Back to Home

Privacy Policy

Last Updated: March 23, 2026

1. Introduction

Bidroom, Inc. ("Bidroom," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our construction management platform, including our website, mobile applications, and related services (collectively, the "Services").

By using our Services, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our Services.

This Privacy Policy should be read together with our Terms of Service, which governs your use of the platform.

2. Information We Collect

2.1 Personal Information You Provide

2.2 Information Collected Automatically

2.3 Information from Third Parties

3. How We Use Your Information

We use collected information for the following purposes:

PurposeLegal Basis
Provide Services: Create and manage your account, process transactions, facilitate project management, enable messagingContract performance
Verify Identity: Contractor license verification, identity verification, fraud preventionLegitimate interest / Legal obligation
Process Payments: Handle escrow deposits, milestone payments, subscription billing, and refundsContract performance
AI Features: Power AI-driven tools including bid analysis, contractor matching, cost estimation, compliance assistance, and document generationContract performance / Consent
Improve Platform: Analyze usage patterns, diagnose technical issues, develop new features, and enhance user experienceLegitimate interest
Communications: Send transactional notifications (milestone updates, payment confirmations), security alerts, and marketing materials (with consent)Contract performance / Consent
Safety & Security: Detect and prevent fraud, abuse, unauthorized access, and security incidentsLegitimate interest / Legal obligation
Legal Compliance: Comply with applicable laws, regulations, court orders, and legal processesLegal obligation
Referral Program: Track referrals, calculate rewards, and prevent fraudContract performance

4. How We Share Your Information

We may share your information in the following circumstances:

4.1 With Other Users

4.2 Service Providers

We share information with trusted third-party service providers who assist us in operating our platform:

All service providers are contractually obligated to handle your data securely and only for the purposes we specify.

4.3 Other Sharing

We Never Sell Your Personal Information. Bidroom does not sell, rent, or trade your personal information to third parties for their marketing purposes. We do not participate in data broker services.

5. AI Data Processing

When you use our AI-powered features, your data is processed as follows:

Sensitive Information: Do not submit sensitive personal information (Social Security numbers, financial account credentials, medical information) to AI features. AI features are designed for construction project data only.

6. CrewCommand and Location Data

If you use Bidroom's CrewCommand workforce management features, we collect and process additional data:

GPS Location Data

Daily Logs and Media Uploads

Crew Member Data

Worker Privacy: Bidroom does not provide continuous location tracking. GPS data is captured only at the moment of clock-in and clock-out events — we do not track your location between those events or outside of work hours.

7. Account Deletion and Data Portability

In compliance with Apple App Store Guidelines (Section 5.1.1(v)) and Google Play Developer Policy, we provide a straightforward account deletion process:

How to Delete Your Account

What Happens When You Delete

Data TypeActionTimeline
Profile information (name, email, phone, photo)Permanently deletedWithin 30 days
Login credentials and authentication tokensPermanently deletedImmediately
Active subscriptionsCanceled (no prorated refund)End of billing period
AI credits (unused)ForfeitedImmediately
Contractor websiteTaken offlineWithin 48 hours
Messages and communicationsRemoved from your view; other party's copies retainedWithin 30 days
Project records and contractsRetained (anonymized where possible)7 years per legal requirement
Financial/transaction recordsRetained7 years per tax/financial regulations
Daily logs and mediaRetained as part of project record (anonymized)7 years per construction record requirements
Referral historyAnonymizedWithin 30 days

Data Portability

Before deleting your account, you can request a copy of your data by contacting privacy@bidroom.io. We will provide your data in a machine-readable format (JSON/CSV) within 45 days of your request. This includes your profile data, project history, contracts, daily logs, financial records, and communications.

Pending Obligations: Account deletion cannot be completed while you have active escrow transactions, unresolved disputes, or outstanding payment obligations. These must be resolved before deletion can proceed.

8. Data Security

We implement industry-standard security measures to protect your information:

While we strive to protect your information using commercially reasonable safeguards, no method of transmission over the Internet or method of electronic storage is 100% secure. We cannot guarantee absolute security. If you believe your account has been compromised, contact us immediately at security@bidroom.io.

