Privacy Policy
Last updated July 8, 2026
SelfBuildOS is built for a single owner-builder managing a single build. We collect the minimum needed to run the Service, we don't sell your data, and you can export and delete it. This policy explains what we collect and why.
What we collect
- Account info — your email, name, and password (stored hashed by our auth provider).
- Build data — everything you enter: phases, tasks, budgets, materials, subs, appointments, plans, documents, logs, and draws.
- Billing info — handled by Stripe; we store your subscription status, not your card.
- Basic technical data — standard logs needed to operate and secure the Service.
How we use it
To provide the Service, process your subscription, send the emails and reminders you've enabled, and keep the product secure and working. We don't sell your data or use it for advertising.
Service providers
We rely on a small set of trusted processors to run the Service. Each handles only the data needed for its role:
- Supabase — Database, authentication, and file storage
- Vercel — Application hosting
- Stripe — Subscription billing and payments (we never see your card number)
- Resend — Transactional and reminder emails
- Google — Optional, only if you connect Google Calendar — we push your build appointments to it and display your Google events read-only
- Open-Meteo — Weather snapshots for daily-log entries (by coordinate and date)
Data retention & export
Your data is kept while your account is active. Export a single build's records to CSV any time from its Settings, or download a complete zip of your whole account — every build's records plus every uploaded file — from your Account page. Deleting your account from the app is immediate and permanent— your builds, files, and records are erased and can't be recovered, and any active subscription is stopped so you're not charged again. Canceling your subscription without deleting keeps your data in place, so you can pick up where you left off.
Two things necessarily outlive account deletion: our payment processor (Stripe) keeps billing and invoice records as required for financial and tax purposes, and routine encrypted backups may hold residual copies for a short period before they age out on their normal schedule. Have a specific data request? Email ryan@selfbuildos.com.
Security
Data is access-controlled per account (row-level security), encrypted in transit, and any third-party tokens — such as a connected Google Calendar — are encrypted at rest. No system is perfectly secure, but we keep the surface small by design.
Your choices
You can edit your profile, change notification preferences, disconnect Google Calendar, export your data, and delete your account from within the app. For anything else, just email us.
Changes & contact
We'll update this policy as the Service evolves; the "last updated" date above reflects the latest version. Questions or requests? Email ryan@selfbuildos.com.