← Return to the app
Work Orders App · AA Labs

Privacy Policy

Last updated: 2026-07-10

This policy describes what the Work Orders App collects, how it is used, who it is shared with, and how it is protected. The "What information we collect" and "How we use it" sections reflect what the app actually does, based on a review of the codebase and the running service — not a generic template. If the app changes, this document will be updated before the change ships.

1. Who we are

Work Orders App is provided by AA Labs (the "platform operator", "we", "us"). Your company or organization uses the app to manage maintenance work orders, preventive maintenance, equipment, parts, QR-based problem reports, shift handoff notes, and related records. The platform is a generic multi-tenant service; this policy describes how data is handled across all customer organizations.

Customer organizations are not the platform operator. Each business or organization that uses the app is a separate customer organization (tenant) that manages its own workspace, users, roles, facilities, equipment, and operational records. Inside the app, a "company owner" or similar administrative role refers to a user authorized to manage a customer organization's workspace. It does not indicate ownership of the Work Orders App platform, software, intellectual property, or AA Labs.

Access is by invitation only. Accounts are created and managed by each customer organization's administrator; there is no public sign-up. The one exception is the public QR "Report a Problem" page described in Section 3.4, which accepts anonymous maintenance reports without an account.

Roles for data-protection purposes. Each customer organization determines the purposes for which its own workforce and maintenance records are processed and is the controller of that content. AA Labs processes that tenant content on the organization's behalf to provide the contracted service, acting as a processor. Separately, AA Labs determines the purposes of certain limited platform-level processing — such as securing the service, preventing abuse, administering and supporting the service, and complying with legal obligations — and acts as a controller for that limited processing. These roles are set out in more detail in the agreement between AA Labs and each customer organization (and its data-processing terms where applicable). A customer organization's own controller details are available from that organization's administrator.

Contact for privacy questions: support@workordersapp.app. The platform operator's identity and contact details are set out in Section 12.

2. Scope

This policy covers the Work Orders App mobile app (iOS App Store, Google Play Store) and its companion web / PWA version. It does not cover:

3. What information we collect

The app collects only the information required to operate the maintenance workflow.

3.1 Account information

3.2 Device and session information

3.3 Work-related content you create

3.4 Anonymous QR problem reports

A machine or facility may display a QR code that opens a public "Report a Problem" page. Anyone who scans it can submit a maintenance report without signing in or creating an account. When they do, the app stores, as a work-order record: the name or line the person types, the problem summary and any details they add, the machine or area selected, the priority, the language, and a timestamp.

This information is not linked to any app account. The QR report page does not collect an IP address, a device identifier, or a login; it uses only a hidden anti-spam field and basic form-timing checks to reduce automated abuse, and those signals are not retained as identifying information. Because a person who submits a QR report may not be an app user, the name and free text they enter are stored as part of your organization's work record — see Sections 7 and 8 for retention and how to raise a request about it.

3.5 Operational logs

3.6 What we do not collect

This is a closed workforce tool. Data flow is intentionally minimal.

Support and customer-service information

When you contact support or submit a support ticket through the in-app Support Center, we collect the information you provide — including the ticket subject, description of the issue, your replies, screenshots or files you choose to attach, and related correspondence.

To help diagnose technical problems, the app may also include limited technical information with a support request, such as the app version, operating platform, device type, current app page or feature, network status, timestamps, and identifiers for relevant recent errors. We do not attach your password, authentication tokens, IP address, full user-agent, unrelated work-order content, or any records outside the support ticket.

Support requests are visible only to authorized users based on their role and the ticket's visibility — for example, account- and access-related tickets are visible only to you and our support personnel — and to authorized AA Labs personnel who need access to provide support, investigate security or reliability issues, or administer the service. We use this information to investigate reported problems, communicate with you about the request, improve reliability and security, and keep a history of support provided.

4. How we use this information, and our legal bases

We use the information described above only to:

We do not use your information for advertising, behavioral profiling, sale to third parties, or any purpose unrelated to running maintenance operations.

Legal bases (where the GDPR or similar laws apply). We and the relevant customer organization process personal data on one or more of these bases: performance of a contract (to provide the service to your organization); legitimate interests (operating, securing, and improving a maintenance-management tool, where not overridden by your rights); compliance with legal obligations; and, only where we specifically rely on it, your consent. We do not rely on consent as a general basis for operating the service.

