Version: 1.0 | Effective Date: June 28, 2026
This page is maintained by András Schmidt e.U. to answer common privacy questions about AsBuilt.site.
Privacy Policy
1. Introduction
Welcome to AsBuilt.site ("AsBuilt", "we", "our", or "us").
AsBuilt.site is operated by:
András Schmidt e.U.
Sonnenalpe Nassfeld 123
9620 Hermagor-Pressegger See
Austria
Email: hello@asbuilt.site
AsBuilt provides cloud-based construction documentation software that enables individuals and organizations to document construction projects, attach photographs, generate AI-assisted reports, collaborate with teams, and organize project information.
This Privacy Policy explains how we collect, use, disclose and protect personal information when you use our website, mobile applications and related services.
By using AsBuilt you acknowledge that you have read this Privacy Policy.
2. Our Privacy Principles
- Your project documentation belongs to you.
- Your photographs remain stored in your own cloud storage whenever possible.
- We request only the minimum permissions required to provide our services.
- We never sell your personal information.
- We never use your project data for advertising.
- You can export your data and disconnect supported cloud providers at any time.
3. Data Controller
The controller responsible for processing personal data is:
András Schmidt e.U.
Sonnenalpe Nassfeld 123
9620 Hermagor-Pressegger See
Austria
Email: hello@asbuilt.site
4. Information We Collect
Account Information
When creating an account we may collect:
- Name
- Email address
- Authentication provider
- Company name
- User role
- Preferred language
Project Information
Depending on how you use AsBuilt we may collect:
- Project names
- Building information
- Floor information
- Rooms
- Asset information
- Tasks
- Issues
- Work logs
- Notes
- Inspection records
- AI-generated summaries
- AI-generated translations
Metadata
We may collect:
- GPS coordinates
- Timestamps
- Device information
- User performing an action
- Activity history
- Synchronization status
Cloud Storage Metadata
When using supported cloud storage providers we may store:
- File identifiers
- Folder identifiers
- File names
- File paths
- Thumbnail references
- Synchronization metadata
We do not store original photographs on our own servers unless explicitly stated for a future feature.
5. Customer Data Ownership
Customer ownership is a fundamental design principle of AsBuilt.
Project photographs and uploaded documents remain the property of the customer.
When using Google Drive or Dropbox, project files are stored directly within the customer's own cloud storage account.
AsBuilt stores only the metadata required to organize projects, associate files with locations, generate reports, provide search functionality, and synchronize documentation.
Customers may disconnect supported cloud storage providers and export their project data at any time. AsBuilt does not claim ownership of customer content.
6. Authentication
Users may authenticate using:
- Google Sign-In
- Email and password
Passwords are stored using industry-standard secure hashing algorithms and are never stored in plain text.
7. Google Drive Integration
AsBuilt integrates with Google Drive using the restricted OAuth scope drive.file.
This permission allows AsBuilt to:
- create files
- create folders
- upload files
- read files created by AsBuilt
- update files created by AsBuilt
- organize files created by AsBuilt
AsBuilt cannot browse, read or modify unrelated files in a user's Google Drive. Project folders are created inside a dedicated AsBuilt folder belonging to the customer.
8. Dropbox Integration
Dropbox integration uses the App Folder permission model.
AsBuilt can access only its own application folder. It cannot access other Dropbox files or folders.
9. Artificial Intelligence
AsBuilt uses artificial intelligence provided by OpenAI to deliver selected features including:
- daily summaries
- weekly reports
- multilingual translations
- construction summaries
- documentation assistance
Only the information necessary to provide the requested functionality is processed. Where image analysis is offered, photographs are processed only when the user explicitly requests an AI feature requiring those images.
Customer content submitted for AI processing is not used by AsBuilt to train public AI models.
Users remain responsible for reviewing AI-generated outputs before relying on them for operational or contractual purposes.
10. Analytics and Diagnostics
To improve the Service we use:
- Google Analytics
- Sentry
These services help us understand product usage, diagnose errors and improve reliability. They are not used for advertising profiling.
11. Payments
Payments are processed securely by Stripe. AsBuilt does not store full payment card information.
Billing information may include:
- Customer name
- Billing address
- VAT information
- Subscription status
- Stripe customer identifier
Payment processing is subject to Stripe's own privacy policies.
12. Legal Basis for Processing
Depending on the circumstances we process personal data based on:
- performance of a contract
- legitimate interests
- legal obligations
- user consent
13. Data Storage
Our infrastructure is hosted within the European Union.
Current infrastructure includes services operating on AWS infrastructure located in Ireland (eu-west-1) together with Supabase-managed backend services.
Reasonable technical and organizational measures are implemented to protect customer data.
14. Security
We implement appropriate technical and organizational safeguards including:
- encrypted communication (HTTPS/TLS)
- authentication controls
- access control
- audit logging where applicable
- least-privilege cloud permissions
- secure infrastructure
- regular software updates
No online service can guarantee absolute security.
16. International Transfers
Where service providers process information outside the European Economic Area, appropriate safeguards such as Standard Contractual Clauses or equivalent legal mechanisms are applied where required.
17. Data Retention
We retain information only as long as necessary to:
- provide the Service
- comply with legal obligations
- resolve disputes
- enforce agreements
Users may request deletion of their account and associated personal information, subject to legal retention requirements.
18. Your Rights
Depending on applicable law, you may have the right to:
- access your personal information
- correct inaccurate information
- request deletion
- object to processing
- restrict processing
- receive a copy of your data
- withdraw consent where applicable
Requests may be submitted to: hello@asbuilt.site
19. Account Deletion
Users may request deletion of their account.
Where technically feasible, project metadata will be deleted from AsBuilt systems.
Files stored within the customer's own Google Drive or Dropbox remain under the customer's control and are not automatically removed unless explicitly requested through supported integrations.
20. Children's Privacy
The Service is intended for users aged 16 years or older.
We do not knowingly collect personal information from children under the applicable minimum age.
21. Changes to this Policy
We may update this Privacy Policy periodically.
Material changes will be communicated through the Service or by other appropriate means. The latest version will always be available on our website.
22. Contact
Questions regarding this Privacy Policy may be directed to:
András Schmidt e.U.
Sonnenalpe Nassfeld 123
9620 Hermagor-Pressegger See
Austria
Email: hello@asbuilt.site