Skip to content

Privacy Policy for Cleri

Last updated: August 6, 2026

Effective: August 17, 2026

1. Who we are

Cleri ("Cleri," "we," "us," or "our") operates the website https://cleri.ai and the Cleri platform, which includes our web dashboard, mobile Crew App, and conversational AI assistant ("Cleo"). We provide all-in-one field service management software designed for contractors, technicians, and service teams. Our platform helps you schedule jobs, manage crews, send estimates, invoice clients, collect payments, and communicate with customers.

Our registered address is 338 Main Street #17, Longmont, CO 80501.

For privacy-related inquiries, contact us at info@cleri.ai.

2. Scope of this policy

This Privacy Policy applies to all users of the Cleri platform, including:

  • Business users: contractors, service companies, and their employees who use Cleri to manage their operations.
  • End customers: homeowners, property managers, and other individuals whose information is entered into Cleri by a business user in connection with service delivery.

If you are an end customer, your data is managed by the business that uses Cleri. That business is the data controller, and Cleri acts as a data processor on their behalf. Please refer to that business's own privacy policy for details on how they handle your information.

3. What data we collect

We collect only the information needed to operate the platform:

Account and profile data: name, email address, phone number, company name, business address, job title or role.

Customer and jobsite data: end-customer names, addresses, phone numbers, email addresses, jobsite locations, service history, and notes entered by business users.

Employee and technician data: names, contact information, roles, schedules, and location data (when using the mobile Crew App).

Financial data: billing information, subscription details, and payment method data (processed and stored by Stripe; Cleri does not store full card numbers).

Communications data: emails sent and received through the platform via integrated email services, in-app messages, and support interactions.

Calendar data: calendar events and scheduling information accessed through integrated calendar services.

CRM and sales data: contact records, deal information, and pipeline data accessed through integrated CRM services.

Device and usage data: IP addresses, browser and device identifiers, operating system, app version, pages visited, features used, and usage analytics.

Location data: GPS coordinates and location information from mobile devices when using the Crew App (with your permission).

AI interaction data: inputs to and outputs from Cleo (our AI assistant) and other AI-powered features, including prompts, responses, and feedback.

4. How we collect data

We collect your data:

  • When you sign up, update your profile, or configure your account.
  • When you use the web dashboard, mobile Crew App, or Cleo.
  • Through cookies and analytics tools (see Section 13).
  • Through third-party integrations you authorize (see Section 7).
  • Through support interactions, surveys, or feedback submissions.
  • Automatically through server logs and usage tracking.

5. Why we use your data

Your data is used to:

  • Provide core platform services: scheduling, dispatching, estimates, invoicing, and payments.
  • Send communications on your behalf (emails, notifications) through integrated services.
  • Manage calendar events and scheduling through integrated calendar services.
  • Power AI features, including Cleo, to provide suggestions, automate tasks, and improve your workflow.
  • Process payments and manage subscriptions.
  • Provide customer support and respond to inquiries.
  • Monitor platform performance, detect issues, and prevent abuse.
  • Improve the platform based on aggregated, anonymized usage patterns.
  • Comply with legal obligations.

6. How we share data

We do not sell your personal data. We do not share your data with advertisers or data brokers.

We share data only with the categories of third parties described below, and only to the extent necessary to provide our services:

Service providers and sub-processors: companies that process data on our behalf under contractual obligations (see Section 8 for the full list).

Integration partners: when you authorize a third-party integration (such as connecting your Gmail or QuickBooks account), data flows to and from that service as necessary to provide the integration. See Section 7 for details.

Legal requirements: we may disclose data if required by law, court order, subpoena, or to protect the rights, property, or safety of Cleri, our users, or others.

Business transfers: in the event of a merger, acquisition, or sale of assets, user data may be transferred as part of the transaction. We will notify affected users before their data becomes subject to a different privacy policy.

7. Third-party integrations and authorized access

Cleri connects with third-party services to provide its features. When you authorize an integration, you grant Cleri permission to access and use data from that service on your behalf. You can revoke access to any integration at any time through your Cleri account settings or directly through the third-party service.

