Privacy Policy

Effective Date: March 11, 2026 | Last Updated: July 21, 2026

1. Introduction & Scope

Apex Space Systems LLC ("Company," "we," "us," "our") operates APEX Quote Online (the "Platform" or "Service"), a business management platform for independent contractors and service professionals. This Privacy Policy ("Policy") explains how we collect, use, disclose, store, protect, and otherwise process personal information and data in connection with our Platform, website (ApexQuote.online), mobile applications, and related services.

This Policy applies to: All users, including contractors, business owners, trial account holders, and paid subscribers. By accessing or using APEX Quote Online in any form, you acknowledge that you have read, understood, and expressly agree to be bound by this Privacy Policy in its entirety. If you do not agree with our data practices, you must immediately discontinue use of the Service.

Policy Updates: We may update this Privacy Policy periodically. Material changes will be posted on this page with an updated "Last Updated" date. Continued use of the Service following notification of changes constitutes acceptance of the revised Privacy Policy.

2. Information We Collect

2.1 Account & Registration Information

When you create an account, we collect: legal name, email address, phone number, business name, business type, service location(s), business address, tax identification number or EIN (optional), contractor license numbers (where applicable), insurance information, and payment details.

2.2 Business & Operational Data

  • Quote data: Client names, contact information, service details, pricing, scope of work, equipment/materials specifications
  • Booking information: Scheduled dates, times, locations, service history, photos (before/after)
  • Client database: Contact records, service history, communication logs, pricing history
  • Expense records: Receipt images, extracted merchant data, categorization, amounts, dates
  • Invoice data: Pricing, line items, payment terms, client information
  • Compliance documentation: Insurance certificates, licenses, certifications, agreement signatures

2.3 Payment & Billing Information

Payment processing is handled exclusively by Stripe, our payment processor. We do not store, transmit, or process full credit card numbers, bank account details, or CVV codes. Stripe retains payment information per their security standards and PCI compliance protocols. We receive and store transaction confirmations, billing history, subscription status, and invoice records.

2.4 Usage & Technical Data

  • Access logs: IP address, browser type, operating system, device information, timestamp
  • Interaction data: Pages visited, features accessed, time spent, clicks, navigation patterns
  • Cookies & identifiers: Persistent and session cookies, local storage data, device identifiers
  • Performance metrics: Error logs, API response times, feature usage analytics
  • Location data: Approximate geolocation based on IP address (not precise GPS tracking)

2.5 Communications & Support Data

When you contact customer support, we collect: email messages, chat transcripts, support tickets, screenshots, file attachments, and feedback. These records are retained for quality assurance, dispute resolution, and service improvement.

2.6 AI-Generated & Inferred Data

The Platform uses artificial intelligence and machine learning to analyze your inputs and generate insights. This includes: pricing recommendations, market analysis, content suggestions, tax categorization, and other automated inferences. These AI outputs are based on your data and aggregated market trends.

2.7 Third-Party Data

We may receive information about you from: payment processors, email service providers, analytics vendors, and government sources (for compliance verification). We do not purchase personal data from data brokers.

3. How We Use Your Information

3.1 Service Delivery & Operations

  • Provisioning Platform access and account management
  • Generating quotes, invoices, contracts, and business documents
  • Processing payments and managing subscriptions
  • Delivering customer support and technical assistance
  • Maintaining system security and preventing fraud/abuse
  • Backing up data and ensuring business continuity

3.2 Improvement & Analytics

  • Analyzing usage patterns and Platform performance
  • Training AI models and improving feature recommendations
  • Conducting A/B testing and UX optimization
  • Aggregating anonymized data for market insights and research

3.3 Communications & Marketing

  • Sending transactional emails (account confirmations, receipts, password resets)
  • Delivering service updates, feature announcements, and platform news
  • Sending promotional offers, webinar invitations, and educational content (opt-in)
  • Conducting surveys and collecting feedback

3.4 Compliance & Legal

  • Complying with legal obligations, court orders, and regulatory requirements
  • Verifying identity and preventing unauthorized access
  • Enforcing Terms of Service and other agreements
  • Protecting against fraud, abuse, and illegal activity
  • Resolving disputes and litigation support

3.5 Business Development

We may use aggregated, de-identified data to develop business reports, create industry benchmarks, and plan new features or services. Individual users cannot be identified from this data.

