Last updated: May 15, 2026
ShiftFlow ("we", "us", "our") is a cloud-based software-as-a-service (SaaS) platform for workforce scheduling and management. This Privacy Policy explains how we collect, use, store, and protect your information when you use our Service. ShiftFlow operates as a data processor on behalf of your organization (the data controller). Your organization's administrator determines what data is collected and how it is used within the platform.
We collect information in the following categories:
ShiftFlow is a multi-tenant platform. Each organization's data is logically isolated using organization-level access controls and database-level tenant identifiers. This means: your organization's data is never accessible to other organizations; all API requests and database queries are scoped to your organization; role-based access controls further restrict data visibility within your organization. We regularly audit our isolation mechanisms to prevent cross-tenant data leakage.
We do not sell your personal data. We share information only with trusted service providers ("sub-processors") necessary to operate the Service:
| Provider | Purpose | Data Processed |
|---|---|---|
| Vercel | Application hosting and CDN | Request data, logs |
| Supabase | Database and file storage | All customer data |
| Stripe | Payment processing | Billing info, plan details (no card data stored by us) |
| Resend | Email delivery | Email addresses, notification content |
| Google (Gmail API) | Email integration for data import | OAuth tokens (encrypted), email attachments (processed, not stored) |
| Pusher | Real-time messaging | Chat events, check-in status updates |
| Sentry | Error monitoring | Error logs, user IDs for debugging |
| Twilio | SMS messaging and voice/phone-call delivery | Mobile numbers, message content, and (for AI Phone Agent calls) call audio — see section 5b |
| Anthropic (Claude) | AI-powered features (opt-in only) | Operational context for the specific AI feature — see section 5a below |
We may also share information: (a) within your organization based on role permissions; (b) when required by law, court order, or governmental authority; (c) in connection with a merger, acquisition, or sale of assets (with prior notice to affected users).
ShiftFlow offers optional AI-powered features. These features are processed by Anthropic, PBC via their Claude API. No data is sent to Anthropic unless you (the user) have explicitly consented in the in-app "Enable AI Features" dialog. You can grant or revoke consent at any time in Settings → Privacy & Security → AI Features.
The specific data sent depends on which AI feature is used:
The following are never sent to Anthropic: passwords, email addresses, phone numbers, exact location / GPS coordinates, or payment / billing details.
Anthropic processes this data under their own terms and privacy policy. ShiftFlow does not permit Anthropic to use your data to train AI models. For more information on Anthropic's practices, see anthropic.com/legal/privacy.
Revoking consent stops all future AI calls on your account. It does not delete AI-generated outputs that have already been saved to your organization's records (for example, a previously drafted write-up remains on the employee file unless the organization deletes it).
ShiftFlow offers an optional AI Phone Agent feature that places and receives operational telephone calls on behalf of your organization (e.g., driver outreach, dispatch coordination, rescue requests). When this feature is enabled and used:
Recording disclosure and consent. Some U.S. jurisdictions require all parties on a call to be notified that the call is being recorded ("two-party" or "all-party" consent — including California, Connecticut, Delaware, Florida, Illinois, Maryland, Massachusetts, Montana, Nevada, New Hampshire, Pennsylvania, and Washington). ShiftFlow provides a configurable spoken disclosure that can be played at the start of each AI Phone Agent call ("This call is being recorded by ShiftFlow on behalf of [Organization]."). Enabling and customizing this disclosure is your organization's responsibility. Your organization is solely responsible for compliance with all applicable call-recording, wiretap, TCPA, and telemarketing laws in the jurisdictions where your drivers and callers are located.
We implement industry-standard security measures to protect your data:
While we strive to protect your data, no method of transmission or storage is 100% secure. We encourage you to use strong passwords and enable available security features.
Hawaii residents: In the event of a security breach affecting unencrypted personal information of Hawaii residents, we will notify affected individuals as required by Hawaii Revised Statutes §487N-2, including notice without unreasonable delay and with the content elements required by statute. We will also notify the Hawaii Office of Consumer Protection and any consumer reporting agencies where required.
Depending on your jurisdiction, you may have the following rights:
To exercise any of these rights, contact us at the email below. We will respond within 30 days. Note that some requests may need to be directed to your organization's administrator, as they are the data controller for your work data.
For organizations that require a formal Data Processing Agreement (DPA) — such as those subject to GDPR, CCPA, or other data protection regulations — we offer a DPA that covers our obligations as a data processor. Enterprise customers can request a DPA by contacting us. The DPA supplements this Privacy Policy and governs our processing of personal data on your behalf.
Our Service is hosted in the United States. If you are located outside the US, your data will be transferred to and processed in the US. We ensure appropriate safeguards are in place for international transfers, including standard contractual clauses where required. By using the Service, you consent to the transfer of your information to the United States.
ShiftFlow offers an optional Gmail integration that allows organization owners to automatically import delivery scorecard and performance data from Amazon emails. This section describes how we handle Google user data in compliance with Google's API Services User Data Policy, including the Limited Use requirements.
ShiftFlow's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We only use Google data to provide and improve the ShiftFlow Service for the user who authorized access.
ShiftFlow uses the following types of cookies and similar technologies:
ShiftFlow is a workplace tool intended exclusively for adults of legal working age. We do not knowingly collect personal data from anyone under the age of 18. If you believe a person under 18 has provided us with personal data, please contact us and we will take steps to delete it promptly.
We may update this Privacy Policy from time to time. We will notify you of material changes at least 30 days in advance via email or through the Service. Your continued use after changes take effect constitutes acceptance. Previous versions of this policy will be archived and available upon request.
If you have questions about this Privacy Policy, want to exercise your data rights, or need to report a security concern, contact us at candidoenter@gmail.com.