Ketterly — Privacy Policy
Effective Date: March 4, 2026 | Version: 1.0
Ketterly ("we," "us," or "our") operates a cloud-based Customer Relationship Management (CRM) platform designed for roofing and construction companies. This Privacy Policy explains how we collect, use, disclose, and safeguard information when you use our Platform.
1. Information We Collect
We collect two primary categories of information:
1.1 Business Data (The Roofing Company)
When a roofing company ("Subscriber") or its team members ("End Users") register for or use the Platform, we collect:
- Account Information: Company name, contact name, email address, phone number, and business address. Billing details (credit card, billing address) are handled and stored directly by our payment processor (Stripe) and are never stored on our servers.
- User Profiles: Full name, email address, phone number, role, profile photo, and employment details.
- Usage Data: Login timestamps, feature usage, device and browser information, IP addresses, and interaction logs.
- Payment Information: Billing address, subscription plan details. Credit card information is processed and stored exclusively by our payment processor (Stripe) and is never stored on our servers.
1.2 Customer Data (The Homeowner)
Subscribers and End Users upload information about their customers ("Homeowner Data") into the Platform. This may include:
- Personal Information: Homeowner name, email address, phone number, and mailing address.
- Property Information: Property address, roof measurements, roof condition details, satellite/aerial imagery data, and property characteristics.
- Financial Information: Quotes, estimates, invoices, payment records, insurance claim information, and financing details.
- Communications: Emails, SMS messages, call logs, and notes exchanged between the roofing company and the homeowner.
- Documents: Contracts, change orders, warranties, inspection reports, and electronically signed documents.
1.3 Media & Photographs
The Platform allows users to upload and store photographs, including but not limited to:
- Roof inspection photos (before, during, and after work)
- Property damage documentation
- Material delivery and installation photos
- Drone or satellite imagery
These photos are stored securely on our cloud infrastructure and are accessible only to authorized users within the Subscriber's company. Photos may be processed (resized, compressed) for performance optimization. Subscribers and End Users may choose to share individual photos with third parties via the platform's built‑in sharing feature; Ketterly itself does not proactively distribute photos except as driven by user actions or as otherwise described in this policy.
2. How We Use Your Information
We use the collected information to:
- Provide the Service: Operate, maintain, and improve the CRM Platform, including lead management, quote generation, scheduling, invoicing, and communication features.
- Process Payments: Manage subscriptions and process billing through our payment processor.
- Communicate with You: Send account-related notifications, security alerts, product updates, and customer support responses.
- Improve the Platform: Analyze usage patterns and feedback to develop new features and enhance existing functionality.
- Generate Aggregated Insights: Create anonymized, aggregated industry reports and benchmarks (e.g., average roof replacement cost by region). These insights never identify any individual, homeowner, or specific company.
- Ensure Security: Detect, prevent, and address fraud, abuse, security incidents, and technical issues.
- Comply with Legal Obligations: Respond to lawful requests from government authorities and comply with applicable laws and regulations.
3. How We Share Your Information
We do not sell your personal information or Customer Data. We may share information with the following categories of recipients:
3.1 Service Providers
We work with trusted third-party service providers who process data on our behalf, including:
- Stripe — Payment processing and subscription billing.
- Supabase / AWS — Cloud hosting, database storage, and file storage.
- Resend — Transactional email delivery.
- Twilio — SMS messaging services.
- Google Cloud — Mapping and geocoding services.
- Vercel — Application hosting and content delivery.
Each service provider is contractually obligated to protect your data and use it only for the purpose of providing services to Ketterly.
3.2 Within Your Organization
Customer Data is shared among the Subscriber and its authorized End Users as configured by the Subscriber's account settings and permissions.
3.3 Legal Requirements
We may disclose your information if required to do so by law or in response to valid legal process (e.g., subpoena, court order, or government investigation).
3.4 Business Transfers
In the event of a merger, acquisition, or sale of all or a portion of our assets, your information may be transferred as part of that transaction. We will notify you of any such change and any choices you may have regarding your information.
4. Data Security
We implement industry-standard security measures to protect your data, including:
- Encryption in transit (TLS/SSL) and at rest (AES-256)
- Row-Level Security (RLS) ensuring multi-tenant data isolation
- Role-based access controls and permissions
- Regular security audits and vulnerability assessments
- Secure authentication with password hashing and session management
While we strive to protect your data, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security.
5. Data Retention
We retain Customer Data for as long as the Subscriber's account remains active. At present, our system does not automatically delete data after cancellation; any removal must be performed manually by a company administrator. We are evaluating automated deletion workflows to meet legal and privacy requirements.
We retain aggregated and anonymized Platform Data indefinitely, as it cannot be used to identify any individual.
6. Your Rights
6.1 All Users
You have the right to:
- Access the personal information we hold about you.
- Correct inaccurate or incomplete personal information.
- Delete your account and associated personal data (subject to our data retention obligations).
- Object to processing of your personal data for certain purposes.
6.2 California Residents (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including:
- The right to know what personal information we collect, use, and disclose.
- The right to request deletion of your personal information.
- The right to opt out of the "sale" of personal information. We do not sell personal information.
- The right to non-discrimination for exercising your CCPA rights.
6.3 European Residents (GDPR)
If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR), including:
- The right to data portability.
- The right to restrict processing.
- The right to withdraw consent at any time (where processing is based on consent).
- The right to lodge a complaint with a supervisory authority.
To exercise any of these rights, please contact us at support@ketterly.com.
7. Cookies & Tracking Technologies
We use essential cookies to maintain your session and preferences. We may also use analytics tools to understand how the Platform is used. You can manage cookie preferences through your browser settings.
8. Children's Privacy
The Platform is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that a child under 18 has provided us with personal information, we will promptly delete it.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or in-app notification at least thirty (30) days before the changes take effect. The "Effective Date" at the top of this policy will be updated accordingly.
10. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us at:
- Email: privacy@ketterly.com
- Support: support@ketterly.com