Privacy Policy
This Privacy Policy explains how FieldVault, a product of Next313, a registered d/b/a of Dignetix Ltd, a Michigan corporation ("Dignetix", "we", "us"), collects, uses, stores, and protects information when you use FieldVault ("the Service"), available at fieldvault.app. By using the Service, you agree to the practices described here.
This Privacy Policy works alongside our Terms of Service and, where applicable, our Data Processing Addendum (DPA). For privacy questions, contact us at hello@fieldvault.app.
1. Who we are and our role
FieldVault is equipment and asset‑tracking software for field‑service teams, offered to businesses (multi‑user company workspaces) and to individuals (Personal accounts). For your own account and our public website, we act as a data controller. For the content your organization stores in its workspace, we act as a data processor on behalf of your organization, which is the controller of that content.
2. Information we collect
We collect only what's necessary to deliver and support the Service.
Account information
- Your name, email address, and — if you sign in with Microsoft — your Entra ID identifier
- Your organization, workspace memberships, account type (Business or Personal), and role assignments
- Notification preferences (channel, digest frequency, timezone, quiet hours)
Your workspace content
- Gear items, kits, jobs, crew records, sites, assignments, and related metadata you enter, including any custom fields your workspace has configured
- Photos and documents you upload — including equipment photos submitted for AI‑assisted recognition — stored in access‑controlled buckets
- Personal items — gear you mark as personally owned rather than company property remains visible to you and, by default, to your workspace's admins; an admin can turn this default visibility off per workspace
- Event history, lifecycle status, warranty, and stocktake/audit‑confirmation records for your items
- Settings, custom categories, saved views, and report definitions you create
- Support feedback you submit, including any screenshots or files you attach
Administrator access. If you use FieldVault through a company workspace, that workspace's administrators may access, modify, export, and delete the content stored in the workspace, and may view usage and audit information relating to its members. Items you mark as personally owned follow the visibility rules described above — visible to workspace admins by default, with a per‑workspace setting to turn that off — and are excluded from the workspace audit trail.
Technical & usage information
- Log and diagnostic data (IP address, browser, device type, timestamps)
- Feature usage patterns, aggregated and used only to improve the Service
- Error reports generated when the Service encounters a problem
- An audit trail of who changed what and when within your workspace, used for your own compliance and support purposes (excluding personal items, which are deliberately excluded from this trail)
Waitlist
Sign‑up is currently invitation‑only; if you join our public waitlist, we collect the email address you provide so we can contact you about availability. You can opt out at any time.
We do not knowingly collect information from children under 16. If you believe we have, please contact us and we will delete it.
3. How we use your information
We use the information we collect to:
- Operate, maintain, and improve the Service
- Authenticate users and enforce role‑ and tenant‑based access controls
- Provide AI‑assisted equipment‑photo recognition, for workspaces on a plan that includes it
- Send the notifications your workspace and preferences call for (in‑app and email)
- Respond to your support requests and communicate service updates — including AI‑assisted triage of submitted feedback, to route it to the right place faster
- Detect and prevent fraud, abuse, and security incidents
- Comply with our legal obligations
We do not sell your data. We do not use your workspace content for advertising, and we do not train artificial‑intelligence models on it. Photos and support feedback we send to our AI provider for the purposes described above are processed under that provider's standard API terms, which likewise exclude them from model training.
4. How we share information — sub‑processors
We share information only with trusted providers necessary to run the Service:
- Supabase — database, authentication, and file storage.
- Microsoft Azure — application hosting (Static Web Apps).
- Microsoft 365 (Microsoft Graph) — delivery of transactional and notification email.
- Anthropic — AI‑assisted equipment‑photo recognition (Business/Enterprise plans) and internal, staff‑facing feedback triage. Anthropic does not train its models on this content.
- Google Maps Platform (Google LLC) — address autocomplete for Sites and Jobs; when you use these fields, the address text and your IP address are sent to Google to provide the mapping service.
- Stripe — payment processing, for workspaces on a paid plan.
These providers are contractually bound to protect your data. We also share information within your workspace according to the role permissions you assign, and for legal reasons where required.
- For legal reasons. We may disclose information if required by law, legal process, or to protect the rights, safety, or property of Dignetix, our users, or the public.
- In a business transfer. If Dignetix is involved in a merger, acquisition, or asset sale, your information may be transferred, subject to the protections of this policy.
5. Data storage & security
Your data is stored in Supabase‑hosted PostgreSQL databases with row‑level security policies that isolate each workspace. Data is encrypted in transit (TLS) and at rest. Uploaded photos and documents are stored in access‑controlled buckets.
While we take reasonable technical and organizational measures to protect your information, no system is perfectly secure. If we become aware of a security incident that affects your data, we will notify you in accordance with applicable law.
6. Data retention
We retain your workspace content for as long as your account is active. If you delete an item, kit, job, or other record, it is removed from the live database promptly. Backups may retain deleted data for up to 30 days before being overwritten.
If you close your account, we will delete your workspace content within 90 days, except where we are required to retain it for legal, tax, or regulatory purposes.
7. Your rights
Depending on your jurisdiction, you may have the following rights:
- Access. Request a copy of the personal information we hold about you.
- Export. Export your workspace content at any time using the Excel/CSV export tools in Equipment and Reports.
- Correction. Update inaccurate information yourself via the Service, or by contacting us.
- Deletion. Request deletion of your account and associated data.
- Objection & restriction. Object to or restrict certain processing of your personal data.
- Portability. Receive your data in a structured, machine‑readable format.
To exercise any of these rights, email hello@fieldvault.app. We will respond within 30 days. If you are a member of a company workspace, some requests may be directed to that company as the controller of its workspace content.
California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have rights to know, delete, and correct your personal information, and to opt out of the sale or sharing of personal information (we do not sell or share personal information as those terms are defined under the CCPA), plus a right to non‑discrimination for exercising these rights. To exercise your rights, contact us at hello@fieldvault.app.
8. International transfers
Dignetix is based in the United States, and our service providers may operate servers in other countries. By using the Service, you consent to the transfer of your information to countries that may have different data‑protection laws than your own. We use appropriate safeguards, including standard contractual clauses where required.
9. Cookies, analytics & local storage
The Service uses cookies and browser local storage to keep you signed in, remember your preferences, and maintain session state. For traffic and usage measurement we use a self‑hosted, privacy‑preserving analytics tool (Umami) that is cookieless and does not collect personal information or track you across other sites. We do not use third‑party advertising cookies or cross‑site trackers, so no cookie‑consent banner is required.
10. Changes to this policy
We may update this policy from time to time. When we do, we will change the "Last updated" date at the top. For material changes, we will notify you by email or through a notice in the Service before the change takes effect.
11. Contact
Questions or requests about this policy or your data?
- General / privacy: hello@fieldvault.app
- Support: help@fieldvault.app
- 100 W Big Beaver Rd Ste 160, Troy, MI 48084