Privacy Policy
Effective: · Clarified October 4, 2026 · Free public beta
Who is responsible for your data. GreenBrain LLC, a Connecticut limited liability company (“GreenBrain”, “we”, “us”), Connecticut, USA.
Privacy questions, access, correction, export, or deletion requests: support@greenbrain.io. This policy is governed by the laws of the State of Connecticut, with venue in Connecticut courts, as set out in our Terms of Service.
GreenBrain ("we", "us", "our") runs the GreenBrain app and the public website at greenbrain.io. This policy explains what we collect, why, which outside companies touch it, how long we keep it, and how to get it back or get rid of it. It is written for the landscapers who use GreenBrain and for their customers whose details end up in it.
1. Information we collect
- Your business profile: your name, email address, business name, business size, services offered, and any phone number, address, logo, branding, tax rate, or other contact details you add later.
- Customer records you enter: your clients' names, phone numbers, email addresses, property addresses, notes, schedules, job history, quotes, invoices, payment records, pricing, expenses, receipts, saved facts, and other content you choose to put in. This is your customers' personal information; you decide what goes in.
- Location and property data: addresses, map coordinates, measurements, parcel or aerial-imagery selections, and, when an enabled tracking feature is used, vehicle or device location events and related day records.
- Messages and support: recipients and content of texts and emails you send through GreenBrain, delivery or bounce status, replies to a GreenBrain-provisioned business number (including STOP and HELP), support requests, and the settings you choose for review requests, quote follow-ups, campaigns, or integrations.
- Usage and product activity: which features you use, actions and confirmations, AI chat usage counts, error reports, security events, and records needed to keep delivery, credits, and account operations reliable.
- Marketing funnel events on the landing page: pages viewed, the domain of the site that sent you (for example google.com, not the full address of the page you came from), campaign parameters, button or step names, timestamps, signup completion events, and the type of device (phone, tablet, or computer) and whether the visit looks automated, both worked out from your browser's user-agent, which we do not keep with these events. We use a random anonymous visit identifier stored in your browser's
sessionStorage; it is not an account, advertising, or cross-site identifier and ends with the browser session. Passwords and the content typed into signup fields are never analytics events. - Short-lived request information: our servers may temporarily record an IP address, browser user-agent, and referrer to protect the service from abuse, diagnose failures, and produce aggregate traffic counts.
- Terms acceptance: when you create an account or accept updated Terms, we record which versions of the Terms and this policy you accepted, when, and a keyed one-way hash of your IP address (not the address itself). Each acceptance is also kept in the audit log, so accepting a newer version does not erase the record of an earlier one.
- Google Analytics on our home page, comparison pages, free tools, and pricing guides, described in section 6.
2. Where customer information comes from
Most customer information is typed in or imported by the landscaping business that uses GreenBrain. Some arrives through public surfaces that business chooses to turn on:
- Quote request forms on a landscaper's own website (our lead widget) or on their hosted page collect a prospect's name, phone, email, address, and request and store it in that landscaper's workspace.
- Customer portal and quote links record when a quote is accepted or an invoice is paid.
- Inbound texts to a business number provisioned through GreenBrain are stored for that business.
If you are a customer of a landscaping company that uses GreenBrain, that company is the business you have the relationship with; we process your information on their behalf. Ask them first about your records, and contact us if you need help reaching them.
3. How we use it
- To run, maintain, and improve GreenBrain.
- To do the business tasks you ask for: scheduling, invoicing, client management, routing, measurements, payment records.
- To answer questions from your business record and provide AI chat, voice transcription, suggestions, and property analysis.
- To send the texts and emails you initiate, and the follow-ups or review requests you explicitly turn on.
- To process customer payments through Stripe when you turn on online payments.
- To secure accounts, prevent abuse, diagnose problems, provide support, and keep the service reliable.
- To understand, in aggregate, which public pages and signup steps work and where visitors get stuck.
- To comply with law, enforce our Terms, and protect GreenBrain, our users, and others.
We do not sell, rent, or trade personal information, we do not use it for cross-site targeted advertising, and we do not use your customer list to market to your customers.
