Privacy Policy

Last updated: June 2026 (v1.1)

This Privacy Policy describes how LiteWork ("LiteWork", "we", "us") collects, uses, shares, and protects information when you use the LiteWork website, applications, dashboards, messaging features, and related services (collectively, the "Platform"). It is written in plain language and reflects how the Platform actually works today.

1. Information we collect

Account and profile information

When you create an account we collect identifiers and account metadata such as your name, email address, and account type (Worker, Glazing Company, or Installation Sub). Authentication credentials are processed by our authentication provider and LiteWork does not store plaintext passwords. When you build your profile we collect the fields you provide — for example role type, regions served, years of experience, union status, certifications, company name, contact details, service areas, and similar information appropriate to your account type.

Résumés, COIs, and uploaded documents

Workers may upload a résumé and supporting materials. Installation Subs may upload certificate-of-insurance ("COI") information and related documents. These files are stored in private object-storage buckets (currently named resumes and coi) that are not publicly readable. Access is mediated by the Platform so that only counterparties intended by the workflow (for example, a Glazing Company reviewing an applicant, or a Glazing Company reviewing a sub response to its own scope) can retrieve them through short-lived signed links generated on request.

Portfolio images, logos, and other showcase media

Portfolio images and company/brand logos that you upload to promote your profile (currently stored in buckets named portfolios and logos) are treated as public showcase content: they are served over public URLs so that your profile can be rendered without authentication. Do not upload anything to portfolio or logo fields that you would not want a member of the public to see.

Posts, applications, responses, and messages

When you submit a job post, subcontract scope, application, response, cover note, or message through the Platform, we store its content together with basic metadata (timestamps, sender, recipient, related post or thread, and status changes).

Notifications and transactional email

We generate in-app notifications and may send transactional emails tied to Platform activity (for example, "you have a new applicant," "your response status changed," or billing receipts). These are part of operating the service and are not marketing emails.

Subscription and billing information

Payments are processed by our third-party payment processor. We do not store full payment card numbers. We receive limited billing metadata necessary to operate your subscription, such as subscription status, plan, billing period, customer identifier, and processor event IDs.

Usage, device, and log data

When you use the Platform, we and our infrastructure providers automatically collect technical data such as IP address, user-agent, pages viewed, server timing, errors, and security events. This is used to operate, secure, monitor, debug, and improve the Platform and to prevent abuse.

2. How we use information

  • To create, operate, and secure your account and profile.
  • To let other users discover and contact you consistent with your account type, settings, subscription status, and the Platform's gating rules.
  • To enable posts, applications, responses, document sharing, messaging, and other workflow features.
  • To process payments and manage subscriptions.
  • To send transactional notifications, service updates, and billing communications.
  • To monitor, debug, secure, and improve the Platform, including preventing fraud, abuse, scraping, and policy circumvention.
  • To comply with legal obligations and enforce our Terms.

3. How we share information

With other users

Your profile and the posts, applications, responses, and documents you submit are shared with the counterparties for whom the workflow is designed — for example, Glazing Companies see applicants and résumés for their own job posts, Installation Subs see scopes they can respond to, and Glazing Companies see responses (including COIs) to their own scopes. Certain profile fields are visible to logged-in users browsing the Platform consistent with your account type and subscription state.

With service providers

We rely on third parties to run the Platform, including a managed hosting and database provider, our payment processor, an email-delivery provider, and other advisors, auditors, insurers, and service providers where reasonably necessary. These providers process information on our behalf under their own security and confidentiality terms. We do not sell personal information.

For legal reasons

We may disclose information if we believe in good faith that doing so is required by law, legal process, or to protect the rights, property, or safety of LiteWork, our users, or others, or to investigate suspected fraud or abuse.

Business transfers

If LiteWork is involved in a merger, acquisition, financing, or sale of assets, information may be transferred as part of that transaction subject to standard confidentiality protections.

4. Retention and deletion

We retain account, profile, and content data for as long as your account is active and as needed to provide the Platform, meet legal obligations, resolve disputes, and enforce our Terms. Records associated with billing, security events, and legally-required logs may be retained longer. You can request deletion of your account by contacting us; deletion requests may be limited where retention is reasonably necessary for security, fraud prevention, legal compliance, dispute resolution, enforcement of Terms, or backup integrity.

5. Security

We maintain administrative, technical, and physical safeguards we consider reasonable in light of the information we maintain. These include authenticated database access, row-level security rules, encrypted transport (HTTPS/TLS), and access-mediated document delivery. No system is perfectly secure, and we do not guarantee absolute security of any data transmitted to or stored on the Platform. You are responsible for protecting your credentials and for handling any personal information you receive through the Platform in compliance with applicable law.

6. Your choices

You can view and update most profile information from inside your dashboard. You can cancel your subscription from your account at any time. For account deletion, data access, or other privacy requests, contact us at support@litework.site. Where applicable law (such as the New York SHIELD Act or other state privacy laws) gives you additional rights regarding your personal information, we will honor those rights as required.

7. Email and SMS communications (CAN-SPAM / TCPA)

By default, LiteWork only sends transactional messages tied to Platform activity — for example account verification, password recovery, applicant or response notifications, billing receipts, subscription lifecycle notices, and security alerts. These are part of operating the service and are not marketing communications. If we later send commercial or marketing email, we will comply with the CAN-SPAM Act, including honest headers and subject lines, a clear disclosure that the message is an advertisement, our physical postal address, and a working unsubscribe mechanism honored promptly. If we later send marketing SMS or place marketing autodialed / prerecorded voice calls, we will comply with the Telephone Consumer Protection Act (TCPA) and applicable FCC rules, including obtaining any required prior express written consent and honoring opt-out requests (such as replying STOP). Consent to receive marketing messages is never a condition of using the Platform.

8. California residents (CCPA / CPRA)

LiteWork does not "sell" personal information as that term is defined by the California Consumer Privacy Act ("CCPA") as amended by the California Privacy Rights Act ("CPRA"), and does not "share" personal information for cross-context behavioral advertising. Subject to verification and applicable exceptions, California residents may request to know the categories and specific pieces of personal information we have collected about them, request deletion of their personal information, request correction of inaccurate personal information, and be free from unlawful discrimination for exercising these rights. To submit a request, email us at support@litework.site with the subject line "California Privacy Request" and enough information to verify your identity and match you to an account. An authorized agent may submit a request on your behalf with written proof of authorization.

9. Children

The Platform is not intended for individuals under 18 years of age, and we do not knowingly collect information from them.

10. International users

The Platform is operated for the New York City metropolitan market. If you access it from outside the United States, you understand that your information will be processed in the United States under U.S. law.

11. Changes to this Policy

We may update this Privacy Policy from time to time. Material changes will be communicated through the Platform or by email. If you continue to use the Platform after the updated Policy takes effect, you are bound by the revised terms.

12. Contact

Privacy questions and requests, including California Privacy Requests, can be sent to support@litework.site.