Cookie Policy
1. Who is responsible
Mampassar Company, NIF 333839714, with its address at Praceta Augusto Gil 2, Miratejo, Portugal, is the entity responsible for processing the data described in this policy. For any question: suportebuildflow@gmail.com.
2. Cookies and local storage: the difference
Um cookie é um pequeno ficheiro que um site guarda no seu dispositivo e que é sent to the server with every request. O local storage (localStorage) também guarda informação no seu dispositivo, mas is never sent automatically para o servidor: fica no navegador e só é lido pelo próprio site.
Buildflow uses local storage only. We do not set a single cookie, neither on the public site nor in the application.
3. What we store on your device
Every item below is strictly necessary: without them the service does not work, or loses basic functionality.
| Name | What it is for | Duration |
|---|---|---|
sb-…-auth-token | Keeps you signed in so that you do not have to enter your password on every page. Set by Supabase, our authentication provider. | Until you sign out or the session expires |
bf-theme-v2 | Remembers whether you chose the light or the dark theme. | Until you clear your browser data |
bf-lang | Remembers the language you chose (pt / en / fr). | Until you clear your browser data |
bf-cookies-ok | Records that you have seen the notice about this policy, so it is not shown again and again. | Until you clear your browser data |
bf-terms-accepted | Records that the Terms of Use were accepted. | Until you clear your browser data |
bf-extra-mult | Stores an overtime calculation preference in the dashboard. | Until you clear your browser data |
4. Why we do not ask for consent
The law (article 5 of Portuguese Law 41/2004, which transposes the ePrivacy Directive) requires prior consent to store information on a user's device, except where that information is strictly necessary to provide a service the user has expressly requested.
That is exactly the case here: everything we store is there to make the site work and to respect your choices. Since we do no tracking, no advertising and no audience measurement, there is nothing that depends on your consent. We keep this page for transparency, which the law still requires.
5. What we do not do
- We do not use Google Analytics, Meta Pixel, Hotjar or any audience measurement tool.
- We do not use advertising cookies and we do not build profiles for marketing purposes.
- We do not sell or share your data with data brokers.
- We do not follow your browsing on other sites.
6. Third-party services
Some parts of the service depend on outside providers. We do not control what they store on their own domains, so here is what you should know.
| Fornecedor | When it comes into play | What it means |
|---|---|---|
| Supabase | Authentication and database | Issues the session token stored in local storage. It sets no cookies on our domain. |
| Stripe | Only when subscribing to a plan | Payment takes place on Stripe's own pages, which set their own cookies on that domain, needed for security and fraud prevention. We never have access to your card details. |
| Google Fonts | Loading the typefaces | It sets no cookies, but your IP address is disclosed to Google when the fonts are downloaded. |
| jsDelivr | Loading libraries and icons | Content delivery network. It sets no cookies; it logs the IP with the request. |
| Unsplash | Images on the public site | It sets no cookies; it logs the IP with the image request. |
| Vercel | Site hosting | Logs requests (IP, date, page) for security and diagnostics. |
7. BuildFlow Worker mobile app
A aplicação para trabalhadores não usa cookies. Guarda no dispositivo apenas o token de sessão e as preferências da aplicação, com a mesma finalidade descrita acima. A recolha de localização, quando a empresa a exige para o registo de ponto, está descrita na the app's privacy policy.
8. How to delete this data
You can delete everything we have stored at any time, without contacting us. When you do, the session ends and preferences return to their initial state.
- Chrome: Settings → Privacy and security → Delete browsing data → Cookies and other site data.
- Safari: Settings → Privacy → Manage Website Data → Remove.
- Firefox: Settings → Privacy & Security → Cookies and Site Data → Clear Data.
- Edge: Settings → Privacy, search and services → Clear browsing data.
Alternatively, signing out in the dashboard removes the authentication token.
9. Your rights
Nos termos do RGPD, tem direito de acesso, rectificação, apagamento, limitação, portabilidade e oposição relativamente aos seus dados pessoais. Para os exercer, escreva para suportebuildflow@gmail.com. Tem ainda o direito de apresentar reclamação junto da Comissão Nacional de Protecção de Dados (CNPD).
10. Changes to this policy
If we start using cookies or analytics tools, we will update this page and we will start asking for your prior consent before any non-essential collection. The date of the last update is shown below.