The following integrations may access, process, or transmit your data:

Integration Data accessed Purpose
Google Gmail API Email messages, contacts, attachments Send and receive emails on your behalf; sync communications with customer records
Google Calendar API Calendar events, availability Schedule and manage appointments; sync job schedules
Stripe Payment methods, transaction history, payout data Process payments, manage subscriptions, handle payouts to service providers
QuickBooks Financial records, invoices, customer data Sync invoicing and accounting data
HubSpot Contacts, deals, pipeline data Manage customer relationships and sales pipeline
Composio Integration metadata, authentication tokens Middleware platform that facilitates connections between Cleri and other services

We may add additional integrations over time. Each new integration that accesses user data will be reflected in updates to this policy.

Google API Services User Data Policy compliance

Cleri's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically:

  • We only use Google user data to provide and improve user-facing features within the Cleri platform.
  • We do not transfer Google user data to third parties except as necessary to provide or improve user-facing features, to comply with applicable law, or as part of a merger/acquisition/asset sale with adequate data protection.
  • We do not use Google user data for serving advertisements.
  • We do not allow humans to read Google user data unless we have your affirmative consent, it is necessary for security purposes or to comply with law, or the data is aggregated and anonymized for internal operations.
  • We do not use Google user data to develop, train, or improve artificial intelligence or machine learning models, whether generalized or personalized.

Stripe privacy

When you use Cleri's payment features, your payment data is processed by Stripe in accordance with the Stripe Privacy Policy. Cleri accesses transaction data and Connected Account information solely to provide platform services (invoicing, payment tracking, payouts). We do not use Stripe data for any purpose other than providing Cleri's payment and financial features.

8. Sub-processors

We use the following sub-processors to operate the Cleri platform. Each processes data under contractual obligations that require them to protect your data:

Sub-processor Purpose Data processed Location
Amazon Web Services (AWS) Cloud hosting and infrastructure All platform data United States
Stripe Payment processing Payment and financial data United States
Google (Workspace APIs) Email and calendar integration Email and calendar data United States
Composio Integration middleware Authentication tokens, integration metadata United States
HubSpot CRM integration Contact and deal data United States
Intuit (QuickBooks) Accounting integration Financial and invoice data United States
Google Analytics Usage analytics Anonymized usage data, IP addresses United States
Anthropic AI assistant (Cleo) User prompts and interaction data United States

We will update this list when we add or change sub-processors. If you have a Data Processing Agreement with us, we will notify you of sub-processor changes as specified in that agreement.

9. AI features and data handling

Cleri uses artificial intelligence to power features including Cleo (our conversational assistant), smart scheduling suggestions, estimate generation, and workflow automation.

What data is used: AI features process the data you provide in your prompts and interactions, along with relevant context from your Cleri account (such as job details, customer information, and service history) to generate useful responses and suggestions.

What data is NOT used: We do not use your data to train generalized AI or machine learning models. Your data is used solely to provide AI-powered features within your Cleri account. Data sent to third-party AI providers (such as Anthropic) is processed under their data processing agreements and is not retained for model training.

Google data and AI: Data received from Google APIs (Gmail, Calendar) is never sent to AI model providers for training purposes. If AI features process Google data to provide user-facing functionality (such as summarizing an email thread), this is done solely to deliver the feature you requested.

10. Data processing on behalf of business users

When a business user (contractor, service company) uses Cleri, they enter data about their end customers (homeowners, property managers). In this relationship:

  • The business user is the data controller. They determine what data to collect and how it is used.
  • Cleri is the data processor. We process end-customer data solely on behalf of and under the instructions of the business user.

If you are an end customer and want to exercise your privacy rights (access, deletion, correction), please contact the business that services you directly. They can fulfill your request through their Cleri account, or contact us for assistance.

11. Data Processing Agreement (DPA)

Cleri offers a Data Processing Agreement to business users who require one for GDPR compliance or other regulatory reasons. The DPA covers:

  • Categories of data processed and processing purposes.
  • Security measures and confidentiality obligations.
  • Sub-processor management and notification.
  • Data breach notification procedures.
  • Data deletion and return upon termination.
  • Audit rights.

To request a DPA, contact us at info@cleri.ai.

12. Your rights and controls

Depending on your location and applicable law, you may have the following rights:

Access: request a copy of the personal data we hold about you.

Correction: request that we correct inaccurate or incomplete data.

Deletion: request that we delete your personal data (subject to legal retention requirements).

Restriction: request that we restrict processing of your data in certain circumstances.

Portability: request a machine-readable copy of your data.