4. Service providers who handle data for us
AI is optional. Before using external AI features, you can review the providers and information involved and choose whether to allow AI processing. Accepting our Terms is not permission to share with AI. You can continue using manual CRM tools without allowing AI, and review or revoke your choice in Settings → AI sharing. Your choice is tied to your own login, not granted to everyone in your workspace. Revoking stops future processing through these AI features; it cannot recall information already sent or stop a provider request already in progress. If the disclosed providers or processing scope change, a previous permission does not automatically authorize the new scope.
We use outside companies and public services only as needed to run the features you use. Each one receives only what its job requires. As of the effective date they are:
- Railway — hosts the application and the database (United States). Everything stored in GreenBrain lives here.
- Anthropic — the main AI provider. When you ask GreenBrain something, the request and the slice of your business record needed to answer it (which can include clients' names, contact details, addresses, jobs, invoices, and photos you attach) are sent to Anthropic's API. Anthropic also reads receipts you scan, drafts campaign messages from client and service details, answers support chats, and analyzes the aerial image and address in a property Smart Scan.
- Groq — turns voice recordings into text when your browser's own voice typing is not used (audio clips up to 30 seconds), and is the backup AI text service when Anthropic is unavailable (your messages and the same business context, never images).
- OpenAI (founder's workspace only) — the founder's own business workspace uses a separate AI lane that runs OpenAI's Codex tool on the founder's computer, signed in to the founder's ChatGPT account. That workspace's AI requests, business context, and Smart Scan images go to OpenAI. No other workspace's data is sent to OpenAI.
- Resend — delivers email you send from GreenBrain (invoices, quotes, campaigns, account emails) and reports delivery, bounces, and complaints back to us. It receives the recipient, subject, message, and attachments.
- Google — several separate services:
- Gmail: sends the founder's own business email and the operator's email (including encrypted nightly backups to the operator's private mailbox); we also read that operator mailbox to find bounced messages. If your account is given the optional email-inbox feature and you connect a Gmail account, GreenBrain reads that inbox with read-only access.
- Street View: when property photos are turned on, our server asks Google for Street View imagery of a property's address or coordinates.
- Google Analytics: audience measurement on our home page, comparison pages, free tools, and pricing guides only (section 6).
- Google Fonts: the app and our public pages load fonts from Google's servers, which see your IP address and browser.
- Telnyx and Twilio — provision the business phone numbers texts are sent from, deliver texts, handle toll-free verification with carriers, and deliver customer replies (including STOP) back to us. They receive the recipient number and message content, and, for verification, the business's name, address, contact person, website, and tax ID where one is given.
- Textbelt — a shared texting service. It sends customer texts only from the founder's own workspace and from accounts the operator has given a texting trial. It also delivers GreenBrain's alert texts to a business owner's own phone, such as a new website lead or an accepted quote, which include that lead's or customer's name, phone number, service, and address. It receives the recipient number and message.
- Stripe — payments. Stripe receives what it needs for connected-account onboarding (your email, business name, and account details), customer checkout (the customer's email, invoice number, amount, and client name), and optional text-credit-pack purchases. Card numbers are entered on Stripe's pages and never touch our servers.
- OpenRouteService (Heidelberg Institute for Geoinformation Technology) — turns client addresses into map coordinates, plans routes from job locations, and turns GPS stop coordinates into street addresses.
- Photon (komoot) — suggests addresses as you type one; it receives the text typed so far and the general area of your business's home base.
- Nominatim (OpenStreetMap Foundation) — looks up the address you enter in a property-owner lookup.
- State parcel and mapping services — public GIS services run by or for Connecticut, Massachusetts, Florida, Montana, North Carolina, Wisconsin, and New York (several hosted on Esri's ArcGIS Online) receive a property's coordinates, and, for a Connecticut street search, the street name, house number, and town, to return parcel boundaries and public owner records.
- Aerial imagery — the U.S. Department of Agriculture's NAIP imagery service and, for Connecticut properties, CT ECO (UConn) receive a parcel's coordinates when a Smart Scan requests aerial photos.
