Privacy Policy

How OliveOps collects, uses, processes, and protects your information

Effective Date:
August 5, 2026
Last Updated:
August 5, 2026
Estimated Read Time:
12 min read
Version:
1.0

1. Introduction and Scope

This Privacy Policy describes how OliveOps ("we," "us," "our," or "OliveOps") collects, uses, discloses, and otherwise processes personal information and business data in connection with our cloud-based contractor operations platform, including the web application and related services (collectively, the "Service").

This policy applies to anyone who uses OliveOps, including organization administrators, team members, business partners, and visitors to our website.

Important: OliveOps processes information on behalf of organizations (contractors, trade professionals, and service businesses) that use our platform. In many cases, the organization is responsible for deciding what information to collect and how to use it. We act as a service provider processing data according to our customers' instructions.

2. Definitions

  • Personal Information: Information that identifies or can identify an individual, including name, email, phone, postal address, and IP address.
  • Business Information: Information about an organization, business operations, customers, properties, jobs, and financial transactions.
  • Customer Data: Any personal information or business information submitted to OliveOps by our customers or their users.
  • Service Providers: Third-party companies that process data on our behalf under contract.
  • Subprocessors: Third-party services used by OliveOps or our service providers to process customer data.
  • Processing: Any operation performed on information, including collection, storage, use, analysis, transmission, and deletion.

3. Information Collection

We collect information in the following categories:

3.1 Account and Authentication Information

When you create an OliveOps account or sign in, we collect your name, email address, password hash, phone number (optional), organization name, role, and authentication method. We may also collect login history, device information, and IP addresses for security purposes.

3.2 Business and Organization Data

You may provide information about your business, including company name, legal entity details, industry, location, business structure, employee count, billing address, tax identification, and other organizational details.

3.3 Billing and Transaction Information

To process subscriptions and billing, we collect billing name, address, payment method information (processed by our payment partners, not stored directly by OliveOps), transaction history, subscription plan, usage data, and invoice records. Payment processing is handled by third-party payment providers; we do not store full credit card details.

3.4 CRM and Customer Records

OliveOps stores CRM data that you input, including customer names, contact details, communication history, notes, tags, and relationship information. You control what customer information is collected and stored in your account.

3.5 Property and Job-Site Information

You may create records for properties and job sites, including address, property type, owner/tenant information, site notes, photos, and historical service records. Where enabled, location data may be associated with properties.

3.6 Estimates, Invoices, and Financial Records

The platform allows you to create and manage estimates, proposals, invoices, and financial records. This information is stored in your account and may include line items, pricing, customer financial information, and payment status.

3.7 Employee and Workforce Information

To manage team members, we collect employee names, email addresses, phone numbers, role/permissions, employment status, certifications (where applicable), and team assignments. Organization administrators are responsible for collecting appropriate consent from employees for the data they upload to OliveOps.

3.8 Time Entries, Schedules, and Attendance

When using time tracking, scheduling, and crew management features, we store work hours, start/end times, job assignments, attendance records, and related metadata. Where applicable, location data may be associated with time entries.

3.9 Documents, Photos, and Attachments

You may upload documents, photos, forms, and attachments to OliveOps, including before/after photos, project documentation, contracts, permits, and communication records. We store and retrieve these files on your behalf.

3.10 Technical and Usage Information

We automatically collect technical information including IP address, browser type, device type, operating system, pages visited, time spent, features used, errors encountered, and referrer information. This helps us improve the service and diagnose issues.

3.11 Cookies and Analytics

We use cookies and similar technologies for authentication, user preferences, and analytics. See our Cookie Policy for detailed information about cookies used.

Note: We do not currently use third-party analytics services like Google Analytics, but we may use them in the future to understand user behavior and improve the platform.

3.12 Location and GPS Information

Where enabled in the mobile application, OliveOps may collect precise GPS location data to support location-based features such as crew tracking and job-site check-ins. Location collection is only active where explicitly enabled by users or administrators.

3.13 AI-Assisted Features

Where enabled, OliveOps may use artificial intelligence to assist with tasks such as estimate generation, text suggestions, or data classification. AI features process only the data you provide and are subject to our AI terms in the Terms of Service.

4. Use of Information

We use information for the following purposes:

  • Providing and maintaining the Service
  • Processing subscriptions and billing
  • Authenticating users and managing accounts
  • Enabling communication between users and customers
  • Improving the Service and user experience
  • Diagnosing and fixing technical issues
  • Complying with legal obligations
  • Preventing fraud and unauthorized access
  • Aggregating and analyzing usage patterns (in de-identified form)
  • Sending service-related announcements and updates
  • Responding to support requests
  • Where applicable, sending marketing communications (with your consent)

We do not use personal information for purposes beyond what is described in this policy without obtaining your consent.

