Privacy Policy
The short version
- We don't sell your data, share it with advertisers, or run ad trackers. There is no analytics script on this website and no cookie banner, because there are no cookies to consent to.
- Your business data belongs to you. You can export all of it as a single file, or delete your account and its data, from Settings — without emailing us for permission.
- Daybook records technician hours. It never calculates or moves anyone's pay, and it stores no Social Security numbers or bank account numbers.
- Location is captured only at the moment a technician clocks in, and only if the business owner turns the shop geofence on. There is no background or continuous location tracking, on or off the clock.
- Card numbers never touch our servers — Stripe handles payments.
This policy explains what information Daybook ("we", "us") collects when you use usedaybook.com and our contractor business software (the "Service"), how we use it, who we share it with, and the choices you have.
1. Whose data this covers
Daybook holds two different kinds of information, and your rights differ depending on which one you're asking about.
Contractors and their staff — our customers
If you own a contracting business, or work for one that uses Daybook, we hold information about you directly. This policy governs it, and you can exercise the rights in section 10 with us.
Homeowners and property owners — your contractor's customers
If a contractor you hired uses Daybook, your name, address, phone number, and job history may live in their Daybook account. In that case the contractor decides what goes in, what it's used for, and how long it's kept. We hold and process it on their behalf and don't use it for our own purposes. To correct or remove your information, contact the contractor directly — they can do it themselves in the app. If you can't reach them, email us and we'll help them act on your request.
2. What we collect
- Account information — your name, email address, business name, trade, business address and phone, and your password (stored only as a bcrypt hash; we cannot read or recover it). If you enable two-factor authentication, we store the secret your authenticator app needs and your backup codes.
- Business data you enter — clients, properties, leads, estimates, jobs, schedules, invoices, payments, inventory, your price book, notes, checklists, and to-dos.
- Employee records — for each person you add: name, email, phone, job title, login username, pay rate and pay type, and their time entries. Pay rate is stored so we can total the hours on a pay period; see section 4 for what we deliberately don't hold.
- Photos and files — job photos taken in the field and files you attach, stored in Amazon S3 in the United States.
- Property models — the floor-plan geometry and measurements you draw for a property, plus the areas computed from them.
- Signatures — when a customer signs an estimate in person, we store the drawn signature image, the typed name, the exact consent wording shown on screen, a snapshot of the line items and total that were agreed to, the time, and who witnessed it. That record is immutable by design: it's the proof of what was agreed.
- Addresses and geocoding — property and business addresses are converted to map coordinates so jobs can be placed on a map and routed.
- Calls and messages — if you use a Daybook phone number, we log missed calls (the caller's number, their name where known, and the time) so you can call back. If you turn on the AI phone receptionist, a summary of the call and its duration are saved to that lead or client's history.
- Notifications — if you allow push notifications, the device token your phone or browser issues, and your browser's user-agent string.
- Activity log — an audit trail of important actions in your account: what was done, by whom, and when. It's there so an owner can answer "who changed this invoice."
- Technical records — IP address, request and error logs, kept to run the Service, debug failures, and detect abuse.
3. Location data
This deserves its own section, because field software has a reputation here and we want to be specific.
If a business owner turns on the shop geofence, then at the moment a technician taps clock in — and only then — Daybook reads the device's coordinates and accuracy, calculates the distance to the shop, and records a verdict of inside or outside the fence. That's the whole feature.
Daybook does not run a background location service. It does not record where a technician is between clock-ins, during a job, after clocking out, or on a weekend. There is no breadcrumb trail, no live map of where your people are, and no location captured at clock-out. If the geofence is off, no coordinates are recorded at all.
4. What we don't collect
- No Social Security numbers, tax IDs for individuals, bank account numbers, or government-issued ID numbers. Daybook tracks hours and produces an export for your payroll provider. It never calculates net pay, withholds taxes, or moves money to an employee.
- No card numbers. Subscription billing and your customers' card payments are handled by Stripe. Full card details never reach our servers.
- No advertising or cross-site tracking, no third-party analytics SDKs, no data brokers, and no sale or sharing of personal information for advertising — not now, and not as a future revenue plan. Daybook is paid for by subscriptions.
- No background location, no microphone access, and no access to anything on a technician's phone outside the Daybook app.
5. How we use it
- To provide and operate the Service, and to keep your account secure.
- To send transactional email you'd expect — estimate approvals, invoices, review requests you triggered, password resets, and account notices.
- To send text messages and route phone calls, where you've turned those features on.
- To send push notifications you've opted into.
- To bill your subscription and, through Stripe Connect, to pay you the money your customers pay on your invoices.
- To generate the output you asked for from an optional AI feature (see section 7).
- To support you when you ask for help, and to investigate abuse or security incidents.
We do not use your business data to build products for anyone else, to benchmark you against other contractors, or to train machine-learning models.
6. Service providers
We use a small set of infrastructure providers to run the Service. Each receives only what it needs for its function.
| Provider | What it does | When |
|---|---|---|
| Stripe | Subscription billing and your customers' card payments | Always |
| Resend | Transactional email delivery | Always |
| Amazon Web Services (S3) | Photo and file storage | Always |
| Railway | Application, database, and queue hosting | Always |
| Twilio | Your Daybook phone number, call forwarding, and text messages | If enabled |
| Anthropic | The AI behind the optional assistant and writing features | If used |
| Vapi | The optional AI phone receptionist | If enabled |
| Mapbox | Address lookup and type-ahead | Always |
| Intuit QuickBooks Online | Accounting and payroll-hours sync | Only if you connect it |
Two details worth calling out. Address type-ahead runs through our own server rather than from your browser, so no customer address is ever handed to Mapbox in a URL from your device. And the AI phone receptionist runs on your own Vapi account, connected with your own key — your call data goes to your account, not into a shared pool with other Daybook customers.