- Weather — the U.S. National Weather Service (weather.gov) receives the coordinates of your business's home base to return forecasts and alerts. Open-Meteo would receive the same coordinates as a backup forecast source if we enabled it; it is not enabled in the live app today.
- Map tiles — when you view a map, your browser loads map images directly from OpenStreetMap (street map) and Esri (satellite imagery). They see your IP address and which map area you are viewing. MapTiler would also provide imagery if we enabled it; it is not enabled in the live app today.
- Your browser's voice typing — when you dictate, GreenBrain first uses your browser's built-in speech recognition, which may send the audio to your browser's maker (for example, Google for Chrome or Apple for Safari) under that company's terms. When GreenBrain reads a reply aloud, it uses your device's built-in voices; some browsers offer online voices from the browser's maker.
We may also disclose information at your direction, to the recipients you choose, in a business transfer (we would tell you first), or when reasonably necessary to comply with law, protect rights or safety, investigate abuse, or enforce our Terms.
5. AI models and training
We do not use your data, or your customers' data, to train AI models. The AI providers we send data to through their business APIs — Anthropic and Groq — do not use API inputs or outputs to train their models by default under their commercial terms. The founder's own workspace also uses OpenAI through the founder's ChatGPT account; whether OpenAI may use that workspace's data to improve its models is governed by that account's data-control setting, not by an API agreement. No other workspace's data goes to OpenAI.
6. Cookies, session storage, and Google Analytics
GreenBrain uses one essential, secure session cookie to keep you signed in. The anonymous public-page visit identifier described above lives in sessionStorage, not a cookie, and ends with the browser session.
Google Analytics runs on our home page (greenbrain.io), our comparison pages, our free tools and calculators, and our pricing guides. It sets first-party measurement cookies with a random identifier and tells Google which pages you viewed, the page that referred you, campaign tags in the link, how long you stayed, your browser, device type, screen size, and language, and an approximate location that Google derives from your IP address. We have turned off Google signals and ad-personalization features in our code, so this data is not used for Google advertising or linked to your Google account by us. We do not send Google your name, email, or anything you type into a form. Google Analytics is not loaded inside the app, on this page, on the Terms, or on any customer-facing invoice, quote, or portal page. You can block it with your browser's privacy settings or an extension.
We do not use advertising pixels, session recording, or third-party chat widgets, and we do not build cross-site advertising profiles.
7. Text messages and email
GreenBrain sends a text or email to your customers only when you initiate a send or explicitly turn on a scheduled review request or quote follow-up. Confirmation and send-password controls apply where shown in the product. We never message your customers on our own. GreenBrain may text or email you, the business, about your own account, for example a new website lead, an accepted quote, or a password reset.
- Consent. If you are a landscaper, you are responsible for having your customers' consent before texting or emailing them, and documented express consent for anything promotional. We do not verify consent for you.
- STOP. If a customer replies STOP, QUIT, CANCEL, UNSUBSCRIBE, or END to a business number provisioned through GreenBrain, we record the opt-out and block further texts from that business to that number. The opt-out is kept so it can be honored; it is not deleted when other message history is.
- HELP. Replying HELP returns contact information where the messaging provider supports an automatic reply, and the request is shown to the business.
- Quiet hours. GreenBrain refuses to send texts between 9 pm and 8 am in the recipient's local time.
- Email. Bounces and spam complaints are recorded so we stop sending to that address.
8. How long we keep data, and how to delete it
While your account is active, we keep your workspace so the app works. Some operational logs are trimmed automatically: raw request metadata, landing-page funnel events, outbound message logs, and AI usage counts are kept for up to 90 days; internal AI routing telemetry for 30 days. The action ledger, which records which actions GreenBrain carried out in a workspace, their outcome, and the approvals given (never conversation text or message content), is kept for 365 days. The audit log, which records security events and who did what to an account (including every action GreenBrain's operator takes on your workspace), is kept for one year: entries about the operator's actions are removed only when they are a year old, while entries created by accounts' own activity are also capped at the most recent 50,000 in total and 5,000 per workspace. Location history is kept while your account is active and deleted when your account is deleted. It is not trimmed on a timer, because mileage and time on site are calculated from it.
