Legal

Privacy Policy

Effective date: TBD · Last updated: TBD

Draft notice

This Privacy Policy is a working draft pending counsel review. It accurately describes what data NEXPEC collects today and how we use it, but final binding language will be posted before public launch.

1. Data we collect

Account data: email, full name, phone, company (optional), country of residence, professional title, certifications, NDT methods, work-authorisation countries, hourly rate (inspector-side only).

Operational data: jobs you post or apply to, applications you submit, reports you deliver, photos uploaded as inspection evidence, escrow status, payout records.

Audit data: every state-changing action across the platform is recorded in our internal audit trail (actor identity, timestamp, subject, delta). This is operational telemetry, not analytics; we do not sell or share audit data with third parties.

2. How we use it

To match inspectors to jobs, mediate communication between clients and inspectors via admin chat, process payments through Stripe, comply with KYC/AML obligations on the inspector side, and improve platform safety.

Strict price-visibility boundary: inspector pricing is never disclosed to clients; client budgets are never disclosed to inspectors. This isolation is enforced at the database and application layers (see our public engineering notes for technical detail).

3. Sub-processors

Supabase — database, auth, storage, edge functions. EU + US regions.

Stripe — payment processing, Connect inspector payouts, KYC verification.

Vercel — web app hosting, edge caching.

Resend — transactional email (sign-up confirmations, dispatch notifications).

4. Your rights

Access, correction, export, and erasure requests should be sent to privacy@nexpecapp.com. We respond within 30 days. Erasure may be limited by record-retention obligations for completed inspections (typically 7 years).

5. Contact

Privacy questions: privacy@nexpecapp.com. Security disclosures: security@nexpecapp.com (we follow the IETF security.txt standard).

Privacy Policy, NEXPEC