Legal
Privacy Policy
Last updated: June 2025
1. Who We Are
ForgeCost is a material cost calculator and quote generator for tradespeople, operated as an independent product. When we say "ForgeCost", "we", "us", or "our" in this policy, we mean the team behind forge-cost.vercel.app.
2. What Data We Collect
We collect only what we need to run the service:
- Account data: Email address, password (hashed by Supabase — we never see it), and optionally: full name and trade/profession.
- Usage data: Quote count, saved templates, and quote history — stored so you can access them across devices.
- Payment data: Handled entirely by Dodo Payments. We receive only a customer ID and subscription status — never your card details.
- Browser data: Anonymous download count stored in localStorage for non-signed-in users. Cleared when you clear your browser data.
3. How We Use Your Data
- ✓To provide the app — saving templates, history, and your Pro subscription status.
- ✓To send transactional emails (account confirmation, password reset). We do not send marketing emails.
- ✓To send PDF quotes on your behalf when you use the Email Quote feature (Pro).
- ✓To verify your subscription status with our payment processor.
4. PDF Generation
PDFs are generated entirely in your browser using client-side JavaScript (pdfmake). Your material data, prices, and job details are never sent to our servers during PDF generation. They exist only on your device and in the downloaded file.
5. Data Storage & Security
Your account data is stored in Supabase, which provides enterprise-grade security with Row Level Security enabled — meaning your data is only accessible to your own account. Passwords are hashed using bcrypt. We never store plaintext passwords.
6. Third-Party Services
- Supabase: Authentication and database hosting. Privacy policy at supabase.com/privacy.
- Dodo Payments: Payment processing. We receive only a subscription token, never card data.
- Resend: Transactional email delivery (quote emails, password resets). Privacy policy at resend.com/legal/privacy-policy.
- Vercel: Application hosting. Privacy policy at vercel.com/legal/privacy-policy.
7. Data Retention
Your data is kept as long as your account is active. You can request deletion at any time by emailing us. On deletion we remove your profile, templates, and quote history. Payment records are retained by Dodo Payments per their legal obligations.
8. Your Rights
You have the right to access, correct, export, or delete your data. To exercise any of these rights, contact us at the email below. We will respond within 30 days.
9. Cookies
We do not use tracking cookies or advertising cookies. Supabase uses a secure HTTP-only cookie to maintain your login session. That is the only cookie we use.
10. Children
ForgeCost is intended for working tradespeople and is not directed at children under 13. We do not knowingly collect data from children.
11. Changes to This Policy
We may update this policy as the product evolves. Significant changes will be communicated via the app or email. Continued use after changes constitutes acceptance.
12. Contact
Questions about this policy? Email us at privacy@mathonymics.in