9. Data Retention

We retain your information for as long as your account is active or as needed to provide Services. Specific retention periods:

Data TypeRetention PeriodReason
Account profile dataDeleted within 30 days of account deletionService provision
Project records and contracts7 years after project completionLegal/tax compliance, warranty periods
Financial transaction records7 yearsTax and accounting obligations
Escrow and payment records7 yearsFinancial regulations
AI usage logs90 daysQuality assurance and credit tracking
GPS clock-in/out dataProject duration + 2 yearsLabor compliance and dispute resolution
Daily log media (photos/videos)Project duration + 7 yearsConstruction record requirements
Communication logsDuration of account + 1 yearDispute resolution
Server and access logs90 daysSecurity and debugging
Anonymized analyticsIndefinitelyProduct improvement
Backup copiesPurged within 90 days of data deletionDisaster recovery

If you request account deletion, we will delete your personal data within 30 days, except for data we are legally required or permitted to retain.

10. Your Rights and Choices

10.1 California Residents (CCPA/CPRA)

If you are a California resident, the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA) provide you with specific rights regarding your personal information:

To exercise these rights, contact us at privacy@bidroom.io or use the privacy request tools in your account settings. We will verify your identity before processing requests and respond within 45 days (extendable by an additional 45 days for complex requests).

Categories of Personal Information Collected (CCPA Disclosure):

10.2 Other U.S. State Privacy Rights

Residents of Virginia, Colorado, Connecticut, Utah, and other states with comprehensive privacy laws have similar rights to access, delete, correct, and opt out of data processing. Contact privacy@bidroom.io to exercise these rights. We will respond within the timeframe required by your state's law.

10.3 European Economic Area (EEA) and UK Residents (GDPR)

If you are located in the EEA or UK, you have additional rights under the General Data Protection Regulation (GDPR):

Our legal bases for processing are: contract performance, legitimate interests, legal obligation, and consent (as detailed in Section 3).

10.4 All Users

11. Cookies and Tracking Technologies

Types of Cookies We Use

Cookie TypePurposeDuration
EssentialAuthentication, session management, security (CSRF protection)Session / 7 days
FunctionalUser preferences, language settings, theme selection1 year
AnalyticsPlatform usage analysis, feature adoption tracking, performance monitoring2 years

Do Not Track

Some browsers offer a "Do Not Track" (DNT) setting. There is no universally accepted standard for how to respond to DNT signals. Currently, we do not respond to DNT browser signals but we honor opt-out requests made through our platform settings.

Managing Cookies

You can control cookies through your browser settings. Most browsers allow you to refuse cookies, delete existing cookies, or be notified when a cookie is set. Disabling essential cookies may affect core platform functionality such as authentication.

12. Children's Privacy

Our Services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children under 18. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at privacy@bidroom.io. If we discover we have collected information from a child under 18, we will promptly delete it.

13. International Data Transfers

Bidroom is based in the United States. If you access our Services from outside the United States, your information will be transferred to and processed in the United States, where data protection laws may differ from those in your jurisdiction.

By using our Services, you consent to the transfer of your information to the United States. For EEA/UK users, we rely on Standard Contractual Clauses (SCCs) as approved by the European Commission to ensure adequate protection for data transfers.

14. Third-Party Links and Services

Our platform may contain links to third-party websites, services, or applications. This Privacy Policy does not apply to third-party services. We recommend reviewing the privacy policies of any third-party services you interact with. Third-party services we integrate with include but are not limited to:

15. Data Breach Notification

In the event of a data breach that compromises your personal information, we will:

16. Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices, technologies, or legal requirements. When we make changes:

Your continued use of our Services after the effective date of the updated Privacy Policy constitutes acceptance of the changes. If you do not agree with the updated policy, you should stop using the Services and request account deletion.

17. Authorized Agent

You may designate an authorized agent to submit privacy requests on your behalf. To do so, provide a signed, written authorization to the agent and have them contact us at privacy@bidroom.io. We may require verification of both your and the agent's identity before processing the request.

Contact Us

If you have questions about this Privacy Policy, wish to exercise your privacy rights, or have concerns about our data practices, contact us:

Privacy Inquiries: privacy@bidroom.io

Security Issues: security@bidroom.io

General Legal: legal@bidroom.io

Address: Bidroom, Inc.
Los Angeles, CA

For California residents: If you are not satisfied with our response, you may contact the California Attorney General's Office at oag.ca.gov/privacy.