Privacy Policy for OnPlanr

Last updated: June 30, 2025

This Privacy Policy explains how OnPlanr ("we", "our", or "us") collects, uses, and protects information from users ("you") when you access our platform.

1. Information We Collect

a. Identity and Login Information

Name, email address, and profile image via third-party OAuth providers (e.g., Google).

b. Project Data

User-uploaded files (e.g., XER, Excel, image files).

Linked file metadata and content via integrated services (e.g., Google Drive).

Manual user input such as project names, codes, activity descriptions, durations, and logic sequences.

We encourage users to use code names or anonymized identifiers when uploading sensitive project or client information.

c. Technical Information

Browser type, device, and session activity.

IP address and location (collected for marketing and analytics purposes).

2. How We Use Your Data

To authenticate and authorize access using OAuth.

To load and display your project scheduling data.

To debug, improve, and personalize user experience.

To develop internal analytics and potentially train AI models based on anonymized or aggregated usage patterns.

For limited marketing analysis and usage trend tracking.

We do not:

Sell or rent your data to third parties.

Share your individual project data with other users.

3. Administrative Access

OnPlanr is currently maintained by a single-person development team. As such, administrative access to your data may occur for the purposes of debugging, customer support, or platform maintenance. This access is manual, limited to necessity, and not used for any purpose beyond product development and support.

We do not access your data for personal use or disclose it to external parties.

4. AI and Machine Learning

We may use anonymized or aggregated project data to develop AI-powered scheduling features. These models may be trained on data patterns derived from user activity across the platform, such as typical activity durations, dependency logic, and building types.

No raw project data or identifiable content will be exposed to other users.

As OnPlanr matures, we plan to implement opt-out mechanisms, data isolation features, and enterprise-grade model governance controls.

5. Data Storage and Infrastructure

All user data is stored securely in Supabase-managed infrastructure.

Linked file references (e.g., to Google Drive) are handled through Google's OAuth authorization flow.

We do not store full file contents from Google Drive unless explicitly imported.

6. Cookies and Sessions

We use cookies and JWT-based sessions to manage user authentication. This is handled through our use of NextAuth.js. Session information may include non-sensitive metadata needed to persist login state.

7. Data Retention and Deletion

We retain data as long as your account is active. If you wish to delete your account and associated data, please contact us at support@onplanr.com. Data deletion may take up to 14 days.

8. Legal Jurisdiction

This policy is governed by the laws of the United States. By using OnPlanr, you agree to these terms.

9. Contact

For questions, data removal requests, or concerns, contact us at:

Email: support@onplanr.com

Website: https://onplanr.com