Legal

Privacy Policy

This policy explains what CompleteVue collects, how we use it, and the rights available to customers and their users. It is maintained by CompleteVue and is not legal advice.

Last updated: July 2026. Applies to completevue.com, the CompleteVue platform, and related services (the “Services”).

1. Introduction

CompleteVue, LLC (“CompleteVue”, “we”, “us”) provides an operating platform for commercial construction teams covering procurement, proposal comparison, award, buyout, mobilization, field execution, and financial traceability. This policy describes how we handle personal information across our marketing website and the authenticated platform.

Access to the platform is invitation-only and organization-scoped. Each organization (the “Customer”) controls who is invited into its workspace and what project information is uploaded.

2. Definitions

  • Customer — the organization that holds a subscription or design partner agreement with CompleteVue.
  • Authorized User — an individual invited into a Customer workspace.
  • Customer Data — project records, proposals, schedules, budgets, documents, photos, and other content uploaded to or generated within a Customer workspace.
  • Personal Information — information that identifies or can reasonably be linked to an individual.
  • Public Information — information submitted through public marketing surfaces, such as contact and demo-request forms.
  • Service Provider / Processor — CompleteVue’s role when processing Customer Data on a Customer’s behalf and instruction.

3. Information we collect

We collect information in three distinct categories:

  • Account information — name, work email, organization, job title, role, and workspace membership.
  • Public information — details you provide in contact, demo request, or design partner forms, including company, project context, and message content.
  • Customer Data — uploaded and generated project content within an authenticated workspace.

3.1 Information customers upload

Customers upload proposals, scopes of work, schedules of values, contracts, insurance certificates, W-9s, schedules, daily reports, inspections, site photos, and related records. Customer Data may incidentally contain personal information about subcontractor personnel and other project participants. CompleteVue processes this content solely as a service provider, on the Customer’s behalf, to deliver the Services.

3.2 Cookies and analytics

We use strictly necessary cookies and local storage for authentication, session continuity, and workspace preferences. We use limited analytics cookies on our public marketing website to understand which pages and calls to action are effective. We do not sell personal information and do not use cross-context behavioral advertising.

3.3 Google Analytics usage

Our public marketing website uses Google Analytics 4 (measurement ID G-4QGCJYFECK) to record page views and a limited set of interaction events such as navigation clicks, demo requests, and form submissions. Google Analytics may set cookies and process truncated IP address and device information as an independent data processor. Analytics is not used to profile individuals, and we do not deploy Google Analytics inside authenticated Customer workspaces. You may opt out using the Google Analytics opt-out browser add-on or by blocking analytics cookies in your browser.

3.4 Device information

We collect browser type and version, operating system, screen size, language, referring URL, and approximate location derived from IP address. This supports compatibility, fraud prevention, and performance work.

3.5 Authentication information

We process email addresses, hashed credentials, session tokens, sign-in timestamps, and IP addresses associated with authentication attempts. When a user signs in with Google, we receive basic profile information from that provider. We never receive or store your Google password.

3.6 Usage data

We record in-platform actions in an audit log — record creation, edits, awards, approvals, exports, and access events — to provide traceability, security monitoring, and support. Audit entries are Customer Data and are visible to authorized administrators of the relevant workspace.

3.7 Communication preferences

We record your preferences for product, onboarding, and marketing communications. Transactional and security messages are required for account operation and cannot be disabled while an account remains active.

4. How information is used

  • Provide, secure, and operate the Services.
  • Authenticate users and enforce organization and project isolation.
  • Deliver support, onboarding, and design partner programs.
  • Generate insights, recommendations, and reporting for the Customer that owns the data.
  • Monitor reliability, detect abuse, and investigate security incidents.
  • Communicate service, billing, and product information.
  • Meet legal, tax, and contractual obligations.

We do not use Customer Data to train general-purpose machine learning models for other customers, and we do not sell or rent personal information.

5. Legal basis for processing

Where the EU/UK GDPR applies, we rely on: performance of a contract (delivering the Services); legitimate interests (security, service improvement, and business communications with commercial contacts); consent (analytics cookies and optional marketing, where required); and legal obligation (records, tax, and lawful requests). For Customer Data, the Customer is the controller and CompleteVue is the processor.

6. Third-party service providers

We engage subprocessors to provide infrastructure, database and storage hosting, authentication, transactional email delivery, error monitoring, marketing analytics, and customer relationship management. Subprocessors are bound by written agreements limiting their use of data to providing services to CompleteVue. A current subprocessor list is available to Customers on request, and enterprise Customers may request advance notice of material changes under their agreement.

7. Data retention

Customer Data is retained for the life of the Customer account and for any export window defined in the applicable order form. Audit and security logs are retained for a rolling operational period to support investigation and traceability. Marketing and lead records are retained until the contact opts out or the record is no longer commercially relevant. Backups follow a rotation schedule, so deleted content may persist in backup media for a limited period before being overwritten.

8. International transfers

CompleteVue is operated from the United States, and data may be processed in the United States or other jurisdictions where our subprocessors operate. Where required for transfers from the EEA, UK, or Switzerland, we rely on Standard Contractual Clauses or another lawful transfer mechanism, together with technical and organizational safeguards.

9. Customer rights

Authorized Users should direct access, correction, and deletion requests concerning Customer Data to their own organization’s administrator, who controls that workspace. CompleteVue will assist Customers in responding to such requests as described in the applicable agreement. For personal information we control directly — such as marketing contacts and account records — contact us using the details below.

9.1 California privacy rights

California residents may request disclosure of the categories and specific pieces of personal information collected, request deletion or correction, and request information about disclosures to service providers. We do not sell personal information or share it for cross-context behavioral advertising. We will not discriminate against you for exercising these rights. Authorized agents may submit requests with proof of authority.

9.2 GDPR rights

Where GDPR applies, individuals may request access, rectification, erasure, restriction, portability, and may object to processing based on legitimate interests. Where processing relies on consent, consent may be withdrawn at any time without affecting prior processing. Individuals may also lodge a complaint with their supervisory authority.

10. Security practices

The platform enforces organization- and project-level isolation at the database layer, role-based permissions, encrypted transport, encryption at rest with our infrastructure providers, invitation-only account creation, audit logging of privileged actions, rate limiting on sensitive endpoints, and documented backup and recovery procedures. Internal access to Customer Data is limited to personnel who need it for support or operations and is logged. No system can be guaranteed absolutely secure; Customers are responsible for credential hygiene and for promptly removing users who leave their organization.

11. Children’s privacy

The Services are business software intended for use by adults in a professional capacity and are not directed to children under 16. We do not knowingly collect personal information from children. If we learn that we have, we will delete it.

12. Data ownership

Customers retain all ownership of their Customer Data. CompleteVue claims no ownership of project data uploaded to or generated within a Customer workspace and processes it only to provide the Services, meet legal obligations, or follow the Customer’s documented instructions. We may use aggregated, de-identified statistics that cannot reasonably identify a Customer, individual, or project to operate and improve the Services.

13. Changes to this policy

We may update this policy as the Services evolve. Material changes will be reflected in the “Last updated” date and, for active Customers, communicated through the platform or by email. Continued use after the effective date constitutes acceptance.

14. Contact information

Privacy questions and security reports: contact your CompleteVue representative or the CompleteVue team. Privacy, security, and postal contact information is available upon request.