Privacy Policy

Your Privacy Matters to Us

We are committed to protecting your privacy and being transparent about how we collect, use, and protect your information.

Last Updated: December 2024
1

Information We Collect

Contact Information: Name, email address, phone number, and business address when you request services or contact us.

Business Information: Company name, industry type, facility size, and specific cleaning requirements.

Service Data: Information about your cleaning schedules, preferences, and service history.

Payment Information: Billing details and payment method information (processed securely through our payment processors).

Communication Records: Records of our communications with you, including customer service interactions.

Website Usage: Information about how you use our website, including IP address, browser type, and pages visited.

2

How We Use Your Information

Provide and improve our commercial cleaning services

Schedule and coordinate cleaning appointments

Process payments and maintain billing records

Communicate with you about services, schedules, and updates

Respond to your inquiries and provide customer support

Send important service notifications and reminders

Improve our website and service offerings

Comply with legal obligations and industry regulations

3

Information Sharing and Disclosure

Service Providers: We share information with trusted third-party service providers who help us operate our business, such as payment processors, scheduling software, and communication tools.

Legal Requirements: We may disclose information when required by law, regulation, or legal process.

Business Transfers: In the event of a merger, acquisition, or sale of assets, customer information may be transferred as part of the transaction.

Consent: We may share information with your explicit consent or as directed by you.

We do not sell, rent, or trade your personal information to third parties for marketing purposes.

4

Data Security

We implement comprehensive industry-standard security measures to protect your information, including:

SSL/TLS Encryption: All data transmission between your browser and our servers is protected using SSL/TLS 1.3 encryption with 256-bit AES encryption, ensuring your information cannot be intercepted during transmission.

HTTPS Protocol: Our entire website and all services operate exclusively over HTTPS, providing end-to-end encryption for all communications.

Certificate Authority Validation: We use Extended Validation (EV) SSL certificates from trusted Certificate Authorities, verified through rigorous identity validation processes.

Perfect Forward Secrecy: Our SSL/TLS configuration includes Perfect Forward Secrecy (PFS) using ECDHE key exchange, ensuring that even if our private keys are compromised, past communications remain secure.

HSTS Implementation: HTTP Strict Transport Security (HSTS) is enforced to prevent downgrade attacks and ensure all connections use secure HTTPS.

Certificate Transparency: All our SSL certificates are logged in Certificate Transparency logs for public verification and security monitoring.

Secure data storage with access controls and monitoring

Regular security audits and vulnerability assessments

Employee training on data protection and confidentiality

Secure payment processing through PCI-compliant providers with additional SSL encryption layers

TLS Cipher Suite Optimization: We use only the most secure cipher suites and regularly update our TLS configuration to maintain the highest security standards.

Certificate Pinning: Our mobile applications and internal systems use certificate pinning to prevent man-in-the-middle attacks.

Automated Certificate Management: We use automated certificate renewal and monitoring systems to ensure continuous SSL/TLS protection without interruption.

While we implement comprehensive SSL/TLS security measures and follow industry best practices, no method of transmission over the internet is 100% secure. We continuously monitor, update, and improve our security infrastructure.

5

Data Retention

We retain your information for as long as necessary to provide our services and comply with legal obligations:

Active customer data is retained throughout the duration of our service relationship

Service records and communication logs are kept for 7 years for business and legal purposes

Payment information is retained as required by financial regulations

Website usage data is typically retained for 2 years for analytics purposes

You may request deletion of your data, subject to legal and business requirements

6

Your Privacy Rights

Access: Request access to the personal information we have about you

Correction: Request correction of inaccurate or incomplete information

Deletion: Request deletion of your personal information, subject to legal requirements

Portability: Request a copy of your data in a portable format

Opt-out: Unsubscribe from marketing communications at any time

Restriction: Request limitation of how we process your information

To exercise these rights, contact us at privacy@cleanshifthq.com

7

Cookies and Tracking

We use cookies and similar technologies to improve your website experience:

Essential Cookies: Required for basic website functionality and security

Analytics Cookies: Help us understand how visitors use our website

Preference Cookies: Remember your settings and preferences

Marketing Cookies: Used to deliver relevant advertising (with your consent)

You can control cookies through your browser settings, though some website features may not function properly if cookies are disabled.

8

Third-Party Services

Our website and services may integrate with third-party services, including:

Google Analytics for website analytics

Calendly for appointment scheduling

Payment processors for billing and transactions

Communication platforms for customer support

These services have their own privacy policies, and we encourage you to review them.

9

Children's Privacy

Our services are designed for businesses and commercial clients. We do not knowingly collect personal information from children under 13. If we become aware that we have collected information from a child under 13, we will take steps to delete such information.

10

Policy Updates

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of material changes by:

Posting the updated policy on our website

Sending email notifications to active customers

Updating the "Last Updated" date at the top of this policy

Continued use of our services after changes constitutes acceptance of the updated policy.

Questions About Our Privacy Policy?

If you have any questions about this Privacy Policy or how we handle your information, we're here to help.

Visit Us

123 Market St, Suite 400
San Francisco, CA 94105