Punchglass Privacy Policy
Effective date: July 19, 2026
Punchglass is an app that helps contractors and their clients track home renovation projects together — punch lists, change orders, messages, photos, invoices, and closeout reports, all in one place. This policy explains what information Punchglass collects, how it's used, and the choices you have.
Information we collect
Punchglass collects only what's needed to run the app. We don't use advertising or analytics tracking software of any kind.
- Account information. When you create an account, we collect your name, email address, password, and whether you're signing up as a contractor or a client. Your password is handled directly by our authentication provider (Firebase Authentication) — we never see or store it ourselves.
- Project information. Project names, property addresses, punch list items, change orders, invoices, and messages exchanged between a contractor and their client on a project.
- Photos and signatures. Photos you choose to attach to a project or punch list item (via your camera or photo library), and any signature you draw to sign a closeout report.
- Push notification token. A device token used to deliver push notifications (like new messages or status updates) to your phone. This is managed by Firebase Cloud Messaging.
- Address lookup. When you type a property address while creating a project, address suggestions are provided by Apple's MapKit service directly on your device — Punchglass does not send your search text to its own servers for this feature, and doesn't access your location for any other purpose.
How we use your information
- To operate the core features of the app — punch lists, change orders, messaging, invoices, and photo history between a contractor and their client on a shared project.
- To generate and deliver closeout reports (a PDF summary of a completed project) when a contractor closes out a project, including emailing a copy to the client.
- To send push notifications about activity relevant to you, like a new message or an item awaiting your confirmation.
- To maintain the security of your account and the app.
We do not sell your information, and we do not share it with third parties for their own advertising or marketing purposes.
Who we share information with
Punchglass is built on the following service providers, who process data on our behalf and are contractually and technically restricted from using it for their own purposes:
- Google Firebase (Authentication, Firestore database, Cloud Storage, Cloud Messaging, Cloud Functions) — hosts and stores all account and project data described above.
- SendGrid (Twilio) — delivers the closeout report email to a client when a contractor closes out a project.
Within a project, a contractor and their connected client(s) can see the project information relevant to that project — that's the core purpose of the app. A client cannot see another client's projects, and a contractor's clients cannot see each other's data.
Data retention and deletion
We keep your information for as long as your account is active. You can permanently delete your account at any time from Settings > Delete account inside the app.
- If you delete a contractor account, every project you own — including its punch lists, change orders, messages, and photos — is permanently deleted for both you and any connected clients.
- If you delete a client account, you are removed from every project you've joined. The contractor's copy of each project is not affected.
Account deletion is immediate and permanent, and cannot be undone.
Children's privacy
Punchglass is a business tool for contractors and homeowners and is not directed at, or knowingly used by, children under 13.
Security
Data is stored and transmitted using our infrastructure providers' standard encryption in transit and at rest. Access to project data is restricted to the contractor and clients connected to that specific project.
Changes to this policy
If this policy changes, we'll update the effective date above. Continued use of Punchglass after a change means you accept the updated policy.
Contact us
Questions about this policy or your data? Email us at punchglassadmin@gmail.com.
See also our Terms of Use and Support page.
This policy is intended to accurately describe Punchglass's current data practices. It is not a substitute for legal advice — before publishing this publicly or submitting it to the App Store, it's worth a quick review by a lawyer, particularly if you plan to operate in regions with specific requirements like the EU (GDPR) or California (CCPA).