Deleting your account. Go to Settings → Account & payments → Delete account, confirm your password, and type DELETE. For a workspace owner, this is one database transaction that removes the workspace, team logins, sessions, customer and financial records, saved snapshots, integrations, public and portal links, leads, sent-message records, support data, receipts, uploaded images, brand assets, email and text suppression lists and ledgers, follow-up logs, GPS and location history, AI usage telemetry, quotas, and account tokens. A team member deleting their own login removes that login and its personal location history without deleting the company workspace. You can also email support@greenbrain.io from your account email and we will do it for you. Either way, audit log entries about the deleted account are kept for the rest of their year, but the account's identifier in them is replaced with a random alias and the network addresses recorded for the account's own actions are removed, so they no longer identify you.
Backups. For recovery, we keep backup copies of the database. They contain everything in it, including location history and the data of accounts deleted after the copy was made, so deleted data leaves backups only when those copies age out or are deleted. Where the copies are kept, and for how long:
- In the hosting environment: the last 7 nightly copies of the whole database and the last 10 nightly copies of workspace data. Because each whole-database copy also contains the workspace copies of the days before it, a deleted account can remain here for up to about 17 days. An encrypted copy made by hand before a risky update can also be kept there until it is deleted.
- Off-site, on the operator's own computer: an encrypted copy of the whole database, made each night. Each night's run deletes the copies that are more than 30 days old, except the 7 most recent, which are always kept. A deleted account can therefore remain in these copies for up to about 41 days — longer only if the nightly copies stop, because the 7 most recent copies are kept until newer ones replace them.
- By email: a nightly encrypted copy of workspace data (not the whole database) is also sent to the operator's private mailbox, where it is kept until it is deleted.
Copies of your data that leave the hosting environment are encrypted. All backup copies are access-restricted and are used only to recover the service, never to recreate an individual deleted account.
Records we may keep longer. Opt-out lists (so STOP keeps working), payment records tied to Stripe transactions, and security or abuse records may be retained when needed to honor opt-outs, resolve disputes, meet provider or legal obligations, or maintain financial records.
9. Your data, your choices
- AI sharing. Review, allow or revoke AI processing in Settings → AI sharing. We keep your current choice, the disclosure version and processing profile it applies to, and when the choice was made, so we can honor it. This permission record is removed when your login is deleted; backup copies follow the retention rules above. Turning off AI does not delete your business records.
- Export. Email support@greenbrain.io from your account email and we will send a machine-readable export of your workspace. If paid plans are ever introduced, you will get this option before any change takes effect.
- Access and correction. Almost everything is editable in the app. For anything you cannot reach, email us.
- Deletion. In the app or by email, as described above.
- Customers of a GreenBrain business. Contact that business directly about your records; if you cannot reach them, contact us and we will help.
How to make a request. Email support@greenbrain.io to access, correct, export, or delete your personal data, or to opt out of any processing you are entitled to opt out of. Tell us what you want and which account or business it concerns; we may need to confirm your identity, usually by a reply from your account email. We aim to answer every privacy request within 30 days, and always within 45 days, or tell you why we need more time as the law allows.
Appeals. If we decline your request, you can appeal: reply to our answer, or email support@greenbrain.io with "Privacy appeal" in the subject. We will review it and tell you the outcome in writing within 60 days. If you disagree with the outcome, you can contact the Connecticut Attorney General at portal.ct.gov/ag, or your own state's attorney general.
10. Security
Data moves between your browser and our servers over TLS/HTTPS. Passwords are salted and hashed, and active session tokens are stored as hashes. Password-reset links are single-use and expire after 60 minutes. Integration credentials are encrypted before storage. Each workspace is isolated from every other workspace. Sends, money actions, and deletions ask for confirmation before they run, except scheduled review requests and quote follow-ups you turn on, and required automatic replies such as HELP. Off-site backups are encrypted with authenticated encryption and GreenBrain will not email a plaintext backup if the encryption key is missing. No system is perfectly secure, and we cannot promise absolute security; if we learn of a breach affecting your data, we will tell you.
