Privacy Policy

Last Updated: December 14, 2025

Introduction

SitelyPO ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our cloud-based purchase order management platform ("Service"). Please read this Privacy Policy carefully to understand our practices regarding your data.

By using the Service, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our policies and practices, you may not use the Service.

Information We Collect

Account Information

When you create an account, we collect:

  • Name and email address
  • Phone number (optional)
  • Company name and details
  • Company address and contact information
  • Password (stored in encrypted form)

Business Data

When you use the Service, we collect and store:

  • Purchase orders and related information
  • Project details and specifications
  • Vendor information and contact details
  • Cost codes and item catalogs
  • User roles and permissions
  • Approval workflows and status
  • Files, photos, and documents you upload
  • Audit logs of system activities

Payment Information

When you subscribe to a paid plan, payment processing is handled by Stripe, a third-party payment processor. We do not store your full credit card information. Stripe collects and processes payment information in accordance with their privacy policy. We may receive and store limited payment information such as billing address and last four digits of payment methods for account management purposes.

Usage Data

We automatically collect information about how you use the Service, including:

  • Log data (IP address, browser type, access times)
  • Device information (for mobile app users)
  • Feature usage and interaction patterns
  • Error reports and performance data

Third-Party Integration Data

If you connect your QuickBooks Online account, we collect and store OAuth tokens and related data necessary to provide the integration. We may access your QuickBooks data (items, vendors, purchase orders) as authorized by you through the OAuth consent process.

Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our Service and hold certain information. Cookies are files with a small amount of data that may include an anonymous unique identifier. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent.

How We Use Information

We use the information we collect for the following purposes:

Service Provision

  • To provide, maintain, and improve the Service
  • To process and manage your purchase orders and business data
  • To enable integrations with third-party services
  • To authenticate users and manage access
  • To send notifications and updates related to your account

Communication

  • To send you service-related emails (notifications, updates, alerts)
  • To respond to your inquiries and provide customer support
  • To send marketing communications (with your consent, which you can opt out of)
  • To notify you about changes to our Service or policies

Analytics and Improvement

  • To analyze usage patterns and improve Service functionality
  • To develop new features and services
  • To monitor and prevent technical issues
  • To conduct research and analytics

Security and Fraud Prevention

  • To detect, prevent, and address security threats
  • To verify user identity and prevent fraud
  • To enforce our terms of service
  • To protect the rights and safety of users and third parties

Legal Compliance

  • To comply with applicable laws, regulations, and legal processes
  • To respond to government requests
  • To enforce our legal rights

Information Sharing and Disclosure

We do not sell your personal information. We may share your information in the following circumstances:

Service Providers

We may share your information with third-party service providers who perform services on our behalf, including:

  • Cloud Infrastructure: Amazon Web Services (AWS) for hosting and data storage
  • Payment Processing: Stripe for payment processing
  • Email Services: AWS SES or SendGrid for sending emails
  • Analytics: Service providers for usage analytics and error tracking
  • Integration Partners: QuickBooks (Intuit) for integration services

These service providers are contractually obligated to protect your information and use it only for the purposes we specify.

Legal Requirements

We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court or government agency).

Business Transfers

If SitelyPO is involved in a merger, acquisition, or asset sale, your information may be transferred as part of that transaction. We will notify you of any such change in ownership or control of your information.

With Your Consent

We may share your information with third parties when you explicitly consent to such sharing, such as when you authorize integration with a third-party service.

Data Security

We implement appropriate technical and organizational security measures to protect your information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption of data in transit using TLS/SSL
  • Encryption of sensitive data at rest
  • Secure password storage using industry-standard hashing algorithms
  • Regular security assessments and updates
  • Access controls and authentication mechanisms
  • Network security and firewalls
  • Regular backups and disaster recovery procedures

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.

Data Retention

We retain your information for as long as necessary to provide the Service and fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.

When you delete your account, we will delete or anonymize your personal information within a reasonable timeframe, subject to applicable legal requirements. Some information may be retained for legal, accounting, or security purposes even after account deletion.

Business data (purchase orders, projects, etc.) associated with your account will be deleted according to your account settings and our data retention policies. You may export your data before account deletion.

Your Rights and Choices

You have certain rights regarding your personal information:

Access

You can access and review your personal information through your account settings or by contacting us.

Correction

You can update or correct your personal information at any time through your account settings.

Deletion

You can request deletion of your account and associated data by contacting us or using account deletion features in your settings.

Data Portability

You can export your data in various formats (CSV, Excel, PDF) through the Service's export features.

Opt-Out of Marketing

You can opt out of receiving marketing communications by using the unsubscribe link in emails or adjusting your communication preferences in account settings.

Cookie Preferences

You can control cookies through your browser settings. However, disabling cookies may limit your ability to use certain features of the Service.

California Privacy Rights

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to Know: You can request information about the categories and specific pieces of personal information we collect, use, and disclose.
  • Right to Delete: You can request deletion of your personal information, subject to certain exceptions.
  • Right to Opt-Out: You can opt out of the sale of personal information (we do not sell personal information).
  • Non-Discrimination: We will not discriminate against you for exercising your privacy rights.

To exercise your California privacy rights, please contact us using the information provided in the "Contact Us" section below.

Children's Privacy

The Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. If we become aware that we have collected personal information from a child under 13, we will take steps to delete such information.

Third-Party Services

The Service integrates with third-party services, including QuickBooks Online, Stripe, and others. These third-party services have their own privacy policies governing the collection and use of your information. We encourage you to review the privacy policies of these third parties.

When you authorize integration with a third-party service, you are subject to that service's terms and privacy policy. We are not responsible for the privacy practices of third-party services.

International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from those in your country. By using the Service, you consent to the transfer of your information to these countries.

We take appropriate safeguards to ensure that your information receives an adequate level of protection in the countries where we process it.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. We may also notify you via email or through the Service of significant changes.

You are advised to review this Privacy Policy periodically for any changes. Your continued use of the Service after changes become effective constitutes acceptance of the updated Privacy Policy.

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:

SitelyPO
Email: info@sitelypo.com
Website: https://sitelypo.com

For data access, deletion, or other privacy-related requests, please contact us at the email address above. We will respond to your request within a reasonable timeframe and in accordance with applicable law.

This Privacy Policy is effective as of the Last Updated date above. By using SitelyPO, you acknowledge that you have read and understood this Privacy Policy.