Privacy Policy
BuildDue is designed to keep each company account separated and to use customer information only to operate, secure, support, and improve the service.
Information we process
We process account identity, company and team information, subscription status, project and progress-billing records, uploaded documents, activity and audit events, support communications, device and request information, and service diagnostics.
How information is used
Information is used to authenticate users, provide billing workflows, store and scan files, deliver invitations and operational emails, process subscriptions, prevent abuse, troubleshoot incidents, maintain audit history, and meet legal obligations.
Service providers
BuildDue uses Amazon Web Services for hosting, authentication, database, storage, monitoring, security scanning, and transactional email. Stripe processes subscription payments. These providers process information under their own contractual and security obligations.
Company separation and security
Company records are scoped by organization. Production infrastructure uses Cognito authentication, encrypted Aurora PostgreSQL, private S3 storage, malware scanning, role permissions, audit history, backups, monitoring, and restricted database networking. No system can be guaranteed perfectly secure.
Retention and deletion
Active customer information is retained while needed to provide the service. A trial becomes read-only after 30 days if no license is activated. Unlicensed trial uploads are scheduled for removal after the configured retention period, currently 90 days. Backup versions may remain for a limited additional period for recovery, security, and legal purposes.
Customer responsibilities
Customers control the construction and contact information they upload and must have authority to provide it. Customers should avoid uploading payment-card data, government identification numbers, health information, or unrelated sensitive information.
Requests and contact
Account owners may request access, correction, export, or deletion where applicable by contacting support@localhost. Identity and authority may be verified before a request is completed.