Privacy Policy

Effective July 2, 2026 · Last updated July 2, 2026

This policy explains what MarginHawk collects, why, who it is shared with, and the choices you have. It is written for the United States. We keep it honest and matched to what the app actually does.

1. Who we are

MarginHawk is operated by an independent solo founder based in Pennsylvania, United States. You can reach us any time at contact@marginhawk.net.

2. What we collect

Account data. Your email address (required to sign in), and — if you choose to add them — your name and company name.

Business data you enter. Jobs, quoted prices, target margins, due dates, costs (amounts, tax, category, vendor, dates, notes), workers and optional hourly rates, and inventory items. This may include customer or job names and addresses if you type them in.

Receipt data. If you scan a receipt, we store the photo and the text extracted from it (vendor, amounts, dates, line items). See Receipt Scanning & AI Notice. Receipt photos can accidentally contain sensitive details like a payment card number — please avoid uploading anything you don’t need in the image.

Sign-in and security data. Authentication records and a session token stored in a browser cookie, plus basic server logs and error/diagnostic information needed to run and protect the service.

We do not use advertising trackers, third-party analytics, tracking pixels, or device fingerprinting.

3. Why we use it

We use your information only to:

  • Provide the service — show your jobs, calculate profit and margin, store your costs, and sign you in;
  • Read receipt photos you choose to scan and turn them into cost entries;
  • Keep the service secure, fix bugs, and answer your support requests;
  • Meet legal obligations.

We do not sell your data, and we do not use it for advertising or to train third-party AI models.

4. Who we share it with (sub-processors)

We rely on a small number of outside services to run MarginHawk. Each sees only what it needs to do its job. The current list:

  • SupabaseDatabase, sign-in/authentication, and receipt file storage. Sees: Your account details, all the business data you enter, and receipt images.
  • VercelHosts the MarginHawk website and app. Sees: Request logs and IP-level metadata needed to serve pages securely.
  • ResendSends account emails, such as your sign-in link. Sees: Your email address and the contents of those account emails.
  • Google (Gemini API)Reads the text off a receipt photo when you use receipt scanning. Sees: The receipt image you choose to scan and the text extracted from it.

The always-current list lives on the Sub-Processors page and may change as the app grows. We do not otherwise share or sell your data. We may disclose information if required by law or to protect rights and safety.

5. Receipt photos and AI

When you scan a receipt, the image is sent to Google’s Gemini API to read its text. That result is an estimate you should verify. Full detail is in the Receipt Scanning & AI Notice.

6. Cookies and local storage

We use a sign-in cookie to keep you logged in, and your browser stores a small preference (for example, remembering that you dismissed a tip). We do not use advertising or analytics cookies. Details are in the Cookie & Tracking Notice.

7. How long we keep it, and deletion

We keep your data while your account is active. You can export your jobs and costs to CSV any time from Settings. You can also delete your account yourself at any time from Settings → Delete account, which immediately removes your account and its jobs, costs, workers, inventory, and receipt images; or email us at contact@marginhawk.net and we’ll do it for you. Residual copies may persist briefly in encrypted backups before they age out. More detail is in Data, Security & Retention.

8. Security

Your data is isolated per account by Postgres row-level security, so other users cannot read or change it. Traffic is encrypted in transit (HTTPS), and data is encrypted at rest by our database provider. No system is perfectly secure; treat the service as best-effort rather than a guarantee, and keep your own copies of anything critical.

9. Your choices and state privacy rights

  • Export your data to CSV from Settings at any time.
  • Ask us to correct or delete your data by email.
  • Stop using the service whenever you like.

Depending on the U.S. state you live in, you may have additional rights — such as to access, correct, delete, or obtain a copy of your personal information — where the state’s law applies to us and its thresholds are met. To exercise any right you have, email contact@marginhawk.net and we will respond as applicable law requires. We will not discriminate against you for exercising a right.

10. Email

Today we send only service emails you need — sign-in links and account messages — through Resend, our email provider, from an @marginhawk.net address. We do not run a marketing list. If that ever changes, marketing emails will include an unsubscribe link and we will honor it.

11. Children

MarginHawk is for adults running a business and is not intended for anyone under 18, nor directed to children under 13. We do not knowingly collect information from children. If you believe a child provided us information, email contact@marginhawk.net and we will delete it.

12. United States only

MarginHawk is intended for use in the United States. We do not market or offer it outside the U.S. If we expand internationally, this policy will be reviewed and updated first.

13. Changes and contact

We may update this policy; the Effective and Last updated dates above will change. For any privacy question or request, email contact@marginhawk.net.

Questions about this document? Email contact@marginhawk.net. MarginHawk is offered in the United States only and is intended for business use by adults 18 or older. This document is written in plain English and provided in good faith; it is not legal advice to you.