QuoteAhead
Legal

QuoteAhead Privacy Policy

Last updated: September 9, 2026 · Policy version 2026-09-08

This policy covers the QuoteAhead website, mobile application, and related marketplace and contractor business services operated by Taskmaster, LLC.

Scope and contact

Taskmaster, LLC (“QuoteAhead,” “we,” or “us”) currently serves the Lehigh Valley in Pennsylvania, United States. This policy explains how we handle information when you visit quoteahead.com, use our app, create an account or job request, use contractor business features, subscribe to updates, or contact us. It also covers related service communications. Contact [email protected] with privacy questions or requests.

Other businesses, app stores, and websites you choose to visit have their own privacy practices. This policy describes our practices and the service providers we use; it does not govern independent services.

Information you provide and service records

  • Accounts and businesses: account identifiers, names, email addresses, phone numbers, selected roles, business and trade details, verification documents, and addresses you submit.
  • Marketplace and CRM activity: job requests, visibility choices, bids and revisions, award proposals and acceptances, client and contact details, messages, quotes, invoices, schedules, and uploaded files. We maintain transaction records to provide the services and calculate business activity totals.
  • Payments and subscriptions: selected products, payment and subscription identifiers, amounts, currency, payment status, and billing details needed to administer purchases. Payment providers handle payment card entry and processing.
  • Website forms and email: information you submit in contact, newsletter, and copyright forms; your email permission and confirmation status; and communications with our team. Newsletter enrollment is separate from creating a QuoteAhead account.
  • Referrals: referral or partner codes you enter or open, and operational records needed to apply the referral program. Opening a campaign link does not establish that a later installation came from that campaign.

We use these records to deliver requested services, connect owners and contractors, maintain accounts, verify businesses, manage payments, provide support, prevent abuse, and meet applicable obligations. Public and invite-only visibility controls determine which marketplace participants can access your contributions. Recipients may retain information you share with them.

Device permissions and reliability

Features that use device location, photographs, files, contacts, microphone, or notifications depend on the feature you select and relevant device permissions. You can manage those permissions in device settings. An address you enter for a job or client is service information; it is not included in general usage analytics.

Our infrastructure receives technical connection information such as IP addresses, request timing, and browser or app information when you access the services. We use operational logs, security checks, and Sentry error monitoring to maintain reliability. Error reports can include account identifiers, technical diagnostics, and request context. These service records are distinct from optional product analytics; turning optional analytics off does not turn off necessary account, billing, security, or reliability processing.

Cookies and similar technologies

Essential cookies remember your privacy choices and support features you request. Optional analytics and marketing technologies operate only when you allow the relevant category. Our website usage analytics keeps its event queue in memory rather than a persistent analytics cookie. Advertising integrations may set their own cookies when enabled with your permission. You can accept or reject optional categories in the cookie notice, or manage them separately using Cookie preferences in the footer.

Optional usage analytics

When optional analytics is enabled for the service and you allow it, we use PostHog to understand website navigation, app screens and feature intent, newsletter confirmations, and completed marketplace and subscription milestones. Events use random browser or installation identifiers, or your account identifier when signed in. Business, request, and bid identifiers remain separate so revisions and actions by different people do not inflate company totals.

Our event contract permits event names, versions, occurrence times, environment and surface labels, normalized page or screen names, store platform and button placement, selected role or trade categories where applicable, and relevant business identifiers. We exclude names, email addresses, telephone numbers, exact addresses and coordinates, message content, project descriptions, credentials, and arbitrary URL queries or fragments from general analytics. Optional session replay and automatic form or tap recording are disabled in this configuration.

On the website, usage analytics permission also allows permitted campaign tags, referral or partner codes, the referring website domain, and the time and method of observation. In the app, optional campaign evidence requires the separate marketing measurement choice. These help us assess Google, Meta, partner, printed-material, QR, and community campaigns when used. First observed acquisition and later campaign touches are kept separate. Unmatched sources remain unknown; we do not use device fingerprinting to bridge an app installation.

Website events pass through our server, which checks current preferences and filters properties before forwarding them. Direct app requests necessarily disclose network connection metadata to the receiving service even when IP-based location enrichment and device identifiers are excluded from event properties. Anonymous website activity is not automatically linked to an app account.

