This Privacy Policy explains how ForgeOps ("ForgeOps," "we," "us," or "our") — operated by ForgeOps LLC — collects, uses, shares, and protects information when you use our software (the "Service").
ForgeOps is a business-operations platform for trade companies (HVAC, electrical, plumbing, roofing, general contracting, landscaping, and excavation businesses). Because the Service manages a company's own customers, invoices, and email, this policy covers both information about you (the account holder) and the business/customer data your company enters or connects into the Service.
When you create an account, we collect your name, work email address, and a securely hashed password, along with basic company information (business name, trade specialties, headquarters location, employee count).
To operate the Service, we store the business data you enter or import, including but not limited to:
This data belongs to you and your company — see Section 4 of our Terms of Service for details on data ownership.
If you choose to connect the following services, we access and store data from them as necessary to provide the corresponding feature:
| Service | What we access | Why |
|---|---|---|
| QuickBooks Online (Intuit) | Customers, invoices, and related financial records | Two-way sync so your accounting data stays consistent between QuickBooks and ForgeOps |
| Gmail (Google) | Inbox messages and message content (subject, sender, body), and the ability to send email and organize messages (mark as read, archive) on your behalf | The shared Inbox feature, AI triage of incoming messages, and sending reminder or reply emails you've approved |
Connecting these services is always optional and initiated by you (or an admin on your account) through an explicit OAuth authorization — we never access your QuickBooks or Gmail account without that authorization, and access is limited to owner/admin users on your account.
Google user data. ForgeOps requests the gmail.modify Gmail scope, used only to read, send, and organize (mark read, archive) messages in the shared Inbox on your behalf. ForgeOps's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. New messages are analyzed automatically as they sync (see Section 3) to power triage — category, urgency, and a summary — not only when you open a message.
Like most software, our servers automatically log standard technical information (IP address, browser type, timestamps, pages/endpoints accessed) for security, debugging, and abuse-prevention purposes.
We use the information described above to:
We do not sell your data, or your customers' data, to third parties.
We share information only as necessary to operate the Service, with the following categories of service providers ("sub-processors"):
Anthropic (Claude API) — ForgeOps's AI features send relevant content to Anthropic's Claude API to generate a result: for example, an invoice's details when drafting a payment reminder, or an email's subject and body when triaging a message. If you've connected Gmail, incoming messages are triaged automatically as they sync — categorized, summarized, and scored for urgency — not only when you open a feature or a message. Anthropic processes this content solely to return that result to ForgeOps; it is not used to train Anthropic's models under Anthropic's commercial API terms.
Google (Gmail API) — Only if you connect Gmail. Used strictly to read and send email on your behalf for the features described in Section 1.3.
Intuit (QuickBooks API) — Only if you connect QuickBooks. Used strictly for the two-way sync described in Section 1.3.
Railway — Our infrastructure/hosting provider, which stores our application database and files. Railway does not use your data for any purpose other than providing hosting to us.
We may also disclose information if required by law, to protect the rights and safety of ForgeOps or others, or in connection with a merger, acquisition, or sale of assets (in which case we'll provide notice before your data is transferred or becomes subject to a different privacy policy).
We retain account and business data for as long as your account is active. If you cancel your account, we will delete or anonymize your data within a commercially reasonable period, except where we're required to retain it for legal, accounting, or security purposes. You can request deletion of your account and associated data at any time by contacting us (Section 8).
Gmail data specifically: disconnecting Gmail (Settings → Integrations) immediately revokes ForgeOps's access and stops any further syncing, but does not retroactively delete messages already synced into ForgeOps — those are deleted as part of full account deletion, or on request (Section 8).
We take reasonable technical and organizational measures to protect your information, including:
No method of transmission or storage is 100% secure, and we cannot guarantee absolute security. If we become aware of a data breach affecting your information, we will notify you as required by applicable law.
Depending on your location, you may have rights under laws such as the EU/UK GDPR or the California Consumer Privacy Act (CCPA), including the right to:
To exercise any of these rights, contact us using the information in Section 8.
The Service is intended for business use by adults and is not directed at, and should not be used by, anyone under the age of 18. We do not knowingly collect personal information from children.
Questions about this Privacy Policy, or requests regarding your data, can be directed to ForgeOps LLC at support@forgeopps.co.
We may update this Privacy Policy from time to time. If we make material changes, we'll provide notice (such as posting an update here with a new effective date, or emailing account holders). Continued use of the Service after a change takes effect constitutes acceptance of the updated policy.