Privacy Policy
Last updated: February 22, 2026
1. Introduction
QuoteAV ("we," "us," or "our") respects your privacy. This Privacy Policy explains how we collect, use, store, and protect your information when you use our web-based quoting platform ("the Service").
By using the Service, you consent to the practices described in this policy.
2. Information We Collect
2.1 Information You Provide
- Account information: email address, password (encrypted), and company name when you register
- Company profile: business name, address, phone number, logo, and other details you enter in settings
- Business data: quotes, proposals, product libraries, client/customer information, and pricing data you create within the Service
- Payment information: when you subscribe to a paid plan, payment is processed by Square. We do not store your credit card number. We receive a payment confirmation and transaction ID.
2.2 Information Collected Automatically
- Usage data: pages visited, features used, and interaction patterns (anonymized)
- Device information: browser type, operating system, and screen resolution
- Log data: IP address, access times, and error logs for troubleshooting
We do not use third-party tracking cookies or advertising pixels.
3. How We Use Your Information
We use your information to:
- Provide, maintain, and improve the Service
- Authenticate your identity and secure your account
- Process payments and manage subscriptions
- Send transactional emails (account verification, password resets, billing receipts)
- Respond to support requests
- Detect and prevent fraud or abuse
We will never sell your personal information or business data to third parties. We will never use your data to train machine learning models or for advertising purposes.
4. Data Storage and Security
Your data is stored on Google Cloud infrastructure through Firebase (Firestore database and Firebase Authentication). We implement the following security measures:
- All data transmitted over HTTPS (TLS encryption in transit)
- Firestore security rules enforce per-user data isolation — users can only access their own data
- Passwords are hashed by Firebase Authentication (never stored in plain text)
- Payment processing handled by Square (PCI-DSS compliant) — we never see or store card numbers
- Security headers enforced on all pages (HSTS, CSP, X-Frame-Options)
While we take reasonable measures to protect your data, no method of electronic storage is 100% secure. We cannot guarantee absolute security.
5. Data Sharing
We share your information only in the following limited circumstances:
- Service providers: Google/Firebase (hosting and database), Square (payment processing). These providers are bound by their own privacy policies and data processing agreements.
- Legal requirements: We may disclose information if required by law, regulation, legal process, or government request.
- Business transfers: If QuoteAV is acquired or merged, your data may be transferred to the new entity. We will notify you before your data is subject to a different privacy policy.
We do not share your data with advertisers, data brokers, or any other third parties.
6. Your Rights
You have the right to:
- Access: Request a copy of the personal data we hold about you
- Correction: Update or correct inaccurate information through the Service or by contacting us
- Deletion: Request deletion of your account and all associated data
- Export: Request an export of your data in a machine-readable format
- Withdraw consent: You may stop using the Service at any time
To exercise any of these rights, contact us at support@quoteav.com. We will respond within 30 days.
7. Data Retention
We retain your data for as long as your account is active. If you delete your account:
- Your personal data and business data will be permanently deleted within 30 days
- Anonymized usage statistics may be retained for analytics purposes
- Payment records may be retained as required by tax and financial regulations
8. Children's Privacy
The Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If we learn that we have collected information from a child under 18, we will delete it promptly.
9. International Users
The Service is hosted in the United States. If you access the Service from outside the United States, your information may be transferred to and processed in the United States. By using the Service, you consent to this transfer.
If you are located in the European Economic Area (EEA) or United Kingdom, you may have additional rights under GDPR. Contact us to exercise these rights.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or by posting a notice within the Service. The "Last updated" date at the top of this page indicates when the policy was last revised.
11. Contact
If you have questions or concerns about this Privacy Policy or your data, contact us at:
support@quoteav.com