Privacy Policy

Last updated: April 20, 2026

This Privacy Policy describes how PoolStride ("we", "us", or "our") collects, uses, and shares information about you when you use our pool service management software as a service (the "Service").

1. Information We Collect

1.1 Information you provide

  • Account data: name, email, phone number, company name, and password (hashed).
  • Billing data: we use Stripe to process subscription payments. Card details never touch our servers. We receive only the last four digits and brand.
  • Customer records you create: information about your pool service customers (names, addresses, phone numbers, emails, payment methods, service history).
  • Service records: visit logs, chemical readings, photos, invoices, and other operational data you create in the Service.

1.2 Information we collect automatically

  • Usage data: pages visited, features used, and session length.
  • Device data: IP address, browser type, operating system.
  • Location data: approximate location from IP address. If you use the technician app, precise GPS coordinates with your permission for route navigation and arrival verification.

2. How We Use Information

  • To provide and improve the Service
  • To process payments and send invoices
  • To send transactional emails (password resets, invoices, service reports)
  • To send marketing emails (only if you opted in — you can unsubscribe anytime)
  • To detect fraud and enforce our Terms of Service
  • To comply with legal obligations

3. How We Share Information

We do not sell your data. We share limited information only with:

  • Service providers (Supabase for data storage, Stripe for payments, Resend for email, Twilio for SMS, Cloudflare R2 for file storage, Upstash for rate limiting, Sentry for error tracking). Each is bound by a data processing agreement.
  • Your end customers receive the invoices, service reports, and portal links that you explicitly send to them.
  • Law enforcement when required by valid legal process.
  • A successor entity in the event of a merger, acquisition, or asset sale.

4. Data Retention

We retain your account data for as long as your subscription is active. When you cancel, we retain your data for 30 days so you can reactivate, then delete it within 90 days. You may request immediate deletion by contacting us or using the account deletion feature in Settings.

5. Your Rights

Depending on your location (GDPR, CCPA, etc.), you may have the right to:

  • Access the data we hold about you
  • Export your data in a portable format
  • Correct inaccurate data
  • Delete your account and data
  • Object to processing for marketing

You can exercise these rights from Settings → Account, or email us at [email protected].

6. Security

We use industry-standard security practices: TLS encryption in transit, AES-256 for sensitive data at rest, isolated multi-tenant architecture, rate limiting, and security monitoring. No system is perfectly secure, but we work hard to protect your data.

7. Children

The Service is not directed at children under 16, and we do not knowingly collect data from them.

8. Changes to This Policy

We may update this policy. Material changes will be announced by email and in-app notice at least 30 days before taking effect.

9. Contact Us

Questions? Email [email protected].