Under GDPR and similar privacy laws, we process personal information on the following legal bases:

  • Performance of Contract: Processing necessary to provide the Service you've requested
  • Legitimate Interests: Processing for security, fraud prevention, and service improvement
  • Legal Obligation: Compliance with applicable laws and regulations
  • Consent: Where you have explicitly consented (e.g., marketing communications)

6. Service Providers and Subprocessors

OliveOps uses the following third-party service providers to process data on our behalf:

  • Vercel: Hosting and deployment platform for the web application
  • AWS (Amazon Web Services): Cloud infrastructure including DynamoDB for database storage and related services
  • Resend: Transactional email service for notifications and communications

Future integrations may include accounting software (e.g., QuickBooks), payment processors (e.g., Stripe), and other business tools. Where we add new subprocessors, we will update this policy and may notify existing customers of significant changes.

See our Subprocessors page for a complete and current registry of service providers.

7. International Data Transfers

OliveOps operates servers in the United States (specifically in the us-east-2 AWS region). If you access OliveOps from outside the United States, your information is transferred to and processed in the United States.

By using OliveOps, you consent to the transfer of your information to the United States. OliveOps complies with applicable international data transfer mechanisms, including Standard Contractual Clauses and adequacy decisions under privacy laws such as GDPR and Canadian PIPEDA.

8. Data Retention

We retain personal information and customer data for as long as your account is active or as necessary to provide the Service.

Specific retention periods:

  • Account information: Retained while account is active; deleted upon account termination
  • Customer and business data: Retained while the account is active; retained for a reasonable administrative period following cancellation to allow data export or recovery where offered
  • Billing and transaction records: Retained for as long as reasonably necessary to comply with tax, accounting, and legal obligations
  • Log and security data: Retained for as long as reasonably necessary for security analysis, incident investigation, and legal compliance

After retention periods expire, information is deleted or anonymized. Certain information may be retained if required by law.

9. Account Deletion and Data Removal

You may request deletion of your account and associated data at any time. Upon account deletion:

  • Your account login credentials are immediately disabled
  • Customer data may be retained for a grace period to allow recovery or export
  • Billing records are retained as required for tax and legal compliance
  • Technical logs may be retained for security purposes

To request account deletion, contact support@oliveops.ca.

Backups and residual copies: OliveOps may retain backup copies of deleted data for disaster recovery and business continuity purposes, which may take time to fully purge. We are not obligated to delete data in backup systems if such deletion is technically infeasible or would violate applicable law.

10. Security Safeguards

We implement security measures designed to protect personal information from unauthorized access, disclosure, alteration, and destruction. These include encryption in transit (HTTPS/TLS), secure authentication, role-based access controls, and regular security reviews.

However, no system is completely secure. We cannot guarantee absolute security of information transmitted over the internet or stored digitally. See our Security page for more information about our security practices.

11. Your Privacy Rights

Under PIPEDA (Canada's federal privacy law):

  • You have the right to access personal information we hold about you
  • You may request correction of inaccurate or incomplete information
  • You may withdraw consent to processing at any time
  • You have the right to request our privacy practices and complaint procedures

Under GDPR (if applicable):

  • Right of access to your personal data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten") in certain circumstances
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Rights related to automated decision-making and profiling

To exercise any of these rights, contact support@oliveops.ca with specific details of your request.

12. Marketing Communications

We may send you service-related notifications, updates, and announcements. We will not send marketing emails without your consent. You may opt out of marketing communications at any time by following the unsubscribe link in our emails or by contacting support@oliveops.ca.

13. Children's Privacy

OliveOps is not intended for children under 13, and we do not knowingly collect information from children under 13. If we become aware that we have collected information from a child under 13, we will delete such information promptly. Parents or guardians who believe we have collected information from a child should contact support@oliveops.ca.

14. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes by email or by prominent notice on our website. Your continued use of OliveOps following notice of changes constitutes your acceptance of the updated policy.

15. Contact Information

If you have questions about this Privacy Policy or our privacy practices, please contact us:

Privacy Contact:
support@oliveops.ca

Mailing Address:


Jurisdiction:
Ontario, Canada

Questions about this policy?

Contact us with any concerns or questions about this policy.