7. AI features
The in-app assistant, the AI phone receptionist, and the AI writing helpers are optional. When you use one, the business data relevant to your request — the estimate you're rewriting, the job you're asking about — is sent to our AI provider so it can produce the answer. Under our agreement with them, that content is not used to train their models.
We record how many tokens each AI request used and what it cost, per feature, so we can manage capacity and cost. Those usage records contain counts, not the content of the request.
AI output can be wrong. Review AI-generated estimates, messages, and summaries before sending them to a customer.
8. If you're a technician using Daybook
You didn't choose this software — your employer did. Here's exactly where you stand.
Your employer can see: your clock-in and clock-out times and total hours; the jobs assigned to you and their status; notes, photos, and checklists you record on a job; your to-dos; and, if they've turned the shop geofence on, where you were at the moment you clocked in and how far that was from the shop.
Your employer cannot see, through Daybook: where you are when you're not clocking in; where you go during or after a job; your personal apps, photos, messages, or files; or anything else on your phone. Daybook has no live-tracking map and no way to build one from what it stores.
If you have a question about your own record, ask your employer first — they can view and correct it in the app. If that doesn't work, email us and we'll help.
9. Security
- Passwords are hashed with bcrypt. We cannot read them, and nobody at Daybook can tell you what yours is.
- Session tokens, password-reset links, and customer estimate links are stored as SHA-256 hashes, never as plain text — a stolen copy of the database doesn't yield working links.
- Two-factor authentication is available on accounts, using an authenticator app plus one-time backup codes.
- Third-party credentials you connect — QuickBooks tokens, your Vapi key — are encrypted at rest with AES-256-GCM.
- Every database query is scoped to your business, so no other Daybook customer can reach your data. That rule is enforced in the code and checked automatically on every build; a change that would violate it fails the build rather than shipping.
- All traffic to the Service is encrypted in transit over HTTPS.
No system is perfectly secure. If we discover a breach affecting your data, we'll notify affected account owners and comply with applicable notification law.
10. Your controls
- Export — download your business data as a single archive from Settings, whenever you like. You don't need to ask us, and it isn't gated behind staying subscribed.
- Deletion — an owner can delete the account and its data from Settings. Deletion is scheduled with a 30-day grace period during which it can be reversed; after that it's permanent.
- Access and correction — view and edit account, business, employee, and customer records directly in the app.
- Notifications — choose which email and push notifications you receive in Settings. Transactional messages essential to the Service (password resets, billing notices) can't be turned off while your account is active.
- Location — the geofence is off unless a business owner turns it on, and your device's own operating-system permission is a second switch you control.
- Integrations — disconnect QuickBooks, Vapi, or Stripe Connect from Settings at any time; disconnecting revokes the stored credentials.
11. Retention and deletion
We keep your data for as long as your account is active. When an owner deletes the account, the data is purged after the 30-day grace period described above.
Two things survive that purge. Stripe retains payment and payout records under its own retention rules and financial regulation, and we retain the minimum records we're legally required to keep — such as our own invoicing and tax records for your subscription. Neither includes your customer list, jobs, or photos.
Data is stored in the United States.
12. This website
usedaybook.com sets no cookies, runs no analytics, and loads no advertising or tracking scripts. That's why you weren't asked to accept anything when you arrived.
One disclosure for completeness: the page loads its typeface from Google Fonts, so Google's servers receive your IP address as part of that request. Our own web host receives standard server request logs. Nothing on this site is tied to an identity or used to profile you.
13. The mobile app
The Daybook iOS app is a login-only app for existing accounts. It stores a working copy of your assigned jobs on the device so the field portal keeps working without signal, and syncs changes when you're back online. Signing out clears that cached copy from the device, as does signing in as a different person.
The app requests location permission only for the clock-in geofence described in section 3, and camera and photo permission only when you take or attach a job photo. Decline either and the rest of the app still works.
14. State and regional rights
Depending on where you live, you may have the right to know what personal information we hold about you, to get a copy of it, to correct it, to delete it, and to not be discriminated against for exercising those rights. Residents of California, Texas, and other states with comprehensive privacy laws have these rights by statute; we extend the same controls to everyone, which is why they're built into Settings rather than into a request form.
We do not sell personal information, and we do not share it for cross-context behavioral advertising, so there is nothing to opt out of. We do not use personal information for automated decisions producing legal or similarly significant effects.
If you're in Canada, we handle personal information consistently with PIPEDA and you can direct access or correction requests to the contact below.
To exercise a right you can't complete in the app, email us at the address in section 17. We'll verify that you are who you say you are — usually by confirming control of the account email — before acting, and we'll respond within the time your law allows. If a request concerns data a contractor holds about you as their customer, see section 1.
15. Children
The Service is business software and is not directed to children. We don't knowingly collect personal information from anyone under 13. If you believe a child's information has been entered into Daybook, email us and we'll remove it.
16. Changes
If we change this policy, we'll update the effective date above. For material changes — a new category of data, a new provider that receives your business data, or a new purpose — we'll email account owners before the change takes effect.
17. Contact
Questions, requests, or a privacy concern: support@usedaybook.com.
Daybook is operated by Dockery Systems co LLC, a Texas limited liability company. See also our Terms of Service.