C-01Legal
Privacy Policy
What QuoteKit stores, why, and who else sees it.
Last updated: September 30, 2026
QuoteKit is an estimate tool for contractors, operated by Agent Creative (“we”, “us”). This policy explains what the service stores, why, and who else sees it. It covers two kinds of people: contractors, who have an account and build quotes, and their customers, who open a quote through a link.
1. What we store
If you are a contractor
- Your account: your email address, your name if you give one, and a password (stored only as a salted hash, never in readable form).
- Your business profile: business name, logo, license number, phone, email, address, brand color, and your default tax rate, markup and terms.
- Your quotes: the customer’s name, email, phone and job address as you typed them, the line items with your prices, costs and markup, discounts, tax, deposit, notes and terms, and the quote’s status and activity log.
- Your price book, if your plan includes one.
- Your plan and usage: which plan you are on, how many quotes you have saved this month, and, if you pay, the customer and subscription identifiers Stripe gives us. We never see or store your card number.
- Messages you send through the contact form: your name, email address and the message.
If you are a customer opening a quote
- That you opened it: the date, time and IP address of the visit, so the contractor can see the quote was viewed. A reload within ten minutes is not counted again.
- What you did with it: if you approve, the name you type, the signature you draw, the options you ticked, the amount approved, the date and time, your IP address and your browser’s user-agent string. If you request changes or decline, the message you write, the date and time and your IP address.
The IP address and time are kept with an approval because they are part of the record of who agreed to what. The contractor who sent you the quote can see them.
The page a customer opens never contains the contractor’s costs, markup, profit, or activity log. Those are removed on the server before the page is built.
2. Cookies and browser storage
- Sign-in cookie. When a contractor signs in, WordPress sets a login cookie so they stay signed in. It is needed for the account to work.
- Browser storage. The quote you are working on, and a business profile you fill in before you have an account, are kept in your browser’s local storage so they are not lost if you close the tab before saving.
QuoteKit sets no advertising or analytics cookies and loads no third-party trackers. Fonts and scripts are served from this site.
3. How the information is used
- To run the service: saving quotes, showing them to the customers they were sent to, recording approvals, and showing contractors their dashboard.
- To send email that the service exists to send: a quote emailed to a customer at the contractor’s request, and notices to the contractor when a customer opens, approves, asks for changes to, or declines a quote.
- To take payment for paid plans and keep the right plan on the right account.
- To answer messages sent through the contact form.
- To keep the service secure, for example by limiting repeated sign-up or form attempts from one IP address.
We do not sell personal information, and we do not use the contents of your quotes for advertising.
4. Who else receives it
- Stripe processes payments for paid plans. When you check out you give your card details to Stripe directly, under Stripe’s own privacy policy. Stripe tells us whether the payment succeeded and which plan it was for.
- The email and hosting providers this site uses to send mail and keep the service online handle data on our behalf in order to do that.
- The other party to a quote. A customer sees the contractor’s business details on the quote. A contractor sees the customer’s approval record.
- Anyone with the link. A quote’s link is long and random, but anyone who has it can open that quote. Contractors should send it only to the customer it is for.
We may disclose information if the law requires it.
5. How long it is kept
Quotes, signed records and business details are kept for as long as the contractor’s account exists, because contractors rely on them as job records. A contractor can delete any quote from the dashboard. When an account is closed, its quotes, profile and price book are deleted. Contact-form messages are kept for as long as needed to deal with them.
6. Your choices
- Contractors can correct their profile and quotes at any time in the app, delete individual quotes, and ask us to close the account and delete its data.
- Customers who want a copy of, or a correction to, information held about them on a quote should ask the contractor who sent it, since the quote is that contractor’s record. You can also contact us and we will pass the request on or act on it where the law requires us to.
Depending on where you live, you may have additional rights under local privacy law, such as the right to access or delete your personal information. To use them, contact us through the Contact page.
7. Security
Passwords are hashed. Customer links use long random tokens. The server works out every approved total itself and does not trust amounts sent from a browser. No system is perfectly secure, so please use a strong, unique password for your account.
8. Children
QuoteKit is a business tool and is not directed at children under 13. We do not knowingly collect information from them.
9. Changes to this policy
If this policy changes in a way that matters, we will update the date at the top and post the new version on this page.
10. Contact
QuoteKit is operated by Agent Creative, a web studio in Connecticut, United States. For any privacy question or request, use the Contact page.