4. Data Sharing & Disclosure

4.1 Service Providers & Processors

We share data with third-party service providers who assist in Platform operations under written Data Processing Agreements (DPAs) and confidentiality obligations:

  • Payment Processing: Stripe (payment processor, PCI Level 1 certified)
  • Email Services: Resend, Brevo (transactional & marketing email)
  • Cloud Infrastructure: Base44, Deno Deploy (hosting, data storage)
  • Analytics: First-party analytics (no third-party tracking networks)
  • AI & OCR Services: Third-party providers for image processing and content generation
  • Customer Support: Support personnel with access controlled by role-based permissions

4.2 Legal Requirements & Law Enforcement

We may disclose data if required by law, court order, subpoena, or government request (federal/state/local). We will provide notice to affected users unless legally prohibited. We do not voluntarily provide data to law enforcement without legal process.

4.3 Business Transfers

In the event of merger, acquisition, bankruptcy, asset sale, or substantial change in business operations, your data may be transferred as a business asset. We will provide notice and opportunity to opt-out where legally permitted.

4.4 User Consent & Authorization

We share data with third parties only with your explicit consent (e.g., integrating with accounting software, sharing quotes with clients via public links, connecting to external services).

4.5 Data We Do NOT Sell

We do not sell, rent, trade, or license your personal data to third parties for their independent marketing or commercial purposes. Aggregated, de-identified data that cannot identify you may be used for research and industry benchmarking.

5. Data Security & Protection

5.1 Security Measures

We implement industry-standard technical, administrative, and physical safeguards:

  • SSL/TLS encryption for all data in transit (HTTPS only)
  • AES-256 encryption for sensitive data at rest
  • Secure authentication (password hashing with bcrypt or stronger)
  • Access controls and role-based permissions
  • Regular security audits and vulnerability assessments
  • Secure deletion protocols for decommissioned storage
  • Monitoring and logging of access to sensitive systems

5.2 Limitation of Security

No security system is 100% secure. While we implement reasonable protections, we cannot guarantee absolute security against unauthorized access, data breaches, or other security incidents. You use the Platform at your own risk. If you believe your account has been compromised, contact us immediately at contact@apexquote.online.

5.3 Data Breach Notification

In the event of a confirmed data breach affecting personal information, we will notify affected users without unreasonable delay and in compliance with applicable data protection laws (including GDPR and state privacy laws). We will provide details about the breach, affected data, and recommended protective actions.

6. Data Retention & Deletion

6.1 Retention Periods

  • Active Account Data: Retained for the duration of your subscription or account
  • Transaction Records: Retained for 7 years (tax and accounting compliance)
  • Support Records: Retained for 3 years (dispute resolution and service improvement)
  • Usage Logs: Retained for 90 days (security and performance monitoring)
  • Backup Data: Retained for up to 30 days after primary deletion
  • Legal/Litigation: Retained as long as necessary for legal proceedings

6.2 Account Deletion & Data Removal

Upon account termination or at your written request, we will delete or de-identify your personal data within 30 days, except where retention is required by law or for legitimate business purposes. Data needed for tax compliance, fraud prevention, or legal disputes will be retained as required.

6.3 Customer Data Retention

Client information you store in the Platform (names, phone numbers, addresses) is retained for as long as you maintain your account. You are responsible for obtaining consent from clients to store their information and may delete their records at any time through your account settings.

7. Your Privacy Rights & Choices

7.1 Access & Data Portability (GDPR & CCPA)

You have the right to request and receive a copy of your personal data in a portable, machine-readable format (CSV, JSON). Submit requests to contact@apexquote.online, and we will respond within 30 days.

7.2 Correction & Updates

You can update or correct inaccurate information in your account settings at any time. Contact support if you need assistance correcting data.

7.3 Deletion & Right to be Forgotten

You may request deletion of your account and associated personal data. We will comply within 30 days unless retention is required by law. Tax records, transaction history, and legal documents may be retained as required by regulations.

7.4 Marketing Communications & Opt-Out

You can unsubscribe from promotional emails, newsletters, and marketing communications by clicking the unsubscribe link in each email or updating preferences in your account settings. You will continue to receive transactional emails (account confirmations, billing, service updates).

