Privacy Policy
Property Command Center — a private, self-hosted real-estate management application.
Effective date: September 1, 2026
1. Introduction and scope
Property Command Center (the “Application”) is a private, single-operator application used by its owner (the “Owner,” “we,” “us”) to manage a real-estate portfolio. This Privacy Policy explains what information we collect, how we use it, and the choices available to you. Access to the Application is restricted to a small set of email addresses explicitly approved by the Owner; it is not open to public sign-up. By signing in, you acknowledge this Privacy Policy.
2. Information we collect
We collect only the information needed to operate the Application:
- Google account profile (if you sign in with Google): your name, email address, and profile picture, provided by Google to identify your account. We do not request or access any other Google data — no Gmail, Google Drive, Calendar, Contacts, or files.
- Credentials (if you sign in with email and password): your email address and a securely hashed (bcrypt) password. We never store passwords in plain text.
- Authentication and session data: a session token stored in a cookie to keep you signed in, and your assigned role (admin, editor, or viewer).
- Application content you enter: property, lease, financial, vendor, document, task, and related records you or other authorized users add to the Application.
- Technical and log data: limited server logs (such as request times and error information) generated in the normal course of operating the software, used for security and troubleshooting.
We do not knowingly collect sensitive personal data beyond what is described above, and we ask that you not enter sensitive personal information about third parties unless you are authorized to do so.
3. How we use information
We use the information solely to:
- authenticate you and determine your access role;
- operate, maintain, secure, and troubleshoot the Application;
- store and display the property-management data you and other authorized users enter; and
- keep an internal audit log of significant changes for accountability.
We do not use your information for advertising, marketing, profiling, or automated decision-making, and we do not sell it.
4. Cookies and sessions
The Application uses a single essential session cookie to keep you authenticated. It is required for the Application to function and is not used for tracking or advertising. Disabling it will prevent sign-in.
5. How information is shared
We do not sell, rent, or trade your information. We share it only:
- with infrastructure and service providers that host and run the Application on the Owner’s behalf (for example, the hosting/cloud provider that stores the database, and Google as the sign-in provider), strictly to provide those services;
- when required by law, such as to comply with a valid legal request, subpoena, or court order; and
- to protect rights and safety, where reasonably necessary to investigate or prevent fraud, security incidents, or misuse.
The Application’s data is stored in the Owner’s own database instance and is accessible only to users the Owner has approved.
6. Google API limited-use disclosure
Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. We receive only your basic Google profile (name, email, profile picture) for authentication and request no other scopes.
7. Data storage, security, and retention
We take reasonable technical measures to protect your information, including hashed passwords, restricted invite-only access, and role-based permissions. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.
We retain information for as long as your access is active and as needed to operate the Application. If the Owner revokes your access, your profile and authentication information may be removed, although content records you created may be retained as part of the portfolio’s business records and audit history.
8. Your choices and rights
Depending on your location, you may have rights to access, correct, or request deletion of your personal information, or to withdraw approval for your account. Because this is a private, owner-operated application, you can exercise these rights by contacting the Owner at the address below. We will respond within a reasonable time, subject to legitimate record-keeping and legal obligations.
9. Children’s privacy
The Application is not intended for and is not directed to children under 16, and we do not knowingly collect their information.
10. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be reflected by updating the “Effective date” above. Continued use of the Application after a change constitutes acceptance of the updated policy.
11. Contact
Questions or requests regarding this policy can be directed to the Owner at aadswork@gmail.com.