Legal
Privacy Policy
How Taskmaster247 collects, uses, and protects your information across our website, web app, and mobile apps.
This Privacy Policy explains how Taskmaster247 ("we", "us", or "our") collects, uses, stores, and protects personal information when you use our website, web application, and mobile applications (together, the "Services").
By using the Services, you agree to this Privacy Policy. If you do not agree, please do not use the Services.
Who we are
Taskmaster247 provides operational software for facilities, inspections, schedules, checklists, and maintenance workflows. Our Services are available at https://taskmaster247.biz.
Information we collect
Depending on how you use the Services, we may collect:
- Account information such as your name, email address, password (stored securely in hashed form), organisation membership, and role.
- Operational data you create or submit, including checklists, schedules, inspection results, photos, signatures, notes, NFC scan events, and maintenance records.
- Billing and payment-related information for organisation accounts, such as invoice details and payment method references processed by our payment providers.
- Technical and usage information, including IP address, browser or device type, app version, authentication tokens, API request logs, and error diagnostics needed to operate and secure the Services.
- Mobile app permissions you grant, such as camera access for photo capture, NFC for tag scanning, and network access to sync data with our servers.
How we use your information
We use personal information to:
- Provide, operate, and maintain the Services.
- Authenticate users and enforce access controls within your organisation.
- Send service-related communications, notifications, and operational alerts.
- Process billing, invoices, and subscription or entitlement management where applicable.
- Improve reliability, security, and performance of the Services.
- Comply with legal obligations and respond to lawful requests.
Legal basis (EEA users)
Where GDPR applies, we process personal data on the basis of contract performance, legitimate interests in operating and securing the Services, compliance with legal obligations, and consent where required (for example, optional cookies or certain communications).
Sharing and processors
We do not sell your personal information. We may share data with:
- Service providers that help us host, secure, email, process payments, or support the Services (for example infrastructure, email delivery, Stripe, or GoCardless where billing features are enabled).
- Other users within your organisation, according to your role and permissions.
- Authorities or advisers where required by law or to protect rights, safety, and security.
We require processors to handle data only on our instructions and with appropriate safeguards.
Data retention
We retain personal information for as long as needed to provide the Services, meet contractual and legal requirements, resolve disputes, and enforce our agreements. Retention periods may vary by data type and your organisation's use of the platform.
Security
We use technical and organisational measures designed to protect personal information, including encrypted connections (HTTPS), access controls, and authenticated API access. No method of transmission or storage is completely secure.
International transfers
Your information may be processed in countries other than your own. Where required, we use appropriate safeguards for international data transfers.
Your rights
Depending on your location, you may have rights to access, correct, delete, restrict, or object to certain processing of your personal information, and to data portability. You may also withdraw consent where processing is based on consent.
To request deletion of your account and associated personal data, use our secure request form. We create a backup before any deletion is processed. Request account deletion.
To exercise other rights, contact us using the details below. You may also lodge a complaint with your local data protection authority.
Children
The Services are intended for business and organisational use and are not directed at children under 16.
Changes to this policy
We may update this Privacy Policy from time to time. We will post the revised version on this page and update the "Last updated" date above.
Contact us
If you have questions about this Privacy Policy or our data practices, contact us at privacy@taskmaster247.biz.
Account deletion requests: https://taskmaster247.biz/request-account-deletion