Objection: object to processing of your data for certain purposes.

Opt-out of sale/sharing: we do not sell personal data. If this changes, we will provide an opt-out mechanism.

Withdraw consent: where processing is based on consent, you may withdraw it at any time.

Revoke integration access: disconnect any third-party integration through your Cleri account settings.

To exercise any of these rights, contact us at info@cleri.ai. We will respond within 30 days (or the timeframe required by applicable law).

California residents (CCPA/CPRA)

California residents have additional rights under the California Consumer Privacy Act and the California Privacy Rights Act. We do not sell personal information. We do not use or disclose sensitive personal information for purposes other than those permitted by the CCPA. You may designate an authorized agent to make requests on your behalf.

European Economic Area, UK, and Switzerland (GDPR)

If you are located in the EEA, UK, or Switzerland, our legal bases for processing your data include: performance of a contract (providing the platform), legitimate interests (improving our services, preventing fraud), consent (where applicable, such as for optional analytics cookies), and compliance with legal obligations.

13. Cookies and tracking

Cleri uses cookies and similar technologies to operate the platform, remember your preferences, and analyze usage.

Essential cookies: required for the platform to function (authentication, security, session management). These cannot be disabled.

Analytics cookies: used to understand how the platform is used and to improve performance. We use Google Analytics for this purpose, which collects anonymized usage data.

Preference cookies: used to remember your settings and preferences.

We do not use advertising or retargeting cookies.

Managing cookies: you can manage non-essential cookies through the cookie preferences banner displayed when you first visit our site, or through your browser settings. Disabling non-essential cookies will not affect core platform functionality.

We do not currently respond to "Do Not Track" browser signals, as there is no industry-standard mechanism for honoring them.

14. Data retention

We retain your data:

  • Active accounts: for as long as your account is active and as needed to provide services.
  • After account closure: we delete or anonymize your data within 90 days of account closure, except where retention is required for legal, accounting, or compliance purposes.
  • Legal obligations: certain data may be retained longer to comply with tax, accounting, or other legal requirements.
  • Backups: encrypted backups may retain data for up to 30 days after deletion from production systems.

15. Security measures

We implement the following security measures to protect your data:

  • Encrypted HTTPS/TLS transmission for all data in transit.
  • Encryption at rest for stored data.
  • JWT-based authentication and Role-Based Access Control (RBAC).
  • Secure AWS-hosted infrastructure with network isolation.
  • Regular vulnerability scanning and security assessments.
  • Access controls limiting employee access to data on a need-to-know basis.
  • Third-party encryption and security from integration partners (Stripe PCI-DSS compliance, etc.).

16. International data transfers

Cleri is based in the United States, and your data is primarily stored and processed in the United States.

If you access Cleri from outside the United States (including the European Economic Area, United Kingdom, or Switzerland), your data will be transferred to the United States. We rely on the following mechanisms to ensure adequate protection:

  • Standard Contractual Clauses (SCCs) approved by the European Commission.
  • Data Processing Agreements with sub-processors that include appropriate transfer mechanisms.
  • Supplementary measures as required by applicable data protection authorities.

17. Data breach protocol

In the event of a data breach that affects your personal data, we will:

  • Promptly assess the scope, severity, and impact of the breach.
  • Notify affected users without undue delay and no later than 72 hours after becoming aware of the breach (where required by applicable law).
  • Notify relevant supervisory authorities as required by law.
  • Take immediate steps to contain and remediate the breach.
  • Document the breach and our response for compliance records.

18. Children's privacy

Cleri is not intended for use by individuals under the age of 13 (or 16 in the EEA). We do not knowingly collect data from children. If we learn that we have collected data from a child, we will delete it promptly. If you believe a child has provided us with personal data, please contact us at info@cleri.ai.

19. Changes to this policy

We may update this policy from time to time. When we make material changes, we will:

  • Update the "Last updated" date at the top of this page.
  • Notify you via email or in-app alert at least 30 days before the changes take effect.
  • For changes required by law, we will implement them as soon as legally required and notify you as soon as practicable.

Your continued use of Cleri after the effective date of changes constitutes acceptance of the updated policy.

20. Contact us

Questions, concerns, or requests related to this Privacy Policy:

  • Email: info@cleri.ai
  • Address: 338 Main Street #17, Longmont, CO 80501
  • Website: https://cleri.ai