Picord Privacy Policy
Picord is an inspection-management service intended for authorized project personnel. This policy explains the information processed when the Picord web and mobile applications are used.
Information we process
Picord processes account identifiers, assigned projects and inspections, checklist results, photographs, timestamps, upload status, and related audit records. When a mobile user grants location permission for a camera capture, the capture may include GPS coordinates and accuracy. Imported photographs do not add mobile GPS data.
Camera, photos, and location
Camera and photo-library access are used only when a user chooses to capture, import, or save inspection evidence. Location is requested while the app is in use and is attached to a capture only after permission is granted. Picord does not request background location access.
How information is used
Information is used to authenticate users, assign and complete inspections, preserve evidence, generate reports, synchronize photographs, provide notifications, and maintain security and operational audit trails.
Google Drive access
Picord requests the Google Drive drive.file permission. This allows the service to create and access only the specific Drive files used with Picord. Picord does not request access to browse all files in a user's Drive.
Sharing and storage
Inspection data is available only to authorized users and administrators within the relevant project or tenant. Data may be processed by infrastructure, Google Drive storage, and Firebase Analytics solely to operate, secure, and improve Picord. Analytics events are limited to feature and screen usage and are designed not to include names, email addresses, project identifiers, file names, free-form notes, photo content, or GPS coordinates. We do not sell personal information, show advertising, or use data for cross-app tracking.
Retention and deletion
Records are retained according to project, contractual, security, and legal requirements. Picord accounts are provisioned by an organization rather than created by users in the mobile app. A user or authorized administrator may request account deactivation and deletion of associated personal data where applicable, subject to inspection-report locks, audit requirements, legal holds, and backup retention. See the account and data deletion page.
Security
Picord applies authenticated access, role and assignment checks, tenant isolation, audit logging, and encrypted network transport. No system can guarantee absolute security, so suspected misuse should be reported promptly.
Contact
Questions or requests about this policy can be sent to support@cocoa-d.net.