Legal
Privacy Policy
Effective date: October 12, 2026
This policy explains how Bates WebTech LLC, a Wyoming limited liability company doing business as Crewfather ("we", "us"), handles information when you use crewfather.com and app.crewfather.com (together, the "Service"). The Service is a business tool offered to customers in the United States.
1. Information we collect
Account information. When you sign up we collect your name, email address, and a password (stored hashed, never in plain text). If you sign in with Google or Apple, we receive your name and email from them. If you register a passkey, we store its public key.
Organization and billing information. Your organization's name and settings, your plan, and your subscription status. Payments are processed by Stripe; card details go directly to Stripe and we never store card numbers.
Business records you create. The content your team puts into the Service to run your business: client contacts, properties, jobs, quotes, invoices, schedules, notes, photos you take or attach on a job, and messages. If you connect an email inbox, we process the messages needed to show and send email from the Service.
Photos. The app uses the iOS photo picker, which hands us only the photos you pick and never gives us access to your photo library. We record when a photo was added to a job.
Location. If you tap "use my location" while filling in a job site, the app reads your device's current location once, converts it to a street address, and saves both the address and its coordinates to the job. We ask for location only while you are using the app, we never track you in the background, and what we keep is a job site rather than a record of your movements. You can type the address instead and the app will never read your location.
Payments (Tap to Pay). So you can take card payments on your phone, the app includes Stripe's Tap to Pay component. Because it is built into the app rather than called over the network, Stripe's own privacy declaration for it applies: it covers approximate ("coarse") location, used to make the payment feature work, and app-interaction data, used both to make it work and for Stripe's own analytics. Stripe declares that neither is linked to your identity and neither is used for tracking. Crewfather does not take a card payment through this component until you set up card payments in the app.
Browser extension (Crewfather Clipper). If you install our optional browser extension, it reads the contents of a webpage only when you click the extension on that page: the page's address, title, visible text, and product metadata. When you choose Extract, that content is sent to our servers, where our AI infrastructure processes it only to fill in the product fields shown to you for review; the page content is not kept as a copy of the page. What is stored is what you choose to save: the product fields you approve and the page's address, kept in your workspace like any record you enter. The extension uses your existing Crewfather sign-in and never asks for or stores your password, it contains no analytics, and it does not collect your browsing history or read any page you do not clip.
Usage and device information. Log data such as IP address, browser or device type, and pages or actions used, collected to keep the Service secure and working.
Support conversations. If you use the chat widget (provided by Crisp), email us, or send us a message through the contact form on our support page, we keep the conversation so we can help you. The contact form stores the name, email address, subject and message you enter, and the time you send it, on our own servers. To keep automated abuse off the form, submissions are checked with Cloudflare Turnstile, which receives your IP address for that check.
2. Your customers' information
Most of the personal information in Crewfather belongs to the clients of the businesses that use it: names, phone numbers, email addresses, service addresses, and job history. We process that information on behalf of the business that entered it, to provide the Service to them. The business controls it, and their client-facing obligations (like responding to a client's deletion request) are theirs; we support them in meeting those obligations. If you are a client of a business that uses Crewfather, contact that business about its records.
3. How we use information
- To provide and operate the Service: schedules, jobs, invoices, portals, and the rest.
- To handle billing, trials, and subscriptions.
- To secure the Service: authentication, fraud and abuse prevention, and debugging.
- To send transactional messages such as password resets, receipts, and notifications you have enabled.
- To provide AI features: when you use the assistant, or the browser extension's product extraction, the relevant data is processed by our AI infrastructure providers only to generate the response.
- To improve the Service, using aggregated or de-identified usage information.
- Payment features in the mobile app send app-interaction information to Stripe for Stripe's own product analytics, as described in section 1. We do not run analytics on your business records.
AI features and your permission. Crewfather's AI features (the assistant, AI-written drafts of emails and requests, and reading contact details from a photo or pasted text) send what you type, plus the job and customer details the request needs, to Cloudflare Workers AI, which runs the AI models on Cloudflare's infrastructure, only to generate the reply or draft you asked for. Cloudflare does not use this content to train AI models. In the iPhone app we ask for your permission the first time you open an AI feature, and the app makes no AI request until you allow it. You can withdraw that permission at any time in the app's Settings, and the app then stops using AI features for you. We keep a record of when you gave or withdrew your permission.
We do not sell personal information, and we do not use your business records for advertising.
4. Cookies
We use cookies that are necessary for the Service to work: keeping you signed in and remembering preferences like your theme. The chat widget sets its own cookie so your conversation persists. We do not use advertising or cross-site tracking cookies.
5. When we share information
We share information only with:
- Service providers that help us run Crewfather, including Cloudflare (hosting, networking, AI infrastructure, and abuse prevention), Stripe (payments), Resend (email delivery), Twilio (text messaging to your customers), Crisp (support chat), and Google and Apple (optional sign-in). They may process information only to provide their service to us. The complete, current list is on our subprocessors page, which we keep up to date separately from this policy.
- OpenStreetMap Foundation (address geocoding): when you put a street address on a job, we send that address, and nothing else, to the OpenStreetMap Foundation's Nominatim service to convert it into map coordinates for the schedule map. This happens once per address; the coordinates are stored with the job and the address is not sent again unless it changes.
- People you direct us to share with: for example, when you email a quote to a client or send them a portal link.
- Law enforcement or regulators when required by law, or to protect the rights, safety, or property of Crewfather, our customers, or others.
- A successor business if we are involved in a merger, acquisition, or sale of assets, in which case this policy continues to apply to your information.
- Stripe, for payments in the mobile app. Part of Stripe's payment software is built into our iPhone app. Where that component collects information it does so under Stripe's own privacy policy and for Stripe's purposes as well as ours. That is different from the rest of this list, where a provider processes information only on our instructions.
6. Data retention
We keep your information while your account or organization is active. Messages sent through the contact form on our support page are not attached to an account, so that clock does not apply to them; we keep them for as long as we need them to answer your question and to handle any follow-up, and you can ask us to delete yours sooner by emailing us. When you delete a record in the app, it is removed from view immediately and retained so the deletion can be undone. To have data permanently removed, email us and we will delete it from our systems. Workspace export files that have been generated are deleted from our primary storage 30 days after they are created; residual copies may persist in backups and in storage-provider version history. After a subscription ends, we keep your Customer Data so you can export it or return, and we remove it on request. We may keep limited billing records as required for tax and accounting.
7. Security
Data is encrypted in transit, passwords are hashed, and each organization's data is isolated from other organizations at the application and database level. Access to production systems is restricted. No system is perfectly secure, so tell us immediately at support@crewfather.com if you suspect a problem with your account.
8. Your choices and rights
- You can view and update your account information in the app.
- You can export your business records by asking us.
- You can delete records, your account, or your organization; deletion works as described in the retention section above.
- Depending on your state, you may have additional rights over your personal information, such as access, correction, and deletion. We honor these requests regardless of state. Email us and we will respond within 30 days. We do not sell or share personal information for cross-context behavioral advertising, so there is nothing to opt out of.
9. Children
The Service is for businesses and is not directed to children. We do not knowingly collect personal information from anyone under 13. If you believe a child has provided us information, contact us and we will delete it.
10. Where data is processed
The Service is intended for use in the United States. We and our service providers may process data in other locations where they operate infrastructure, always under this policy.
11. Changes to this policy
We may update this policy from time to time. If a change is material, we will give notice (for example by email or in the app) before it takes effect. The effective date at the top always reflects the current version.
12. Contact
Questions or requests? Email support@crewfather.com.