Privacy Policy
Last updated July 19, 2026
Plain-language version: your pricing data is never shared with anyone, never sold, and you can export or delete everything at any time.
Overview
Construction Prism ("we," "us," the "Service") converts a written scope of work into a priced, line-item construction estimate. This policy explains what information we collect to do that, how it's used, who it's shared with, and the controls you have over it.
We organize data into three separate buckets with different rules: your private project data (never shared with anyone), anonymous model signals (stripped of any identifying information before storage), and product analytics (how the app is used, not what it's used for). The database schema enforces this separation — the anonymous tables have no user-identifying column at all.
Information We Collect
Account information
When you sign in with Google (and, where available, Sign in with Apple), we receive your name, email address, and profile information from that provider. We use this to create and identify your account. We never receive or store your Google/Apple password.
Project and estimate data
The scope-of-work text you submit, project details (name, project type, square footage, region), and the resulting line items, fees, warnings, cost code mappings, adjustments, and revision history. This is your private data — see "Your Private Data Is Never Shared" below.
Billing information
Subscription and credit-pack purchases are processed by Stripe. Stripe collects and stores your payment card details directly — Construction Prism never receives or stores your full card number. We retain the subscription status, plan, and transaction history Stripe reports back to us.
Usage and analytics data
We use PostHog to understand feature usage, navigation patterns, session activity, and error encounters, so we can improve the product. Analytics data never includes pricing, cost information, scope-of-work text, or project content, and is never cross-referenced with your project data.
Support communications
If you contact support by email or use in-app chat (Crisp) or in-app feedback, we receive whatever you send us — your message, contact email, and, only if you explicitly opt in via a checkbox, an aggregate summary of an estimate (item counts and confidence breakdown — never pricing, cost codes, or line-item detail).
Device and error data
We use Sentry to capture crash reports and error diagnostics (error type, stack trace, app version, device/browser information) so we can fix bugs. Error reports are not linked to your project content.
How AI Processes Your Scope of Work
When you submit a scope of work, the text is sent server-side to Anthropic's Claude API to be parsed into standardized CSI MasterFormat line items and checked for likely missing scope. This AI processing happens only on our servers — your API credentials (if any) and your proprietary cost codes are never sent to the AI; the AI only ever sees CSI-standard codes and your scope text. Anthropic processes this text as a service provider on our behalf and does not use it to train models on our current commercial terms.
The Three Data Buckets
Full technical detail lives in our public data policy document; the summary:
- Private data (Pool 1): Your actual costs, margins, bids, cost code mappings, adjustments, and project details. Siloed per account. Never shared with other users, never shared with us for any purpose beyond running the Service, never sold.
- Anonymous model signals (Pool 2): When you edit a line item or resolve a triage/warning flag, an anonymized record (CSI code, direction of change, percentage change, broad project type, month) may be stored to improve pricing accuracy for all users. No dollar amounts, no account identifier, no project name, no client information, no precise timestamp. It is structurally impossible to trace a contribution back to an account — the database table has no user-id column. This is on by default and can be turned off at any time in Settings > Data & Privacy with zero loss of features.
- Product analytics: Feature usage and navigation patterns via PostHog, described above.
Your Private Data Is Never Shared
We will never sell your data. We will never share your actual pricing, margins, bids, or project details with other users, competitors, marketers, advertisers, or data brokers, in any form — aggregated or otherwise — that could reveal your specific costs. Regional pricing benchmarks are sourced from published construction cost indices (e.g. ENR), never derived from your private data.
Who We Share Data With
We share data only with service providers who process it on our behalf to run the Service, under contractual confidentiality terms:
- Anthropic — processes scope-of-work text to generate estimates.
- Stripe — processes payments and manages subscriptions/credit packs.
- Google (and Apple, where Sign in with Apple is available) — authenticates your sign-in.
- PostHog — product analytics, described above.
- Crisp — in-app support chat, when you use it.
- Sentry — crash and error monitoring.
- Resend — delivers transactional email (e.g. verification links, support replies).
We do not share data with any party for their own marketing purposes, and we do not sell data. We may disclose information if required by law or to protect the rights, safety, or property of Construction Prism or our users.
Your Privacy Controls
In Settings > Data & Privacy (web) or Account (mobile) you can:
- Turn off anonymous correction contribution at any time, with no degraded features.
- Export all of your personal data as a JSON file at any time (
GET /api/user/export). - Permanently delete your account and all associated private data — see the Account Deletion page for exactly what's removed and how.
Data Retention
We retain your private data for as long as your account is active. If you delete your account, private data is removed via a cascade transaction — see Account Deletion for the full breakdown. Anonymous Pool 2 contributions are retained indefinitely because they carry no identifying information and cannot be tied back to, or removed for, a specific account.
Data Storage & Security
Private data is stored in Postgres, isolated per account, with every query filtered by the authenticated user — there is no API endpoint that returns another user's private data. All traffic is encrypted in transit (HTTPS/TLS).
Where We Operate
Construction Prism is a US-based service. At this stage we offer the Service to users in the United States and process and store data in the United States.
Children's Privacy
The Service is a professional tool for construction contractors and is not directed at children. We do not knowingly collect information from anyone under 16.
Changes to This Policy
We may update this policy as the product changes. Material changes will be reflected by an updated "Last updated" date at the top of this page.
Contact
Questions about this policy or your data? Visit Support or email ccohlson@gmail.com.