FIELDSHIELD

Privacy Policy

This policy explains what personal data FieldShield collects across its mobile app, its web app and its back-office, why we collect it, who we share it with and how you can control it.

🕒 Effective date: July 17, 2026

1. Scope of this policy

This policy applies to every FieldShield surface: the mobile applications for iOS and Android, the web application at app.fieldshield.app, the public marketing site at www.fieldshield.app and the back-office at backoffice.fieldshield.app.

All these surfaces are operated by the same publisher and share a single backend, so the rules below apply uniformly no matter where you sign in.

2. Information we collect

We collect the following categories of information. Some are strictly required to run the service, others depend on features you enable or consents you grant.

  • Account and identification data

    First name, last name, professional email, hashed password (bcrypt), optional phone number, optional profile picture, role and entity type (project owner / EPC), language and time-zone preferences.

  • Project content you upload

    Projects, sites, tasks, RFIs, submittals, change orders, budget entries, forms, plans, PDF files, images, photos, sketches, plan annotations, comments and chat messages between project members, activity logs.

  • Photo geolocation and EXIF metadata

    When you take a picture from the mobile app with the location permission granted, GPS coordinates and EXIF metadata are preserved so the photo is geo-tagged inside the project. Location capture is optional and can be revoked in your device settings.

  • Phone contacts (mobile only, optional)

    If you accept the contacts permission on mobile, your address book is read locally to pre-fill project invitations. The list is never uploaded to our servers — only the invitations you actually send leave the device.

  • Advertising identifiers

    IDFA on iOS (subject to the App Tracking Transparency system prompt) and Android Advertising ID (AD_ID). Collected only when you have accepted the "Advertising" category of our consent banner and, on iOS, granted ATT.

  • Analytics and product-usage events

    Firebase Analytics events such as first_open, welcome_screen_viewed, register_screen_viewed, sign_up_attempted, sign_up, sign_up_failed, onboarding_completed and login. Meta App Events such as fb_mobile_activate_app and fb_mobile_complete_registration. UTM parameters (utm_source, utm_medium, utm_campaign) captured from campaign links. Sent only if you consented to "Analytics" and/or "Advertising".

  • Technical and device data

    IP address (transient, request-scoped), device model, operating system version, app version, browser identifiers, session timestamps, error diagnostics and Firebase Cloud Messaging (FCM) push token needed to deliver notifications.

  • Billing data

    Subscription history handled by Stripe for web checkout and by RevenueCat / Apple StoreKit / Google Play Billing for in-app purchases. Invoice details (name, billing address, VAT number where applicable) are stored for legal record-keeping.

3. How we use your information — purposes and legal bases

Every processing operation is anchored to a legal basis under Article 6 of the GDPR. We rely on the following:

  • Deliver the service — performance of the contract

    Authenticate you, sync projects across devices, run the collaboration features (tasks, RFIs, chat, files, plans), send transactional notifications (invitations, password reset, plan-limit alerts).

  • Push notifications for project activity — legitimate interest

    Alert you when a new task, message or activity concerns you inside a project you already belong to. Can be turned off in the app settings at any time.

  • Product analytics — consent

    Measure aggregate usage, understand which features work, spot regressions and prioritise the roadmap. Turned on only if you accept the "Analytics" category of the consent banner.

  • Advertising and retargeting — consent (plus ATT on iOS)

    Attribute installs to campaigns, build lookalike audiences and re-engage users who signed up but never activated the app, on Meta, Google, LinkedIn and YouTube. Turned on only if you accept the "Advertising" category of the consent banner and, on iOS 14.5+, grant ATT.

  • Billing and fiscal record-keeping — legal obligation

    Store invoices and payment history for the retention period required by tax and accounting regulations in France and the EU.

  • Fraud prevention and security — legitimate interest

    Detect abuse, rate-limit suspicious traffic, investigate incidents and enforce our Terms.

  • Customer support — performance of the contract

    Answer your support requests and troubleshoot issues on the account you contact us from.

5. How we share information — sub-processors

FieldShield never sells personal data. We share it strictly with the following categories of recipients, each bound by a data-processing agreement:

  • Other members of your projects

    Content you upload to a project is visible to the users invited to that project and to admins of the account owning the project.

  • Meta Platforms Inc. — advertising and analytics

    Meta App Events (Facebook / Instagram) for install attribution and Custom Audiences retargeting. Data transferred to the United States under the EU Standard Contractual Clauses and the EU-US Data Privacy Framework. Only fires with your "Advertising" consent.