11. Children
GreenBrain is a business tool for people 18 and older. We do not knowingly collect personal information from children.
12. Contact
Questions about this policy or your data: support@greenbrain.io
13. Changes to this policy
We may update this policy. For material changes we will notify active users by email or in the app before the change takes effect, and every revision is listed here. When a material change takes effect, the app asks you to review the updated policy before you continue, and we record which version you accepted. For changes that are not material, such as clarifications and corrections, continued use after the change takes effect means you accept the updated policy.
- — Landing-page funnel: where a visit came from. Clarified what the first-party funnel events in section 1 keep about where a visit came from: only the domain of the referring site, not the page address, plus the type of device and whether the visit looks automated, so automated traffic can be left out of our counts. No IP address, full user-agent or full referring address is kept with these events, no provider was added, and the 90-day retention is unchanged. The material policy version remains September 28.
- — Optional AI-sharing controls. Clarified the separate permission before AI processing, the ability to decline or revoke while continuing to use manual tools, and the current-choice record used to honor that preference. No new provider or business-data category was added. The material policy version remains September 28; AI permission has its own disclosure version and is never inferred from policy acceptance.
- — Google Analytics on the free tools and pricing guides. Google Analytics, with the same settings, now also runs on our free tools and calculators and our pricing guides, not only on our home page and comparison pages; sections 1, 4 and 6 now say so. Nothing else changed.
- — GreenBrain LLC. GreenBrain LLC, a Connecticut limited liability company, now operates GreenBrain and is responsible for your data from this date. Nothing else in this policy changed: the same data, providers, retention and choices apply.
- — Complete provider list, Google Analytics, AI training, requests and appeals. Corrected the Google Analytics description: it runs on our home page and comparison pages (not only on guides and calculators), with Google signals and ad-personalization features turned off in code; listed what it collects. Named every outside service that receives data, with what each receives: added OpenAI (founder's workspace only), Photon, Nominatim, state parcel services, USDA and CT ECO aerial imagery, the National Weather Service (now our only weather source), OpenStreetMap, Esri and MapTiler map tiles, Google Street View, Gmail inbox features, Google Fonts, and browser voice typing. Corrected the Textbelt line: it serves the founder's workspace and operator-granted trials, and delivers alert texts to business owners. Added whether data trains AI models, how to make a privacy request and appeal a decision, the action ledger's 365-day retention, and the recorded acceptance of the Terms and this policy (a keyed hash of the IP address, with each acceptance kept in the audit log). Said that scheduled review requests and quote follow-ups you turn on, and automatic HELP replies, send without a per-message confirmation. Removed the Microsoft read-aloud service: replies are now read aloud with your device's own voices.
- — Audit log. Corrected the audit log description, which said only recent entries were kept. The actual rule: the audit log is kept for one year; entries about the operator's actions are removed only by age, and entries created by accounts' own activity are also capped at the most recent 50,000 in total and 5,000 per workspace. When an account is deleted, by you or at your emailed request, its audit entries are kept for the rest of their year with the account identifier replaced by a random alias and the network addresses of its own actions removed.
- — Backups. Corrected the backup section: the hosting environment keeps 7 nightly copies of the whole database (not 10) and 10 nightly copies of workspace data. Added the encrypted whole-database copies now kept on the operator's own computer (each night's run deletes those more than 30 days old, keeping the 7 most recent) and the encrypted workspace copies emailed to the operator; stated how long a deleted account can remain in each, and that deleted data, including location history, leaves backups only when those copies age out or are deleted.
- — Location history. Clarified that location history is not trimmed on a timer: it is kept while your account is active and deleted when your account is deleted. No retention practice changed.
- — Free public beta revision. Named the operator and the governing law and venue. Listed the actual service providers by name and what each receives, and dropped a retired AI provider. Added where customer information comes from (lead widget, portal, inbound texts), the texting rules (consent, STOP, HELP, quiet hours), concrete retention windows, the exact account-deletion scope, the backup window, data export on request, and started this changelog.