Privacy Policy

Effective date: August 15, 2026

This Privacy Policy explains how TeamStruc, a product of Freedom Coast Innovations, LLC, collects, uses, and protects information. It applies alongside our Terms & Conditions. By using TeamStruc you agree to this Policy.

1. Information We Collect

Account information. Your name, email address, and password (stored as a secure hash by our authentication provider), plus optional profile details you add such as a photo, phone number, job title, timezone, or birthday.

Workspace content. The information you and your workspace put into TeamStruc: personnel records, org charts, projects, tasks, calendar events, messages, files, financial entries, travel plans, asset records, time-off requests, employment documents, and similar content. This can include personal information about workspace members — the workspace that enters it is responsible for having a lawful basis to do so.

Financial connections. If you choose to connect a bank or financial institution through Plaid, we receive account identifiers, institution information, account masks, balances, transactions, categories, and merchant details from Plaid. We never receive or store your online banking username or password — that exchange happens directly between you and Plaid.

Payment information. Paid subscriptions are processed by Stripe. We receive subscription status, plan, and billing-period details; we never receive or store full card numbers or bank credentials.

Usage and log data. Standard technical logs (such as IP address, browser type, and timestamps) and in-app activity records (which actions were taken on which records, shown to authorized workspace members as the activity log).

2. Cookies

TeamStruc uses cookies that are strictly necessary to operate — primarily to keep you signed in and remember your active workspace. We do not use advertising cookies or third-party ad trackers.

3. How We Use Information

  • To provide, operate, and secure TeamStruc, including authentication and permissions enforcement.
  • To process subscriptions and enforce plan limits.
  • To send transactional email (invitations, confirmations, password resets).
  • To respond to support inquiries and communicate important changes.
  • To monitor for abuse and to debug and improve TeamStruc.

We do not sell personal information, and we do not use your workspace content for advertising.

4. AI Features

Some features use artificial intelligence to generate or summarize content on your request. When you use them, the relevant content is sent to our AI provider (OpenAI) to fulfill that request. We only send what is needed for the feature you invoked, and we do not use your content to train our own models.

5. Financial Account Connections (Plaid)

Connecting a bank or financial institution is optional and only happens when you choose to link one through Plaid. Plaid handles the connection directly with your institution, so your banking credentials never pass through or get stored on our systems — we only receive the account and transaction data described above.

You can disconnect a linked institution at any time from within TeamStruc. Disconnecting stops all future syncing and revokes our access to that account through Plaid, but it does not automatically delete income or expense records you already reviewed and kept as part of your workspace’s financial records — those remain available for your recordkeeping unless you separately request their deletion. Connection-level data tied to the disconnected account (tokens, raw transaction payloads) is deleted on the schedule described in the section below.

6. How Information Is Shared

Within your workspace. TeamStruc is collaborative by design: content you contribute is visible to other members of your workspace according to the roles and permissions its Owner configures. Sensitive areas (such as personal employment records, pay placeholders, and private documents) are restricted to the individual and explicitly authorized roles.

Service providers. We share information with processors who help us run TeamStruc: Supabase (hosting, database, authentication, file storage), Plaid (bank and financial account connections), Stripe (payments), OpenAI (AI features), and Google Maps (location features). Each processes data only to provide their service to us.

Legal. We may disclose information if required by law, to protect the rights and safety of users or the public, or in connection with a merger, acquisition, or sale of assets (in which case this Policy continues to apply to the transferred data).

