Privacy Policy
Effective Date: April 5, 2026
ProjectXBidX.com ("Platform," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use it, how we share it, and your choices regarding your data.
1. Information We Collect
1a. Information You Provide
- Account Information: Full name, email address, phone number, physical address, business name, and password when you create an account.
- Profile Information: Bio, avatar photo, website URL, social media links, trade specialties, and years of experience.
- Credential Documents:Contractor license, bond, insurance certificate, workers' compensation certificate, EIN documentation, and professional references uploaded by bidders.
- Project Information: Project descriptions, locations, photos, videos, documents, budget ranges, and completion criteria posted by customers.
- Bid Information: Bid prices, timelines, start dates, trade selections, notes, and supporting documents submitted by bidders.
- Messages: Text content and file attachments sent through in-platform messaging.
- Reviews: Ratings, review text, and relationship context submitted about other users.
- Payment Information: When using paid features (paid estimate pools), payment processing is handled by Stripe. We do not directly store credit card numbers or bank account details.
1b. Information Collected Automatically
- Usage Data: Pages visited, features used, and interactions with the Platform.
- Device Information: Browser type, operating system, screen resolution, and device identifiers.
- Log Data: IP addresses, access times, and referring URLs.
- Cookies: We use essential cookies for authentication and session management. We do not currently use third-party advertising cookies.
2. How We Use Your Information
- To operate the Platform: Facilitate project posting, bid submission, messaging, notifications, and the contractor directory.
- To display profiles and badges: Show bidder qualification badges, profile information, and reviews to customers evaluating bids.
- To process payments: Facilitate paid estimate pool funding, contractor payouts, and related financial transactions via Stripe.
- To send notifications: Deliver in-app and email notifications for bids, messages, project updates, and account activity.
- To enforce our Terms: Detect and prevent fraud, abuse, and violations of our Terms of Service.
- To improve the Platform: Analyze usage patterns, troubleshoot issues, and develop new features.
- To communicate with you: Respond to support requests, send service updates, and provide important information about your account.
3. How We Share Your Information
- With other Platform users: Your profile information, qualification badges, portfolio, and reviews are visible to other users as part of normal Platform functionality. Bid details are only visible to the project owner and Platform administrators (sealed bid system).
- With Stripe: Payment-related data is shared with Stripe for payment processing. See Stripe's Privacy Policy.
- With Supabase: Your data is stored in Supabase-hosted PostgreSQL databases with row-level security. See Supabase's Privacy Policy.
- With Vercel: The Platform is hosted on Vercel. See Vercel's Privacy Policy.
- For legal compliance: We may disclose information when required by law, subpoena, court order, or government request, or to protect the rights, safety, or property of our users or the public.
- We do not sell your personal information to third parties for advertising or marketing purposes.
4. Data Security
- All data is transmitted over HTTPS (TLS encryption).
- Uploaded files (credentials, project photos, bid documents) are stored in private Supabase Storage buckets with signed URLs — they are not publicly accessible.
- Row-Level Security (RLS) policies are enforced at the database level, ensuring users can only access data they are authorized to see.
- Authentication is managed by Supabase Auth with JWT tokens and optional Google OAuth.
- While we implement reasonable security measures, no system is 100% secure. You are responsible for keeping your account credentials confidential.
5. Data Retention
- Account data is retained for as long as your account is active.
- If you request account deletion, we will remove your profile and personal information within 30 days. Certain data (bids and messages associated with other users' active projects) may be retained in anonymized form for platform integrity.
- Admin audit logs and flagged content records are retained indefinitely for platform security and compliance purposes.
6. Your Rights & Choices
- Access & Correction: You can view and update your profile information, credentials, and portfolio at any time through your dashboard.
- Data Export: You may request a copy of your personal data by contacting us at support@projectxbidx.com.
- Account Deletion: You may request deletion of your account and personal data by contacting support.
- Notification Preferences: You can manage your notification settings through your dashboard.
- Do Not Track:We do not currently respond to "Do Not Track" browser signals, as there is no industry standard for compliance.
7. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- The right to know what personal information we collect, use, and disclose.
- The right to request deletion of your personal information.
- The right to opt out of the sale of personal information. We do not sell personal information.
- The right to non-discrimination for exercising your privacy rights.
To exercise your CCPA rights, contact us at support@projectxbidx.com.
8. Children's Privacy
The Platform is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that a user is under 18, we will promptly delete their account and associated data.
9. Third-Party Links
The Platform may contain links to third-party websites or services (e.g., contractor websites, social media profiles). We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing personal information.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify users via in-platform notification and update the "Effective Date" at the top of this page. Your continued use of the Platform after changes are posted constitutes acceptance of the updated Privacy Policy.
11. Contact Us
If you have questions about this Privacy Policy or your personal data, please contact us at:
- Email: support@projectxbidx.com
- Platform: ProjectXBidX.com
