Privacy Policy
RoofRep ("RoofRep," "we," "us") is a customer-relationship management (CRM) application for roofing sales teams, published by Botteligence. This policy explains what information RoofRep collects, how we use it, and the choices you have. Questions? Email support@roofrep.app.
1. Who this policy covers
RoofRep is a tool used by roofing companies and their sales representatives ("reps"). Data in RoofRep belongs to the roofing company (the "organization"). Reps use the app under their organization's account. This policy applies to the RoofRep iOS app and this website.
2. Information we collect
Account information
- Your name, email address, and the organization you belong to, used to sign you in and grant access to your company's data.
Customer & job data you enter
- Customer contacts — names, phone numbers, email and mailing addresses, and job details your organization manages.
- Activities — notes, calls, texts, emails, and events you log against a customer, including call outcomes (e.g., reached / voicemail / no answer) and deal values.
- Pipeline & financial data — the stage of each job and, where used, estimates, invoices, payments, and balances.
- Media capture (photos, video, voice memos attached to jobs) is planned for a future release and will be covered here when it ships.
Technical information
- Basic device and diagnostic information needed to operate the app securely (for example, authentication tokens and crash/usage diagnostics). We do not use this to build advertising profiles.
3. How we use information
- To provide the CRM: show your daily plan, customer cards, activity history, and pipeline.
- To send communications you initiate (calls, texts, emails) and to log them after they are sent.
- To generate AI features — per-customer synopsis, next-best-action recommendations, and drafted messages — using Google's Gemini models, processed server-side.
- To keep the service secure, reliable, and to support you.
4. Google user data & the Limited Use requirements
RoofRep offers an optional Gmail integration so a rep can connect their own Google account and send customer email from inside RoofRep, with the message recorded on the customer's activity history. Connecting Google is always the rep's choice and can be disconnected at any time.
When you connect Google, RoofRep requests only the access it needs:
gmail.send— to send email you compose, from your own account, so it lands in your real Sent folder and threads correctly. RoofRep does not read your inbox with this permission.gmail.readonly(planned, not yet active) — a future release will, with your consent, read replies from your customers so they appear on the customer's activity history. This capability is not enabled until it completes Google's security review; this policy will be updated before it ships.
Google account access tokens are held only on RoofRep's servers using secured secret storage; the RoofRep app on your device never stores your Google refresh token. When you disconnect Google, RoofRep revokes and deletes those tokens.
5. How information is shared
- We do not sell your data.
- Within your organization, customer and activity data is shared among that organization's authorized users — that is the point of a shared CRM.
- Service providers who process data on our behalf under contract: Google Firebase (authentication, database, hosting, and cloud functions) and Google's Gemini AI service. Where you enable them, integrations you connect (such as Gmail, Google Calendar, or QuickBooks) process the relevant data to provide that feature.
- We may disclose information if required by law or to protect the safety, rights, or security of users and the service.
6. Data storage, retention & deletion
Data is stored on Google Firebase infrastructure and protected in transit and at rest. Your organization's data is retained for as long as the organization maintains its account. You may request deletion of your account data, and organizations may request deletion of their data, by contacting support@roofrep.app. Disconnecting an integration removes the associated access tokens.
7. Security
RoofRep uses industry-standard safeguards: encrypted transport, authenticated and permission-scoped access to data, server-side handling of all credentials and integration tokens, and App Check enforcement on the app's server functions. No system is perfectly secure, but we work to protect your information and to surface failures honestly rather than hide them.
8. Children
RoofRep is a business tool and is not directed to children under 13, who should not use it.
9. Changes to this policy
We may update this policy as RoofRep evolves. Material changes will be reflected by a new version number and effective date on this page, and — where a change affects a connected Google feature — before that change takes effect.
10. Contact
RoofRep · Botteligence
Privacy questions: support@roofrep.app