Lyteworkgo · Legal
Privacy Policy
How Lyteworkgo collects, uses, and shares personal information.
Effective August 26, 2026
1. Scope and roles
This Privacy Policy explains how Gonzware LLC, the operator of Lyteworkgo ("we", "us", or "our"), handles personal information across our websites, staff application, field-technician application, customer portal, booking pages, public quote and tracking pages, support, and related services (collectively, the "Service"). It does not govern a third party's own sites or services.
For account, subscription, website, security, and support information used for our own business purposes, Gonzware LLC generally acts as controller or business. For information a business customer uploads or generates about its personnel, clients, and jobs ("Customer Data"), the customer generally acts as controller or business and we act as its processor or service provider, under the commitments in Section 6 of the Terms of Service .
If you are an employee, contractor, or client of one of our customers, that customer controls most Customer Data about you. Its privacy notice and choices apply, and privacy requests about that data should normally be directed to it first.
2. Information we collect
Depending on how the Service is used, we collect the following categories:
- Account and business information, such as names, work contact details, company profile, role, preferences, and support communications
- Subscription and transaction information, such as plan, billing status, Stripe customer identifiers on our platform billing account, invoices, payment status, refunds, and limited payment-method details supplied by Stripe; we do not store full card numbers
- Identifiers for Customer's own connected Stripe merchant account, used so Customer can collect from its clients; those client funds settle to Customer's Stripe account, not ours
- Customer and workflow content, such as client and personnel records, addresses and geocodes, requests, schedules, quotes, line items, terms, signatures, jobs, invoices, payment records, notes, messages, photos, files, checklists, and portal content
- Precise and approximate location, including geocoded service addresses and, when enabled and permitted on a device, a field technician's precise location while en route to or performing an active job, and location evidence associated with supported workflows
- Device, usage, and security information, such as IP address, browser or device type, user agent, device fingerprint, session and verification events, audit records, pages or features used, timestamps, crash or diagnostic data, and approximate location derived from IP
- Integration information received from or sent to services Customer connects, including Stripe, QuickBooks Online, mapping providers, authentication, storage, and email or SMS providers
- Website, lead, booking, and portal information submitted through public forms, including contact details, requested services, service address, message content, and related metadata
3. Sources of information
We receive information directly from account holders, Authorized Users, website visitors, booking users, and customer-portal users; from our business customers and their administrators; automatically from devices and use of the Service; and from connected providers and integrations.
A customer may provide information about other people, including its employees, contractors, and clients. The customer is responsible for providing required notices and having a lawful basis to do so.
4. How we use information
We use personal information to:
- Create, administer, authenticate, and secure accounts and workspaces
- Provide field-service workflows, customer portals, booking, signatures, technician location and tracking, file storage, messaging, invoices, payments, and integrations
- Process subscriptions, connected-payment operations, refunds, and related records
- Deliver email and SMS selected by a customer, security codes, receipts, and operational notices
- Provide support; troubleshoot, monitor, analyze, and improve performance and usability
- Detect fraud, abuse, security incidents, and violations of our Terms
- Create aggregated or de-identified insights that do not reasonably identify a person
- Comply with law, enforce agreements, establish or defend claims, and protect people, rights, and the Service
5. Email, SMS, and customer communications
We send account, billing, security, and service messages that are part of operating the Service. If an account holder provides a phone number, we may use it for requested verification and operational notices. Message and data rates may apply.
Businesses use the Service to communicate with their own clients. The business, not Gonzware LLC, selects recipients and content and is responsible for consent, sender identification, and opt-outs under laws such as the TCPA and CAN-SPAM; we transmit those communications on the business's behalf. We and our delivery providers process message content, recipient details, delivery events, and replies or opt-out signals to deliver and protect those communications.
To opt out of Lyteworkgo marketing email, use the unsubscribe method in the message or contact support@gonzware.com. Security, billing, and other transactional messages may continue while an account remains active.
Mobile opt-in data and consent are never sold or shared with third parties. Where a recipient consents to receive text messages, we record when and how consent was given and the exact disclosure shown or read at that time, together with any later STOP, START, or HELP request, so that we can honor the choice and demonstrate that we did. That record is used only to operate and evidence the messaging program. It is shared with the messaging provider that transmits the messages and with the business whose service the recipient is receiving, and with no one else — it is never sold, rented, or disclosed to third parties for their own marketing.
See our SMS Terms for the messaging program itself, including message types, frequency, and how to stop or get help.
6. Location and tracking links
When a customer enables dispatch features and a field technician grants device permission, the mobile app may send precise location while the technician is en route to a job — after they tap "On my way" — and during an active in-progress job. Authorized workspace users may view recent technician location. A customer's client with a valid, time-limited tracking link may see a recent location only during the supported in-progress tracking window. Device permission can be changed in operating-system settings, but disabling it may prevent location features from working.