7. Data Retention and Deletion

We keep information only as long as reasonably necessary to provide TeamStruc, comply with legal and tax obligations, and support the recordkeeping you’ve asked us to maintain. In general:

  • Plaid link/exchange tokensare never written to storage or logs — they’re used only to complete the connection and then discarded.
  • Plaid access tokens and connection credentials are kept only while a financial connection is active, and deleted no later than 30 days after you disconnect an institution or close the workspace.
  • Raw Plaid data (unprocessed API responses and webhook payloads used to import your transactions) is purged within 30 days once successfully imported, or within 90 days for diagnostic data tied to a failed import.
  • Pending or rejected imported transactionsyou haven’t acted on are removed within 90 days of import, or 30 days after you dismiss them, whichever comes first.
  • Approved financial records(expenses, income, and other entries you’ve reviewed and kept) are retained with your workspace, generally up to seven years from the record date, consistent with standard tax and accounting recordkeeping — disconnecting a bank account does not delete these.
  • Server-generated exports and temporary files are deleted automatically within 24 hours unless you save them to an authorized TeamStruc location.
  • Operational logs are kept up to 90 days; security and audit logs are generally kept about a year, longer if tied to an active investigation or legal hold.
  • Backupsage out automatically on our hosting provider’s configured schedule and are not used to circumvent a deletion request.

Workspace Owners can permanently delete their workspace from within TeamStruc. The workspace and its content become immediately inaccessible to everyone the moment you do this, and the underlying data — including backups — is fully purged from our production systems within 30 days, except for anything we’re required to retain under a legal hold or documented legal obligation. Workspace data can also be exported (JSON/CSV) from Settings at any time before deletion. To delete your individual account, or to request deletion of specific personal information, contact us at the address below.

8. Security

Data is encrypted in transit using TLS 1.2 or later (TLS 1.3 where supported) and encrypted at rest, stored with reputable cloud infrastructure, and protected by row-level security and server-side permission checks so workspaces cannot read each other’s data. Multi-factor authentication is required for our own administrative and privileged access to production systems, and we do not store passwords, API keys, or other credentials in source code, logs, or unencrypted files. We evaluate the security practices of service providers before relying on them to process your data. No system is perfectly secure — protect your credentials, use a strong unique password, and notify us immediately of any suspected unauthorized access.

If a security incident affects your personal information, we will investigate, take steps to contain and remediate it, and notify affected individuals as required by applicable law. For Florida residents, this generally means notice as expeditiously as practicable and without unreasonable delay, and no later than 30 days after we determine a breach occurred, consistent with Florida Statutes section 501.171.

9. Identity and Access Controls

Internal administrative access to TeamStruc identity and access management systems, infrastructure, and customer data is limited to authorized employees and developers of Freedom Coast Innovations, LLC who require access for legitimate operational, security, support, or development purposes. Access is granted according to role and business need, restricted under least-privilege principles, and may be logged, monitored, or reviewed. TeamStruc personnel are not permitted to access customer information for personal purposes or without an authorized business reason.

User passwords are handled by our authentication provider and stored only as secure cryptographic hashes; TeamStruc employees and developers cannot view your password in readable form. Login information, authentication tokens, administrative credentials, and other sensitive access data are protected using strong technical and organizational safeguards designed to prevent unauthorized access, disclosure, alteration, or misuse.

10. Your Rights

Depending on where you live, you may have rights to access, correct, export, restrict, or delete your personal information. You can exercise many of these directly in TeamStruc (profile settings, data export, workspace deletion). For anything else, email us and we will respond within a reasonable timeframe consistent with applicable law. Note that for information inside an employer’s workspace, we generally act as a processor — your workspace Owner controls that data, and we may direct requests to them.

11. Children

TeamStruc is not directed to children under 16, and we do not knowingly collect personal information from them. If you believe a child has provided us personal information, contact us and we will delete it.

12. International Users

TeamStruc is operated from the United States, and information is processed in the United States and in the regions used by our service providers. By using TeamStruc you understand your information will be processed in these locations, which may have different data-protection laws than your jurisdiction.

13. Changes to This Policy

We may update this Policy from time to time. Material changes will be communicated through TeamStruc or by email, and the effective date above will be updated. Continued use after changes take effect constitutes acceptance of the revised Policy.

14. Contact

Privacy questions and requests: marketing@freedomcoastinnovations.com
Freedom Coast Innovations, LLC