BUILDORA

Privacy Policy

Effective date: 19 September 2026 · Last updated: 19 September 2026

This Privacy Policy explains how AIVA Solutions (Private) Limited, a company registered in Zimbabwe ("we", "us"), collects, uses, shares, and protects information through Buildora, our construction management platform that lets a construction or building business ("Customer", "you", when we mean the business using the platform) manage clients, projects, sites, quotes, invoices, expenses, and staff time tracking in one place.

This policy covers two groups of people: Customers (and their staff) who sign up for and use Buildora directly, and the Customer's own clients — third parties whose contact and project details a Customer stores in Buildora as part of running their business. Where the two are treated differently, we say so explicitly.

On this page

  1. 1. Who this applies to
  2. 2. Information we collect
  3. 2.5 Location data (time tracking)
  4. 3. How we use information
  5. 4. Who we share information with
  6. 5. Other AIVA Solutions products (e.g. ININI Automate)
  7. 6. How we protect information
  8. 7. Data retention
  9. 8. Your rights and choices
  10. 8.1 Requesting data deletion
  11. 9. International data transfers
  12. 10. Children's privacy
  13. 11. Changes to this policy
  14. 12. Contact us

1. Who this applies to

Buildora is a business-to-business platform: a Customer (a construction or building business) creates a workspace, invites their own staff, and uses Buildora to manage their clients, projects, work sites, quotations, invoices, expenses, and staff time tracking. We are a data processor acting on the Customer's instructions with respect to the business records (including their own clients' details) a Customer stores in the platform, and a data controller with respect to a Customer's own account, workspace, and billing information.

If your contact details or project information have been entered into Buildora by a construction business you're dealing with, that business is the Customer, and your relationship — including what they've recorded about you — is governed by their own agreement with you, in addition to this policy.

2. Information we collect

2.1 Account and workspace information (Customers and their staff)

2.2 Client records (entered by a Customer about their own clients)

When a Customer adds a client to Buildora, we store what they enter: typically a name, company name, email, phone number, and address. This is the Customer's own client data — we process it on their instructions, we don't collect it directly from the client.

2.3 Projects, sites, quotes, invoices, and expenses

2.4 Time tracking (Customer's staff)

When a staff member clocks in and out of a work site, we record the timestamp, the site and project, a work description if provided, and — see the next section — location coordinates if the device provides them.

2.5 Technical and log information

2.5 Location data (time tracking)

Buildora's clock-in feature can record the GPS coordinates of the device used to clock in, when the device provides them, so a Customer can confirm staff were at the correct work site. This is enabled at the Customer's discretion for their own staff. We treat location data as sensitive: it is stored only against the relevant time-tracking record, used only for the purpose above, and is not shared with anyone outside Section 4 below.

3. How we use information

4. Who we share information with

We share information only as needed to operate the platform, with the following categories of service providers (sub-processors), each acting under its own terms:

ProviderPurposeWhat they see
SupabaseDatabase hosting and authenticationAccount, workspace, client, project, and financial records
CloudflareApplication hosting and infrastructureRequest traffic and logs
PayNowPayment processing (EcoCash, OneMoney, local cards)Billing and payment details (we do not receive full card numbers)

We do not sell personal information. We disclose information beyond the above only if required by law, to protect the rights or safety of AIVA Solutions, our Customers, or others, or with your consent.

5. Other AIVA Solutions products (e.g. ININI Automate)

Buildora and ININI Automate (our WhatsApp/ Messenger/Instagram AI-agent platform) are both operated by AIVA Solutions (Private) Limited and share the same underlying workspace. If a Customer also uses ININI Automate and specifically enables its "business agent" feature, that feature can read and create records in the same client, project, quotation, invoice, and expense data described in Section 2, on that Customer's own instructions, the same way a staff member using Buildora directly would. It does not expose a Customer's Buildora data to any other Customer, and a Customer who doesn't use ININI Automate is entirely unaffected by this section.

6. How we protect information

7. Data retention

We retain a Customer's records for as long as their workspace is active, so their team can access historical clients, projects, financial documents, and time-tracking data. If a Customer closes their account, we delete or anonymize their workspace's data within a reasonable period thereafter, except where we are required to retain records (for example, billing records) for longer under applicable law.

8. Your rights and choices

If you are a Customer or a staff member of one, you can access, correct, export, or delete your account information by contacting us at the address below, or through your workspace's own settings where available.

If you are a Customer's own client (your details were entered into Buildora by a construction business you're working with), that business is the first point of contact for requests about your data (access, correction, deletion), the same as it would be for any records they keep about you on paper or in any other system. If you're unable to reach the business directly, you may contact us and we will route your request to the relevant Customer or, where we are able to, act on it directly.

Depending on where you live, you may have additional rights under applicable data protection law (for example, Zimbabwe's Cyber and Data Protection Act), including the right to lodge a complaint with your local data protection authority.

8.1 Requesting data deletion

To request deletion of your personal data, email privacy@buildorasuite.com with your name and enough detail to identify the relevant account or record. We will delete or anonymize your information within 30 days and confirm by email once complete.

If your details were entered by a construction business using Buildora (rather than being a Customer yourself), please also contact that business directly — they control the record and can request deletion on your behalf.

9. International data transfers

Our service providers operate infrastructure in multiple countries. By using Buildora, you understand that information may be processed and stored outside your own country, including in jurisdictions where our providers (Section 4) operate infrastructure.

10. Children's privacy

Buildora is intended for business use and is not directed at children. We do not knowingly collect account information from anyone under the age of 18. If you believe a child has provided us with personal information through a Customer account, please contact us so we can address it.

11. Changes to this policy

We may update this policy from time to time. If we make material changes, we will update the "Last updated" date above and, where appropriate, notify Customers directly. Continued use of the platform after a change takes effect constitutes acceptance of the revised policy.

12. Contact us

Questions about this policy, or requests relating to your data, can be sent to privacy@buildorasuite.com.