Privacy Policy

Privacy Policy for SiteOps

Last Updated: January 2026

1. Introduction

Welcome to SiteOps ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy explains how we collect, use, and protect your information when you use our construction worksite management platform (the "Service").

We operate under strict privacy principles:

  • Your data is yours.
  • We do not share your data.
  • We only use analytics cookies to improve user experience.

2. Information We Collect

We collect only the information necessary to provide our Service:

2.1. Account Information

When you register for SiteOps, we collect information such as:

  • Name
  • Email address
  • Phone number
  • Company details
  • Role and permissions (e.g., Owner, Lead, Employee)

2.2. Service Data

In the course of using SiteOps to manage your construction projects, you may upload or generate:

  • Project details (names, locations, statuses)
  • Task descriptions and "before/after" photos
  • Time tracking logs and "Hour Cards"
  • Client information (names, billing details, contact info)
  • Invoicing and Offer data
  • Files and documents (blueprints, contracts)

2.3. System Logs

We may collect technical logs (IP addresses, access times) strictly for security and debugging purposes to ensure the reliability of our Service.

3. How We Use Your Data

We use your data solely for the following purposes:

  1. Providing the Service: To enable you to manage projects, track time, invoice clients, and collaborate with your team.
  2. Customer Support: To assist you with any issues or questions.
  3. Security: To detect and prevent fraud, abuse, or security incidents.
  4. Communication: To send you important service updates (e.g., security alerts, optional feature announcements).

We do not use your data for marketing purposes, and we do not sell your data to anyone.

4. Data Storage and Location

All data is hosted and stored in Finland. We are committed to keeping your data within the European Economic Area (EEA) and ensuring it is protected by strong European privacy laws (GDPR).

5. Data Sharing and Disclosure

We do not share your personal data with third parties. We do not sell, trade, or rent your personal identification information to others. We do not transfer your data to 3rd party services for processing, analytics, or marketing.

Our infrastructure providers (hosting services) act strictly as data processors under our command and are contractually bound to confidentiality and security standards.

6. Cookies and Tracking

We use two types of cookies:

6.1. Essential Cookies (Required)

These cookies are strictly necessary for the operation of the Service and cannot be disabled:

  • Session Cookies: To keep you logged in as you navigate the platform.
  • Security Cookies: To prevent security risks (e.g., CSRF protection).

6.2. Analytics Cookies

We use Google Analytics 4 to understand how visitors interact with our website. This helps us improve the Service. When you first visit our site, you will be asked to acknowledge our use of cookies.

What Google Analytics collects:

  • Pages you visit and time spent on each page
  • Your approximate geographic location (country/city level)
  • Device type, browser, and operating system
  • How you arrived at our site (referral source)

What Google Analytics does NOT collect:

  • Your name, email, or any personal account information
  • Any project data, client information, or business data you enter
  • Your exact location or IP address (we use IP anonymization)

For more information about Google Analytics, visit: https://policies.google.com/privacy

7. Data Security

We implement bank-grade security measures to protect your data:

  • Encryption: All data is encrypted in transit (using SSL/TLS) and at rest.
  • Access Control: Strict role-based access control prevents unauthorized access to your project data.
  • Data Integrity: We use "soft-delete" technology to allow recovery of accidentally deleted information.

8. Your Rights (GDPR)

Under the General Data Protection Regulation (GDPR), you have the following rights regarding your personal data:

  • Right to Access: You can request a copy of the personal data we hold about you.
  • Right to Rectification: You can correct inaccurate or incomplete data via your account settings.
  • Right to Erasure ("Right to be Forgotten"): You can request that we delete your account and personal data, subject to legal retention obligations (e.g., tax laws for invoices).
  • Right to Restriction of Processing: You can ask us to suspend the processing of your data.
  • Right to Data Portability: You can request your data in a structured, machine-readable format.

To exercise any of these rights, please contact us.

9. Retention

We adhere to the principle of storage limitation.

  • Project Data: Retained as long as your account is active or as needed to provide you the Service.
  • Invoicing Data: Retained for the period required by accounting and tax laws in Finland.

10. Contact Us

If you have any questions about this Privacy Policy, please contact us at:

SiteOps Email: support@siteops.pro

We use cookies to analyze site traffic and improve your experience. Learn more