  • Google LLC — Firebase, Analytics, Ads, FCM and YouTube

    Firebase Analytics for product analytics, Google Ads audiences for retargeting, Firebase Cloud Messaging for push delivery. Data transferred to the United States under Standard Contractual Clauses and the EU-US Data Privacy Framework.

  • LinkedIn (Microsoft) — Matched Audiences

    When we run LinkedIn Ads campaigns, we may upload a SHA-256-hashed CSV of email addresses so LinkedIn can match them against its own graph and target look-alike audiences. Only email addresses of users who opted into marketing are included. The list is rotated every two weeks and is never retained by LinkedIn for more than 90 days.

  • Apple Inc. — App Store, IDFA, ATT

    App Store distribution, in-app purchases through StoreKit, and IDFA / ATT signalling for iOS attribution.

  • Stripe — web payments

    Subscription checkout and card-payment processing for the web app. Data flows to Stripe under Standard Contractual Clauses and the EU-US Data Privacy Framework.

  • Sentry — error monitoring

    Automatic crash reports and performance traces, used to fix bugs. IP addresses are truncated where possible; logs are retained for 90 days.

  • Cloud infrastructure and email delivery

    Backend hosting inside the EU, transactional email delivery (Resend) and CDN. A current list of sub-processors is available on request at help@fieldshield.app.

  • Legal authorities

    When required by law, subpoena, court order or to protect our rights, users or the public — after reviewing the request for validity and scope.

6. How long we keep your data

We retain personal data only for as long as it serves the purpose for which it was collected, or as required by law:

  • Active account

    For the entire lifetime of the account. You can update your data at any time from Settings > Profile.

  • Account deletion

    A 30-day grace period during which the account can be restored; personal data is then purged from live systems and from encrypted backups within 90 days.

  • Billing records

    Kept for 10 years, as required by French and European tax and accounting rules.

  • Firebase Analytics events

    Retained for 14 months (default GA4 setting) then aggregated.

  • Meta App Events

    Retained by Meta according to its own policy (typically up to 2 years).

  • FCM push tokens

    Kept until revoked or until 60 days of inactivity.

  • Sentry logs

    Kept for 90 days.

  • LinkedIn Matched Audiences CSV

    Rotated every two weeks; never retained by LinkedIn for more than 90 days.

7. Your rights

Under the GDPR, and equivalent laws elsewhere, you have the right to access, rectify, delete or export your personal data, to restrict or object to certain processing, and to withdraw a consent at any time.

You can also lodge a complaint with a supervisory authority. In France, this is the CNIL (Commission Nationale de l'Informatique et des Libertés — www.cnil.fr). To exercise your rights, email help@fieldshield.app; we respond within 30 days. Account deletion can also be triggered directly from Settings > Account > Delete my account inside the app.

8. Data security

Data in transit is encrypted with TLS 1.2 or higher. At-rest storage is encrypted at the volume level. Passwords are hashed with a modern KDF (bcrypt). JWT access tokens are short-lived and rotated via refresh tokens. Back-office access is restricted, MFA-protected and audited. Backups are encrypted and run daily.

No system is perfectly secure — please contact help@fieldshield.app if you suspect an incident.

9. Cookies and similar technologies

FieldShield uses cookies and browser storage to keep you signed in, remember your language and interface preferences, and measure aggregate usage. Strictly necessary cookies are always set. Optional analytics and advertising cookies require your consent and can be revoked at any time from Account settings on the web, or from Settings > Privacy on mobile.

10. Children and minors

FieldShield is a B2B construction-management platform intended for professional use. The service is not directed at minors under 16. If we become aware that a minor has created an account, we will delete it and purge the associated personal data.

11. Changes to this policy

We may update this Privacy Policy as the product evolves. When we make a material change we will notify account admins by email and update the effective date at the top of this page. This version (July 17, 2026) reflects the introduction, in mobile app version 2.0.8, of the GDPR consent banner, of Meta App Events, of Firebase Analytics tracking and of Universal Links / App Links UTM capture. Continued use after such notice constitutes acceptance of the revised policy.

12. Contact us

If you have questions about this Privacy Policy, need to exercise a right or want to reach our Data Protection contact, please email the FieldShield privacy team:

help@fieldshield.app