Legal
Privacy Policy
This policy explains how StructHelm collects, uses, stores, discloses, and protects personal data when you use our websites, applications, APIs, and related features.
1. Introduction
StructHelm ("StructHelm", "we", "our", "us") provides software products and related services for property and facility management (the "Service").
By using the Service, you acknowledge that your personal data may be processed as described in this Privacy Policy.
2. Scope
This Privacy Policy applies to:
- StructHelm web applications and dashboards
- User account registration, authentication, and profile management
- Subscription and payment-related processing
- Support, communications, and security operations
This Privacy Policy does not apply to:
- Third-party services that are not controlled by StructHelm
- Customer-managed systems outside the StructHelm platform
3. Categories of Data We Collect
We may collect and process the following categories of data:
3.1 Account and Identity Data
- Full name
- Email address
- Phone number (if provided)
- Authentication identifiers and account status data
- Role/profile information (for example: owner, manager, tenant, handyman, administrator)
3.2 Property and Operational Data
- Property records, hierarchy data, and occupancy-related records
- Maintenance tickets, issue reports, assignments, and status updates
- Notifications, workflow events, and activity logs
- Documents and files uploaded to the platform
3.3 Payment and Subscription Data
- Plan and subscription metadata
- Transaction references and status information
- Billing lifecycle events
- Limited payment authorization metadata provided by payment processors
StructHelm does not intentionally store full payment card numbers or CVV values in application databases.
3.4 Technical and Usage Data
- Device and browser information
- IP address and network-level metadata
- Application interaction events
- Error logs, performance traces, and security audit logs
3.5 Support and Communication Data
- Messages sent to support
- Account verification and transactional communication records
4. How We Collect Data
We collect data through:
- Information you provide directly (registration, profile updates, support requests, uploads)
- Automated collection through system usage and security monitoring
- Integrations and service providers used to operate the Service
5. Purposes of Processing
We process personal data to:
- Provide and maintain the Service
- Authenticate users and secure account access
- Enable role-based product functionality
- Process subscriptions, billing, and payment verification events
- Send transactional notifications and account communications
- Detect, prevent, and investigate fraud, abuse, and unauthorized activity
- Troubleshoot issues and improve service reliability, quality, and user experience
- Comply with legal and regulatory obligations
6. Legal Bases for Processing
Depending on your location and applicable law, StructHelm may rely on one or more of the following legal bases:
- Contractual necessity: processing required to provide the Service you requested
- Legitimate interests: processing needed for platform security, operations, and product improvement
- Legal obligation: processing required to comply with applicable law
- Consent: where legally required (for example, optional communications or certain tracking controls)
Where consent is required, you may withdraw consent at any time. Withdrawal does not affect prior lawful processing.
7. Cookies and Similar Technologies
StructHelm may use cookies or similar technologies for:
- Session management and security
- Authentication continuity
- Product functionality and preferences
- Reliability and performance monitoring
Where required by law, we will request consent before placing non-essential cookies.
8. Data Sharing and Disclosure
We may share personal data with:
- Service providers and processors supporting hosting, infrastructure, messaging, analytics, and support
- Payment processors for subscription billing, payment verification, and fraud prevention
- Authentication providers for federated sign-in functionality
- Professional advisors (legal, audit, compliance) where necessary
- Regulators and law enforcement where required by law or valid legal process
- Corporate transaction participants in connection with mergers, financing, acquisition, or asset transfer, subject to confidentiality obligations
We do not sell personal data in exchange for monetary consideration.
9. International Data Transfers
Your data may be processed in jurisdictions outside your country of residence. Where required, we implement appropriate safeguards for cross-border transfers.
10. Data Retention
We retain personal data only for as long as necessary for:
- The purposes described in this Privacy Policy
- Contractual obligations
- Legal, tax, accounting, and regulatory requirements
- Security, dispute resolution, and enforcement needs
Retention periods vary by data type and legal context. We may anonymize data for analytics and service improvement where practical.
11. Security Measures
StructHelm implements technical and organizational safeguards intended to protect personal data, including controls for:
- Access management and role-based permissions
- Authentication and session security controls
- Transport security and data integrity checks
- Monitoring, logging, and incident response
No system is completely secure. We cannot guarantee absolute security.
12. Your Privacy Rights
Subject to applicable law, you may have the right to:
- Request access to personal data we hold about you
- Request correction of inaccurate or incomplete data
- Request deletion of your data
- Request restriction of processing
- Object to certain processing activities
- Request portability of data in a structured format
- Withdraw consent where processing depends on consent
- Lodge a complaint with a competent data protection authority
To exercise your rights, contact us at contact@structhelm.com. We may request information to verify your identity before fulfilling a request.
13. Children’s Privacy
The Service is intended for business and operational users and is not directed to children. We do not knowingly collect personal data from children in violation of applicable law.
14. Third-Party Services
The Service may link to or integrate with third-party services. Their privacy practices are governed by their own privacy policies and terms. StructHelm is not responsible for third-party practices beyond our control.
15. Incident and Breach Response
If StructHelm identifies a personal data incident that triggers notification obligations under applicable law, we will take reasonable steps to investigate, contain, remediate, and notify affected parties and authorities as required.
16. Region-Specific Compliance
StructHelm aims to align privacy practices with applicable frameworks, including the Nigeria Data Protection Act and related regulations where applicable, and equivalent requirements in other jurisdictions where users are located.
17. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will post the updated version with a revised "Last Updated" date. Material changes may be communicated through the Service or by other appropriate means.
18. Contact Us
For privacy questions, requests, or complaints:
- Email: contact@structhelm.com
- Organization: StructHelm