Where an applicable law treats precise geolocation as sensitive personal information, we treat the technician-location data described here as sensitive. We collect it only while the feature is enabled, with device permission, and only while the technician is en route to or performing an active job; we use it only to provide the dispatch, mapping, and tracking features described in this Policy — never for advertising or profiling — and we do not sell it or share it for cross-context behavioral advertising. It is retained as described in Section 9.
Customers are responsible for giving their workforce and clients any notices and choices required by law, including workforce location-tracking notices required in some states. Tracking links may reveal job destination and limited status information to anyone who possesses the link, so recipients should not share them.
7. How we disclose information
We disclose personal information as needed to the following categories of recipients.
When Customer connects Stripe, we exchange the information Stripe needs to operate Customer's own merchant account (for example client names, emails, invoice amounts, and refund instructions) and receive payment status back. Stripe's privacy policy governs Stripe's processing. Client card payments settle to Customer's Stripe account. We are not affiliated with Stripe.
Our principal service providers (subprocessors) currently are: Supabase (database, authentication, and file storage), Amazon Web Services (cloud hosting, and email delivery through Amazon SES), Twilio (text messaging), Stripe (payments), Cloudflare (website hosting, networking, and bot protection), Mapbox (maps and geocoding), and — only when a customer enables the integration — Intuit (QuickBooks Online). We update this list in this Policy when our providers change.
- The business customer that controls a workspace and its Authorized Users, according to configured roles and features
- A customer's clients or recipients through messages, portals, quotes, invoices, receipts, booking confirmations, and time-limited tracking links
- The service providers named above, and providers in the same categories that support hosting, databases, authentication, storage, payments, email and SMS, mapping, security, support, and other operations
- Third-party integrations a customer enables, including Stripe and QuickBooks Online, under that provider's terms
- Government authorities, courts, advisers, or other parties when required by law or reasonably necessary to protect rights, safety, and the Service
- A buyer, investor, lender, or successor in a merger, financing, reorganization, bankruptcy, or sale of all or part of the business, subject to appropriate protections
8. Sale, targeted advertising, and browser signals
We do not sell personal information for money, and we do not share personal information for cross-context behavioral advertising as those terms are defined by applicable U.S. state privacy laws. We do not currently use third-party advertising cookies on the marketing site.
Because we do not use personal information for those activities, the Service does not currently offer a sale/share opt-out. We do not otherwise respond to legacy browser "Do Not Track" signals, which are not consistently defined. If our practices change, we will update this Policy and honor legally required browser-based preference signals.
Separately and unconditionally: we do not sell or share mobile opt-in data or consent with third parties. Mobile numbers collected for text messaging, and the consent records associated with them, are not disclosed for any third party's own marketing, are not included in any sale or rental of data, and are not transferred to affiliates or partners for their independent use. This commitment stands regardless of how the terms above are defined under any particular law, and it does not change if our advertising practices change.
9. Retention
We retain personal information only as long as reasonably necessary for the purposes described here, including while a workspace is active and afterward for account recovery, security, backups, dispute resolution, tax and accounting, enforcement, and legal compliance. Retention depends on the type of record, customer instructions, sensitivity, operational backup cycles, and legal requirements.
Customers control deletion of many workspace records through available features while a subscription is active. After a workspace is terminated, we honor written export requests for 30 days, as described in Section 16 of the Terms of Service . After that period, Customer Data is deleted or de-identified in the ordinary course, including expiring from routine backups, unless law, a legal hold, security, fraud prevention, or an unresolved dispute requires longer retention. We do not promise retrieval of Customer Data after that window.
10. Security
We use reasonable administrative, technical, and organizational measures designed to protect personal information. No transmission, storage, or system is completely secure. Account holders must safeguard credentials, use supported authentication controls, secure their devices, and configure workspace access appropriately.
11. Your choices and privacy rights
Depending on applicable law, you may have rights to know about, access, correct, delete, or obtain a copy of personal information; to opt out of certain processing; to restrict or object; or to appeal a denied request. Submit a request using support@gonzware.com. We may verify identity and authority before acting. Authorized agents may submit requests where law permits, subject to verification.
We will not discriminate against you for exercising a privacy right. A request may be limited or denied where an exception applies, such as when we must retain information for security, legal compliance, or a transaction.
If your information is Customer Data controlled by one of our business customers, contact that customer first. We will assist the customer as required by law and our agreement.
12. Children
The Service is designed for businesses and is not directed to children under 13 or offered for their independent use. We do not knowingly create accounts for children. A business customer may submit Customer Data about individuals, including minors, when providing its services; that customer is responsible for the collection and use of that data. Contact us if you believe a child provided personal information directly to us without appropriate authorization.
13. International processing
We and our providers may process information in the United States and other countries with different data-protection laws. Where required, we use an appropriate legal mechanism for cross-border transfers.
14. Changes to this Policy
We may update this Privacy Policy to reflect changes in the Service, our practices, or law. We will post the new effective date and provide reasonable notice of material changes when practicable.
15. Contact
Questions, requests, and legal notices: Gonzware LLC · support@gonzware.com · https://qa-get.lyteworkgo.com