WEBSITE & IPHONE / IPAD APP IN DEVELOPMENT
Privacy
Updated September 13, 2026
What this policy covers
This page describes the Cotiza website and the iPhone and iPad app in development. Cotiza is a service-estimating and job-record tool. It does not operate a customer payment service, advertising network or automatic cloud record store.
Website and calculator
The calculator processes amounts in your browser. It does not request customer names or addresses, upload calculator inputs, or save a history between visits. This version has no advertising cookies, signup forms or third-party analytics scripts. Your browser and any files you choose to copy or download remain under your control.
Website hosting
The public site is prepared for Cloudflare Pages. When serving pages, Cloudflare may process IP addresses, requested page paths and browser information to deliver content and protect the service. Its privacy policy describes those practices. No job or calculator values are intentionally sent as page URLs. This site does not use Cloudflare Web Analytics or advertising scripts.
Local app records
Quotes, itemized descriptions, customer details, work addresses, terms, private time/cost plans and actual-job records are saved on your device. They are not uploaded to Cotiza, RevenueCat or PostHog, and they do not sync with this website. There is no Cotiza account or automatic cloud sync. Apple device backups may include app data according to your device settings.
Sharing, copying and backups
You choose when to copy quote text, export a PDF, share a document or export/import a backup. Customer quotes include the scope, selling prices and any customer-facing terms you entered; private plans, actual costs and amounts received are excluded. Your chosen business heading/contact can appear on a PDF. Backups include private job data and are different from customer documents. Files or messages you send are handled by the apps and recipients you select.
Deleting or moving records
You can delete saved job records in the app. The local allowance ledger keeps consumed identifiers so deletion does not reset free slots. Deleting the app removes its local data; exported documents, backups and messages remain wherever you saved or sent them. A backup import merges missing records and does not delete existing ones. Keep private backups before changing devices or reinstalling.
Apple purchases and RevenueCat reporting
Apple handles subscriptions, payment and restoration. The app includes RevenueCat for purchase validation and subscription reporting. RevenueCat receives subscription history, a random app user identifier, Apple’s vendor device identifier (IDFV), and technical app/store context. The app does not supply job records, customer names, email addresses, phone numbers or quote values. No Cotiza account is required. The advertising identifier (IDFA) is not collected, and optional diagnostics are disabled. The vendor device identifier is different from an advertising identifier.
Subscription-service connection information
RevenueCat also records when the customer record was created and last connected, and a country from the transaction or network IP. Its documentation says the raw IP is dropped after deriving the country. These subscription-service records are separate from the disconnected PostHog usage analytics.
Subscription records and privacy requests
Deleting the app does not cancel an Apple subscription or automatically erase purchase records held by Apple or RevenueCat. Those records are managed separately from local job records and may remain needed for subscription operation or applicable legal obligations. Contact support below to request access to or deletion of data connected with your use of Cotiza. We may need a transaction reference to locate the relevant record; your reply address and correspondence may then be associated with that purchase history to handle the request. Do not send passwords, payment-card details or customer job backups. We cannot promise removal of records that Apple or a provider must retain.
Usage analytics in this release
PostHog usage analytics is not connected in this version. Changing the analytics toggle does not send events. If connected in a later update, collection will require consent and an updated disclosure. Development and TestFlight testing does not send these usage events.
If optional analytics is connected later
The prepared analytics integration is limited to broad interactions, such as opening a screen, calculating a quote, saving a job or opening subscription options. Its events would use a random installation identifier and categories such as language, screen, Premium state, selected plan and normalized error type. They would exclude customer text, work addresses, job/template IDs, prices, cost figures, amounts received, files, receipts, transaction IDs and advertising identifiers. It has no session recording, automatic capture of every tap, person profile or link to RevenueCat identity. PostHog would receive the network IP at transport; event geolocation enrichment is disabled.
Controls if analytics is connected later
The prepared opt-out control stops future capture and erases the device analytics queue and identifier, subject to successful local cleanup. A request already selected or in flight may still complete. Opt-out does not delete events already received by PostHog. Re-enabling, reinstalling or restoring device data can create a new observation identity. This describes a possible later connection; this release does not send these events.
Changes to this page
This version has no advertising. If the app adds a data flow, this explanation and the App Store privacy disclosures must be updated before it is offered. Review the current page before choosing optional analytics or sending a file.
Cloudflare · Privacy Policy · Apple · Privacy Policy · RevenueCat · Privacy Policy · PostHog · Privacy Policy
Support and privacy questions
Email norwoodatlas@gmail.com. Include the app version and the steps that caused the problem. Describe the issue without passwords, purchase receipts or complete backups containing customer details. Your reply address and the message you choose to send are used to respond to your request.