Marketing measurement

Marketing measurement has a separate choice. If we enable the Meta Pixel and you allow marketing measurement, Meta receives website visit or explicitly configured conversion signals and may receive cookies, IP address, browser information, and page URLs according to its technology and your Meta settings. These signals may be used to measure advertising and relate activity to Meta accounts. No Google or Meta paid campaigns are running as of this policy version.

We do not enable an additional mobile advertising-attribution provider under this release configuration. Before introducing a provider or new tracking behavior, we will update the relevant notice and obtain any permission required for that behavior. A device tracking permission does not replace your choices within QuoteAhead.

Providers and sharing

Providers process information needed for their respective functions. The service inventory includes Supabase for account and data infrastructure; Mailjet for requested emails and newsletter management; Sentry for app reliability; Stripe for supported web payments and billing; RevenueCat and the Apple or Google app stores for mobile subscriptions; and mapping or location services used by requested address features. PostHog and Meta receive the optional information described above only when their integrations and your relevant choices permit collection.

We also disclose information to the marketplace participants you choose to interact with, to service providers supporting our operations, when necessary to comply with applicable law or protect rights and security, and in connection with a business transfer subject to applicable protections. We do not send contact lists, messages, or project descriptions to general product analytics. Advertising-related sharing, when enabled, is governed by your separate marketing choice.

Your choices

  • Website: visit Cookie preferences, also linked in the footer, to allow or reject optional analytics and marketing separately. Both start off before a choice. This preference applies to this browser.
  • App: open Settings → Privacy (Privacy & Security in the marketplace). Analytics switches save when changed; you do not need to answer a prompt during sign-in or registration. Signed-in choices are synchronized with your account before optional authenticated analytics is sent. A local withdrawal applies immediately on that device; server synchronization resumes when connectivity is available.
  • Withdrawal: stops new optional collection and suppresses pending events when the server receives the updated choice. It does not erase data already delivered. Contact us to request deletion.
  • Newsletter: use the unsubscribe link in marketing emails or contact us. Email subscription permission is independent of optional usage and advertising choices.
  • Device and browser controls: you can manage app permissions and clear browser storage. Clearing storage can remove saved preferences and identifiers, so a later visit may ask again.

On the website, we treat Global Privacy Control and Do Not Track signals as a request to keep optional analytics and marketing off. Essential operations and your requested services continue.

Accepting the terms or EULA, creating an account, or continuing to use QuoteAhead does not by itself grant optional tracking permission. You can use the core services with optional analytics and marketing off.

Retention, access, correction, and deletion

We retain service records for the purposes described here, including account administration, transaction history, security, legal obligations, and resolving disputes. Retention depends on the record and provider configuration. We review provider retention settings before enabling new analytics collection.

Website privacy choices expire after 180 days. Allowed browser campaign evidence is retained for up to 90 days. The website newsletter reconciliation ledger encrypts the email needed to recover a partially completed enrollment; that temporary copy is cleared on confirmation or suppression and is scheduled for removal within 24 hours. Newsletter analytics ledger entries are scheduled for removal after 90 days. Mailjet subscription records and delivery preferences are separate from that temporary ledger.

You can review or update account information in the app and request account deletion using the available account controls. You may also request access, correction, or deletion by emailing [email protected]. We may need to verify your request and identify the relevant account or browser reference. We will address requests as required by applicable law and explain records that must be retained. Copies in backups or held by other recipients may follow separate retention schedules.

Processing locations and security

We operate in the United States. Our providers may process or store information in the United States or other locations supported by their services. Provider locations and any required transfer arrangements are reviewed when configuring the service. We use access controls, encrypted connections, and other measures intended to protect information, but no system can guarantee absolute security. Keep account credentials confidential.

Age and applicable privacy rights

QuoteAhead is intended for adults age 18 and older. We do not knowingly collect personal information from children under 18. Contact us if you believe a child has provided information. Privacy rights vary by location and applicable law; contact us to exercise rights that apply to your information.

Changes to this policy

We will post the updated version and effective date when this policy changes. For material changes in how we handle personal information, we will notify existing users by email and/or a notice on our website, consistent with the prior policy. We will request additional permissions where needed before the changed collection begins.