Privacy Policy

Effective date: July 23, 2026

This Privacy Policy explains how ForgeOps AI ("ForgeOps AI," "we," "us," or "our") — operated by Caden Marinacci and Dane Hogue — collects, uses, shares, and protects information when you use our software (the "Service").

ForgeOps AI is a business-operations platform for trade companies (HVAC, electrical, plumbing, roofing, general contracting, landscaping, and excavation businesses). Because the Service manages a company's own customers, invoices, and email, this policy covers both information about you (the account holder) and the business/customer data your company enters or connects into the Service.

1. Information We Collect

1.1 Account & company information

When you create an account, we collect your name, work email address, and a securely hashed password, along with basic company information (business name, trade specialties, headquarters location, employee count).

1.2 Customer & business data you provide

To operate the Service, we store the business data you enter or import, including but not limited to:

This data belongs to you and your company — see Section 4 of our Terms of Service for details on data ownership.

1.3 Data from connected third-party services

If you choose to connect the following services, we access and store data from them as necessary to provide the corresponding feature:

ServiceWhat we accessWhy
QuickBooks Online (Intuit)Customers, invoices, and related financial recordsTwo-way sync so your accounting data stays consistent between QuickBooks and ForgeOps AI
Gmail (Google)Inbox messages, message content, and the ability to send email on your behalfThe Inbox AI feature, and so ForgeOps AI's Accounting Agent can send reminder emails you've approved

Connecting these services is always optional and initiated by you (or an admin on your account) through an explicit OAuth authorization — we never access your QuickBooks or Gmail account without that authorization, and access is limited to owner/admin users on your account.

1.4 Automatically collected information

Like most software, our servers automatically log standard technical information (IP address, browser type, timestamps, pages/endpoints accessed) for security, debugging, and abuse-prevention purposes.

2. How We Use Information

We use the information described above to:

We do not sell your data, or your customers' data, to third parties.

3. How We Share Information

We share information only as necessary to operate the Service, with the following categories of service providers ("sub-processors"):

Anthropic (Claude API) — When you use an AI-assisted feature (e.g., drafting a payment reminder, or triaging an inbox email), the relevant content (such as an invoice's details or an email's text) is sent to Anthropic's Claude API to generate that output. Anthropic processes this content to return a result to ForgeOps AI; it is not used to train Anthropic's models under Anthropic's commercial API terms.

Google (Gmail API) — Only if you connect Gmail. Used strictly to read and send email on your behalf for the features described in Section 1.3.

Intuit (QuickBooks API) — Only if you connect QuickBooks. Used strictly for the two-way sync described in Section 1.3.

Railway — Our infrastructure/hosting provider, which stores our application database and files. Railway does not use your data for any purpose other than providing hosting to us.

We may also disclose information if required by law, to protect the rights and safety of ForgeOps AI or others, or in connection with a merger, acquisition, or sale of assets (in which case we'll provide notice before your data is transferred or becomes subject to a different privacy policy).

4. Data Retention

We retain account and business data for as long as your account is active. If you cancel your account, we will delete or anonymize your data within a commercially reasonable period, except where we're required to retain it for legal, accounting, or security purposes. You can request deletion of your account and associated data at any time by contacting us (Section 8).

5. Data Security

We take reasonable technical and organizational measures to protect your information, including:

No method of transmission or storage is 100% secure, and we cannot guarantee absolute security. If we become aware of a data breach affecting your information, we will notify you as required by applicable law.

6. Your Rights and Choices

Depending on your location, you may have rights under laws such as the EU/UK GDPR or the California Consumer Privacy Act (CCPA), including the right to:

To exercise any of these rights, contact us using the information in Section 8.

7. Children's Privacy

The Service is intended for business use by adults and is not directed at, and should not be used by, anyone under the age of 18. We do not knowingly collect personal information from children.

8. Contact Us

Questions about this Privacy Policy, or requests regarding your data, can be directed to Caden Marinacci and Dane Hogue at the contact email provided on our website.

9. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we'll provide notice (such as posting an update here with a new effective date, or emailing account holders). Continued use of the Service after a change takes effect constitutes acceptance of the updated policy.