Privacy Policy
How Project Metrics Hub collects, uses, stores, and protects your information.
1. Introduction
Project Metrics Hub ("we," "our," or "us") operates a cloud-based construction intelligence platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, use our platform, or engage with our services. We are committed to protecting the privacy and confidentiality of your personal and business data.
By accessing or using Project Metrics Hub, you agree to the terms of this Privacy Policy. If you do not agree, please discontinue use of our services.
2. Information We Collect
2.1 Information You Provide Directly
- Account Information: When you register for an account, we collect your full name, email address, company name, job title, and phone number.
- Billing Information: Payment details such as credit card numbers and billing addresses are collected by our third-party payment processor and are not stored on our servers.
- Support Inquiries: When you contact us through our website, contact form, or email, we collect the information you provide in your message including name, email, company, and the content of your inquiry.
- User Content: Comments, annotations, forecasts, and other data you create within the platform.
2.2 Information Collected Through Integrations
- Accounting Data: When you connect your accounting system (e.g., Foundation Software, QuickBooks, Sage), we access financial records including general ledger entries, accounts payable, accounts receivable, job cost data, and employee records as authorized by you.
- Project Management Data: When you connect Procore or similar platforms, we access project data, RFIs, submittals, change orders, and related records as authorized by you.
- Spreadsheet Data: When you connect Google Sheets or similar services, we access the specific sheets and data ranges you designate.
2.3 Information Collected Automatically
- Usage Data: Pages visited, features used, time spent on the platform, clickstream data, and interaction patterns.
- Device Information: Browser type, operating system, device type, screen resolution, and language preferences.
- Log Data: IP addresses, access times, referring URLs, and server logs for security and performance monitoring.
- Cookies: Session cookies to maintain your login state and preferences. We do not use third-party advertising cookies.
3. How We Use Your Information
We use the information we collect for the following purposes:
- Service Delivery: To provide, maintain, and improve the Project Metrics Hub platform, including generating dashboards, reports, forecasts, and AI-powered analyses.
- Account Management: To create and manage your account, authenticate your identity, and enforce role-based access controls.
- Security: To detect, prevent, and respond to security incidents, fraud, and unauthorized access. This includes audit logging, session tracking, and anomaly detection.
- Communication: To respond to your inquiries, send service-related notifications (e.g., scheduled maintenance, security alerts), and provide onboarding or training materials.
- Product Improvement: To analyze usage patterns in aggregate to improve features, performance, and user experience. We do not sell usage data to third parties.
- Legal Compliance: To comply with applicable laws, regulations, and legal processes.
4. Data Sharing and Disclosure
We do not sell, rent, or trade your personal information or financial data to third parties. We may share information only in the following circumstances:
- Service Providers: With trusted third-party vendors who perform services on our behalf (e.g., cloud hosting, payment processing, email delivery), subject to confidentiality agreements.
- Integration Partners: With third-party platforms you explicitly authorize (e.g., Procore, Google Sheets) only to the extent necessary to provide the integration functionality you requested.
- Legal Requirements: When required by law, subpoena, court order, or government regulation, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change.
5. Data Security
We implement comprehensive security measures to protect your data:
- Encryption in Transit: All data transmitted between your browser and our servers is encrypted using TLS 1.2 or higher.
- Encryption at Rest: Sensitive data including 2FA secrets is encrypted at rest using Fernet symmetric encryption (AES-128-CBC with HMAC-SHA256).
- Password Hashing: User passwords are hashed using bcrypt, an adaptive one-way hashing algorithm that is resistant to brute-force attacks.
- Access Controls: Role-based access controls (RBAC) ensure that users can only access data and features authorized for their role.
- Audit Logging: All security-relevant actions are logged with timestamps, user identification, and action details for monitoring and incident response.
- Session Management: Sessions use cryptographically generated UUID tokens with configurable expiry and automatic invalidation.
While we employ industry-standard security measures, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security but are committed to promptly addressing any security incidents.
6. Data Retention
We retain your personal information and financial data for as long as your account is active or as needed to provide services. Upon account termination:
- Account credentials and personal information are deleted within 30 days of your written request.
- Financial data synced from your accounting systems is deleted within 30 days unless you request an earlier deletion.
- Audit logs and security records may be retained for up to 12 months after account closure for compliance and security purposes.
- Aggregated, anonymized data that cannot identify you may be retained indefinitely for product improvement.
7. Your Rights and Choices
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal information we hold about you.
- Correction: Request correction of inaccurate or incomplete personal information.
- Deletion: Request deletion of your personal information, subject to certain legal exceptions.
- Data Portability: Request a machine-readable copy of your data for transfer to another service.
- Opt-Out: Opt out of non-essential communications at any time by contacting us or using the unsubscribe link in emails.
- Restrict Processing: Request that we limit how we use your data in certain circumstances.
To exercise any of these rights, contact us at info@projectmetricshub.com. We will respond to your request within 30 days.
8. Cookies and Tracking
Project Metrics Hub uses only essential cookies required for the platform to function:
- Session Cookies: To maintain your authenticated session while you use the platform. These expire when you log out or after the configured session duration.
- Preference Cookies: To remember your display settings such as dark mode, default views, and layout preferences.
We do not use third-party advertising or tracking cookies. We do not participate in cross-site tracking or behavioral advertising networks.
9. Children's Privacy
Project Metrics Hub is designed for use by businesses and professionals. We do not knowingly collect personal information from individuals under the age of 18. If we become aware that we have inadvertently collected data from a minor, we will take steps to delete it promptly.
10. International Data Transfers
Project Metrics Hub is hosted in the United States. If you access the platform from outside the United States, your data may be transferred to and processed in the United States. We take appropriate safeguards to ensure your data is protected in accordance with this Privacy Policy regardless of where it is processed.
11. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. When we make material changes, we will notify you by posting the updated policy on our website with a revised effective date. Your continued use of the platform after any changes constitutes your acceptance of the updated policy.
12. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us:
Project Metrics Hub
Email: info@projectmetricshub.com
Website: Contact Form