Privacy Policy
Last updated: June 14, 2026
1. Introduction
NeatBuild (“we,” “our,” or “us”) operates the NeatBuild construction management platform accessible at neatbuild.app. This Privacy Policy describes how we collect, use, store, and protect information when you use our service.
By creating an account or using NeatBuild, you agree to the practices described in this policy. If you do not agree, please do not use our service.
2. Information We Collect
Account Information
When you register, we collect your name, email address, and password (stored as a secure hash). If you are invited to join an existing account, we collect the same information.
Business Data
To provide our service, we store the business information you enter: project names and addresses, financial figures (receipts, invoices, loan amounts, budget data), vendor and customer contact information, cost categories, schedule milestones, and any notes or descriptions you add.
Document Uploads
You may upload images and PDF files (receipts, invoices, draw packages, W-9s, insurance certificates). These files are stored in encrypted cloud storage. When you use our AI-assisted OCR feature, images are transmitted to a third-party AI provider to extract text — see Section 4 for details.
Email-Forwarded Receipts
If you use our Receipt Inbox feature, emails forwarded to your NeatBuild inbox address (including attachments) are processed to extract receipt data. We store the sender address, subject line, attachment, and any OCR-extracted fields.
Usage Data
We collect standard web server logs including IP addresses, browser type, pages visited, and timestamps. This data is used solely for security monitoring and service improvement.
3. How We Use Your Information
- Provide, operate, and maintain the NeatBuild platform
- Process and display your financial and project data
- Generate reports, charts, and export files you request
- Send transactional emails (account invitations, password resets, magic links)
- Detect and prevent fraud, abuse, or security incidents
- Improve our AI document parsing accuracy
- Comply with legal obligations
We do not use your business data to train AI models, sell to third parties, or serve advertisements.
4. Third-Party Services
We rely on the following sub-processors to deliver NeatBuild. Each has its own privacy policy and data processing agreements where applicable.
Supabase
Authentication, relational database, and file storage. Your data resides in Supabase-managed infrastructure (AWS us-east-1 by default). Supabase encrypts data at rest and in transit.
Google Gemini AI
When you use AI document scanning (Bulk Import or Receipt Inbox), images are sent to Google’s Gemini API for text extraction. Google’s API data-use policy applies. Images are not stored by Google beyond the API call duration.
Anthropic Claude AI
An alternative OCR provider. If configured, images may be sent to Anthropic’s Claude API under the same scope as described for Google Gemini above.
We do not share your data with any other third parties except as required by law.
5. Data Security
We implement industry-standard safeguards including TLS encryption in transit, AES-256 encryption at rest, role-based access controls, and regular security reviews. Access to production data is limited to authorized personnel.
No system is 100% secure. If you discover a security vulnerability, please report it promptly to security@neatbuild.app.
6. Data Retention
We retain your data for as long as your account is active. If you delete your account, we remove your personal data and business records within 30 days, except where retention is required by law (e.g., financial records we are legally obligated to keep).
Uploaded files (receipts, invoices) are deleted from storage within 30 days of account deletion.
7. Your Rights
You may at any time:
- Access your data via the NeatBuild Reports & export features
- Correct inaccurate data by editing records in the application
- Export your financial data as CSV from the Reports page
- Delete your account by contacting support@neatbuild.app
- Object to processing by discontinuing use and requesting deletion
If you are in the European Economic Area (EEA) or UK, you may also have rights under GDPR. Contact us to exercise these rights.
8. Cookies
NeatBuild uses strictly necessary session cookies to keep you signed in. We do not use advertising cookies, tracking pixels, or third-party analytics cookies. You can block cookies in your browser settings, but doing so will prevent sign-in from working.
9. Children’s Privacy
NeatBuild is a business tool intended for adults. We do not knowingly collect data from anyone under 18. If you believe a minor has created an account, contact us immediately.
10. Changes to This Policy
We may update this policy as our service evolves. Material changes will be communicated by email or an in-app notice at least 14 days before taking effect. Continued use of NeatBuild after that date constitutes acceptance.
11. Contact Us
Questions about this policy or your data:
NeatBuild
Email: privacy@neatbuild.app
Website: neatbuild.app