5. Who we share it with

We share information only with the providers necessary to operate the app:

Other than the sub-processors and infrastructure providers necessary to deliver the service (such as those above, and — where relevant — our domain/DNS provider), and disclosures required by law, we do not share personal information. We do not sell personal information, and we do not share it with advertisers, data brokers, or marketing services.

If AA Labs is acquired, merged, or reorganized, personal data may transfer to the successor entity, which will be bound by this policy (or equivalent terms) until updated.

6. Where data is stored, and international transfers

Our providers operate cloud infrastructure that may process and store data in the United States and other regions those providers use to deliver their services. Where personal data is transferred internationally — for example, for users in the European Economic Area, United Kingdom, or Switzerland — we rely on appropriate safeguards recognized under applicable law, such as adequacy decisions or Standard Contractual Clauses, as offered by the relevant providers. If we change providers or regions in a way that materially affects this, we will update this policy.

7. How long we retain data

When data is no longer needed for an operational, legal, or audit purpose, it is deleted or de-identified.

8. Your rights

Subject to applicable law, you have the right to:

To exercise these rights, contact us at support@workordersapp.app. We will respond within 30 days (or sooner where required by law). Because this app is a workforce tool, some rights — particularly deletion — may be limited by your organization's obligation to maintain accurate operational records, and your organization may need to authorize deletion of workforce records. To request deletion of your account specifically, see Account Deletion.

If you are in the European Economic Area, United Kingdom, or Switzerland, you also have the right to lodge a complaint with your local data protection authority.

California. If the California Consumer Privacy Act (CCPA/CPRA) applies to our processing of your personal information, you may have rights to know about, access, correct, and delete certain personal information, and to receive information about our data practices. We do not sell or "share" (as those terms are defined by that law) personal information. Whether the law applies depends on statutory thresholds; where it does not strictly apply, we still aim to honor reasonable privacy requests sent to the contact above.

9. Security

We protect your information with industry-standard measures:

No system is perfectly secure. We commit to notify affected users and organizations promptly if a breach occurs, in line with applicable breach-notification laws.

10. Children's privacy

This app is a workforce tool for adults. We do not knowingly collect information from anyone under 16 years of age. If you believe a minor's information has been provided to us, contact us at support@workordersapp.app and we will delete it.

11. Changes to this policy

We may update this policy when the app changes or when laws or service providers change. When we make a material change, we will:

This Privacy Policy is a transparency notice. The terms that govern your use of the app — including any acceptance of terms — are set out in our Terms of Service and, for customer organizations, in the agreement between AA Labs and the organization.

12. Contact us

For any privacy question, request, or complaint:

Work Orders App is a software product operated by Alberto Arizmendi under the AA Labs brand. This policy is content-complete and pending independent legal review before publication.

We aim to respond to all privacy inquiries within 30 days.

Español — Resumen de privacidad

Work Orders App es proporcionada por AA Labs. Tu empresa u organización usa la app para gestionar el mantenimiento; el acceso es solo por invitación (la excepción es la página pública de "Reportar un problema" por código QR). Recopilamos únicamente lo necesario para operar el flujo de trabajo: tu correo, nombre de usuario y nombre para iniciar sesión y mostrarte en el equipo; información básica del dispositivo (un identificador de dispositivo aleatorio y una etiqueta general como "iPhone · App", no tu user-agent completo); y el contenido de trabajo que creas (órdenes de trabajo, notas de máquinas y turnos, respuestas de PM, fotos que adjuntas) más un registro de auditoría de las acciones.

La app no almacena tu dirección IP en su base de datos para las acciones normales; los proveedores de infraestructura pueden procesar IP de forma transitoria en sus registros. No recopilamos ubicación, contactos ni identificadores de publicidad, no usamos analíticas de terceros y no vendemos datos. Hoy las notificaciones son solo dentro de la app. Los reportes por QR pueden incluir el nombre y el texto que escribe la persona, sin cuenta asociada.

El registro de auditoría puede incluir nombres, correos, el nombre de quien reporta por QR y texto de trabajo, y se conserva de forma inalterable por integridad. Puedes acceder, corregir o solicitar la eliminación de tus datos; la eliminación o anonimización la realiza manualmente un administrador y algunos registros de trabajo y auditoría pueden conservarse por motivos legales y de integridad. Para cualquier consulta de privacidad, escribe a support@workordersapp.app. Para eliminar tu cuenta, consulta Eliminación de cuenta.