Privacy Policy

Effective Date: July 26, 2025

This Privacy Policy explains how NoteQuote collects, uses, and protects your personal information in compliance with the Personal Information Protection and Electronic Documents Act (PIPEDA) and applicable Ontario privacy laws.

1. Introduction

NoteQuote ("we," "us," or "our") is committed to protecting the privacy of our users. This Privacy Policy describes our practices regarding the collection, use, and disclosure of information we receive through our Service.

By using NoteQuote, you consent to the data practices described in this policy. If you do not agree with our policies and practices, please do not use our Service.

2. Information We Collect

We collect information that you provide directly to us and information that is collected automatically when you use our Service.

Information You Provide:

  • Account Information: Name, email address, password, and business name
  • Business Information: Business address, phone number, HST/GST number, business registration number
  • Client Data: Information about your clients that you choose to store in our Service
  • Financial Data: Quotes, invoices, and payment records (we do not store credit card information)
  • Communications: Support requests, feedback, and other correspondence

Information Collected Automatically:

  • Usage Data: Information about how you interact with our Service
  • Log Data: IP address, browser type, operating system, and access times
  • Cookies: We use essential cookies for authentication and session management

3. How We Use Your Information

We use the information we collect for the following purposes:

  • To provide, maintain, and improve our Service
  • To process transactions and send related information
  • To send technical notices, updates, and support messages
  • To respond to your comments, questions, and requests
  • To monitor and analyze trends, usage, and activities
  • To detect, investigate, and prevent fraudulent transactions and abuse
  • To comply with legal obligations

4. Legal Basis for Processing

We process your personal information based on the following legal grounds:

  • Contract Performance: To provide the Service you've requested
  • Consent: Where you have given explicit consent for specific processing
  • Legal Obligations: To comply with applicable laws and regulations
  • Legitimate Interests: For our legitimate business interests, such as improving our Service

5. Information Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties. We may share your information in the following circumstances:

  • Service Providers: With third parties who perform services on our behalf (e.g., Stripe for payment processing, Postmark for email delivery)
  • Legal Requirements: When required by law or to respond to legal process
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • Protection of Rights: To protect our rights, privacy, safety, or property
  • With Your Consent: When you have given us explicit permission to share

6. Data Security

We implement appropriate technical and organizational security measures to protect your personal information, including:

  • Encryption of data in transit using SSL/TLS
  • Encryption of sensitive data at rest
  • Regular security assessments and updates
  • Access controls and authentication measures
  • Employee training on data protection

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your personal information, we cannot guarantee its absolute security.

7. Data Retention

We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required by law.

  • Active Accounts: We retain your data while your account is active
  • Financial Records: We retain financial records for 7 years as required by Canadian tax law
  • After Account Deletion: Some information may be retained in our backup systems for up to 30 days

8. Your Privacy Rights

Under PIPEDA, you have the following rights regarding your personal information:

  • Right to Access: You can request access to the personal information we hold about you
  • Right to Correction: You can request that we correct inaccurate or incomplete information
  • Right to Deletion: You can request deletion of your personal information, subject to legal requirements
  • Right to Data Portability: You can request a copy of your data in a machine-readable format
  • Right to Withdraw Consent: Where processing is based on consent, you can withdraw it at any time
  • Right to Object: You can object to certain types of processing

To exercise these rights, please contact us at admin@notequoteapp.com. We will respond to your request within 30 days.

9. International Data Transfers

Your information may be transferred to and processed in countries other than Canada. When we transfer information outside of Canada, we ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy and applicable law.

10. Children's Privacy

Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information.

11. AI and Automated Processing

We use AI services (OpenAI) to provide quote generation assistance. When you use these features:

  • Your data is anonymized before being sent to AI services
  • Personal identifiers (names, addresses, phone numbers) are removed
  • Location data is reduced to province/state level only
  • We do not use AI for automated decision-making that significantly affects you

12. Cookies and Tracking Technologies

We use only essential cookies required for the operation of our Service:

  • Authentication Cookies: To keep you logged in
  • Session Cookies: To maintain your session state
  • Security Cookies: To protect against security threats

We do not use third-party tracking or advertising cookies. You can control cookies through your browser settings, but disabling essential cookies may prevent you from using our Service.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Effective Date" above. We encourage you to review this Privacy Policy periodically.

14. Contact Information

If you have any questions or concerns about this Privacy Policy or our privacy practices, please contact us at:

NoteQuote
Email: admin@notequoteapp.com

15. Privacy Commissioner of Canada

If you are not satisfied with our response to your privacy concern, you have the right to file a complaint with the Office of the Privacy Commissioner of Canada:

Office of the Privacy Commissioner of Canada
30 Victoria Street
Gatineau, Quebec K1A 1H3
Toll-free: 1-800-282-1376
Website: www.priv.gc.ca

By using NoteQuote, you acknowledge that you have read and understood this Privacy Policy and agree to the collection, use, and disclosure of your information as described herein.