics, AI providers, email delivery, SMS providers, payment processors, fraud prevention, error tracking).
- Integrations you authorize, such as CRMs, accounting systems, telephony providers, and supplier APIs.
- Within your organization: account owners and administrators may access your usage and Customer Data for that workspace.
- Compliance and safety: to comply with law, respond to legal process, enforce our Terms, prevent fraud, or protect rights, property, and safety.
- Business transfers: in connection with a merger, acquisition, financing, restructuring, or sale of assets, subject to confidentiality.
- Aggregated or de-identified data that does not identify you.
We do not sell personal information for money.
6. AI Processing
AI features process inputs (including prompts and selected Customer Data), context, and metadata to generate outputs and improve quality. We use enterprise AI providers under contractual terms intended to limit use of inputs and outputs to providing the Services. AI outputs may be inaccurate or unsuitable; you remain responsible for reviewing and validating them.
7. Cookies and Tracking
We use cookies and similar technologies for authentication, preferences, security, analytics, and (where permitted) advertising. See the Cookie Policy for details and how to manage your choices.
8. Data Retention
We retain personal information for as long as your Account is active and for a reasonable period afterward, subject to our retention schedules, legal obligations, backup cycles, fraud prevention needs, and dispute resolution needs. Aggregated or de-identified data may be retained longer.
9. Security
We use commercially reasonable administrative, technical, and organizational measures designed to protect personal information, including encryption in transit, access controls, logging, and least-privilege practices. No system is perfectly secure. You are responsible for safeguarding your credentials and enabling multi-factor authentication where available.
10. International Transfers
We may transfer personal information to the United States and to other countries where we and our service providers operate. Where required, we use appropriate safeguards such as Standard Contractual Clauses.
11. Your Rights
Depending on your jurisdiction, you may have the right to access, correct, delete, port, or restrict the processing of your personal information; to object to certain processing; to opt out of targeted advertising or sales/sharing as defined under applicable law; and to lodge a complaint with a supervisory authority.
To exercise these rights, contact privacy@estimatic.ai. If your request relates to Customer Data submitted to a customer’s Account, we will refer you to that customer (the controller) and assist as required by law.
12. U.S. State Privacy Disclosures
Residents of California, Colorado, Connecticut, Virginia, Utah, and other U.S. states with comprehensive privacy laws may have specific rights, including the right to know, correct, delete, opt out of certain processing, and limit the use of sensitive personal information. We honor verifiable consumer requests as required by applicable law and do not discriminate against you for exercising your rights.
13. Children
The Services are not directed to children under 16, and we do not knowingly collect personal information from them. If you believe we have collected information from a child, contact privacy@estimatic.ai and we will take appropriate steps.
14. Marketing Choices
You can opt out of marketing emails by using the unsubscribe link in our emails or by contacting us. You can opt out of marketing SMS by replying STOP to any marketing SMS. We will continue to send transactional messages (e.g., security codes, billing notices) as needed to provide the Services.
15. Changes to This Policy
We may update this Policy from time to time. Material changes will be communicated by email, in-app notice, or other reasonable method. The “Last updated” date above indicates when this Policy was last revised.
16. Contact
Questions about this Policy: privacy@estimatic.ai.
Estimatic, Inc., 1317 Edgewater Drive, Suite 719, Orlando, FL 32804.