Privacy Policy

This policy describes the information FloorOps actually collects when you use the platform, how it is stored, and how you can access or delete it.

1. Who this policy covers

FloorOps is business software used by flooring contractors. This policy covers people who create a FloorOps account, and the business contact information those account holders enter about their own customers and staff.

Where a FloorOps account holder enters information about their customers, the account holder is responsible for that information and FloorOps processes it on their behalf.

2. Information we collect

Account information

  • Email address and password (passwords are stored only as a salted hash by our authentication provider)
  • Full name supplied at registration
  • Organisation membership and role (owner, manager, estimator, scheduler, administrator, installer)
  • Sign-in timestamps and session tokens required to keep you signed in

Business and workspace information you enter

  • Business name, ABN, contact details, address, logo and document defaults
  • Customer and contact records, site addresses and access instructions
  • Jobs, measurements, takeoffs, room dimensions, product selections and calculations
  • Estimates, quotes, quote revisions, work orders, material requirements and purchase orders
  • Appointments, installer assignments, installation records, completion sign-off and defects
  • Invoices, payments and outstanding balances
  • Files you upload, such as plans, site photos and signed documents
  • Activity and audit logs recording which user changed which record and when

Information we do not collect

  • We do not collect payment card numbers. FloorOps records payments you enter manually; it does not process card payments.
  • We do not sell personal information, and we do not use your job or customer data for advertising.

3. How we use the information

  • To create and secure your account and workspace
  • To run the features you use — takeoffs, estimating, quoting, scheduling, invoicing and reporting
  • To generate documents you ask us to produce, such as quote and invoice PDFs
  • To send transactional email such as email verification and password reset messages
  • To keep an audit trail so your organisation can see who changed a record
  • To diagnose faults and protect the service from abuse

4. Sharing and disclosure

Workspace data is visible only to signed-in members of your own organisation, according to their role. Installers see the jobs assigned to them and the information needed to complete that work.

Customer-facing quote links contain a long, non-guessable token. A person holding that link can see only that single quote — not other quotes, other customers, or any internal application data.

We use third-party providers for hosting, database storage, authentication and email delivery. They process data only to provide those services to us. We may disclose information where required by law.

5. Security

  • All traffic is served over HTTPS
  • Every organisation-owned record is isolated by database row-level security, enforced on the server
  • Sensitive operations are validated on the server, not only in the browser
  • Service credentials are never exposed to the browser

No system is perfectly secure. If you believe your account has been compromised, contact us immediately.

6. Access, correction and deletion

You can view and correct most information directly in the application. You may also ask us to provide a copy of your personal information, correct it, or delete your account and its data.

  • In the application: open Settings → Account and data and use the account deletion or data access request link.
  • By email: use the privacy contact address published on our contact page.

Deleting an organisation owner account removes that organisation's workspace data. Some records may be retained where we are legally required to keep them, or in encrypted backups for the retention period stated in the placeholder notice above.

7. Cookies and local storage

FloorOps stores an authentication session in your browser so you stay signed in, plus small interface preferences such as sidebar state. We do not use advertising or cross-site tracking cookies.

8. Changes and complaints

We will publish any change to this policy on this page. If you are concerned about how your information has been handled, contact us first. If you are not satisfied with our response, you may complain to the Office of the Australian Information Commissioner.