7.5 Do Not Track (DNT) & Browser Signals

If your browser sends a "Do Not Track" signal, we will respect this preference where technically feasible. However, some Platform functionality may require cookies or tracking technologies to operate properly.

7.6 California Privacy Rights (CCPA/CPRA)

California residents have additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), including the right to know, delete, opt-out of sales/sharing, and request correction. To exercise these rights, contact contact@apexquote.online.

7.7 EU/EEA Rights (GDPR)

If you are located in the European Union or European Economic Area, you have rights under the General Data Protection Regulation (GDPR), including: access, rectification, erasure, restriction of processing, data portability, and the right to object to processing. We will comply with GDPR requirements for data transfers and processing lawfulness.

7.8 Exercising Your Rights

To exercise any of the above rights, submit a written request to: contact@apexquote.online. Include "PRIVACY REQUEST" in the subject line. Verify your identity before we process the request. We will respond within the timeframe required by applicable law (typically 30-45 days).

8. Cookies & Tracking Technologies

8.1 Cookie Types & Usage

  • Essential Cookies: Required for authentication, account management, and Platform security
  • Preference Cookies: Remember your settings and preferences
  • Performance Cookies: Track usage patterns and Platform performance for optimization
  • Marketing Cookies: Enable retargeting and campaign measurement (where applicable)

8.2 Third-Party Tracking

We do not use third-party ad networks or social media pixels for tracking. We use first-party analytics only to understand how users interact with the Platform.

8.3 Cookie Management

You can control cookies through your browser settings. Disabling cookies may affect Platform functionality. Most browsers allow you to refuse cookies or alert you when cookies are set.

9. Third-Party Links & External Services

APEX Quote Online may contain links to third-party websites, integrations, and external services (social media, accounting software, payment processors). This Privacy Policy does not apply to external sites. We are not responsible for the privacy practices of linked sites. Review their privacy policies before providing information.

10. Children & Minors

APEX Quote Online is intended for business professionals and is not directed to anyone under 18 years of age. We do not knowingly collect personal information from minors under 18. If we discover we have collected such information, we will delete it promptly. If you believe we have collected information from a minor, contact us immediately.

11. International Data Transfers

Your data may be transferred to, stored in, and processed in the United States and other countries where our service providers operate. These countries may have different data protection laws than your home country. By using APEX Quote Online, you consent to the transfer of your information internationally. For EU/EEA users, we rely on Standard Contractual Clauses (SCCs) or adequacy decisions to ensure lawful transfers.

12. AI & Automated Decision-Making

The Platform uses artificial intelligence and machine learning to generate pricing recommendations, expense categorizations, and market insights. These are recommendations only and should not be relied upon as professional financial or tax advice. You retain full responsibility for all business decisions and tax compliance. AI decisions are not used to automatically deny Platform access or critical services.

13. Data Controller & Data Processor

Data Controller: Apex Space Systems LLC (we determine the purposes and means of data processing)

Data Processors: Stripe, Resend, Brevo, Base44, Deno Deploy, and other service providers listed in Section 4.1.

14. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. The "Last Updated" date at the top indicates the most recent revision. Material changes (those affecting how we use your data) will be communicated via email or prominent notice on the Platform. Your continued use of APEX Quote Online after updates constitute acceptance of the revised Privacy Policy.

15. Contact Us & Data Protection Officer

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices:

Email: contact@apexquote.online

Mailing Address: Apex Space Systems LLC, Virginia, United States

Response time: Within 30 days of submission

16. Compliance Certifications & Frameworks

Our Platform and data practices are designed to comply with:

  • General Data Protection Regulation (GDPR) — EU/EEA
  • California Consumer Privacy Act (CCPA) & California Privacy Rights Act (CPRA)
  • Payment Card Industry Data Security Standard (PCI DSS) — via Stripe
  • Health Insurance Portability and Accountability Act (HIPAA) — where applicable
  • State privacy laws (Virginia, Colorado, Connecticut, etc.)

© 2026 Apex Space Systems LLC. All rights reserved. APEX Quote Online™ is a trademark of Apex Space Systems LLC. This Privacy Policy constitutes a legal agreement and is incorporated by reference into the Terms of Service.