Dockvera Privacy Policy
Version: 1.2
Last Updated: July 30, 2026
HarderTech LLC / Dockvera
This Privacy Policy describes HarderTech LLC's ("HarderTech," "we," "us," or "our") privacy practices in connection with Dockvera. It is referenced by the Dockvera Terms of Use and any applicable Customer Agreement.
Capitalized terms not defined here have the meanings in the Terms of Use. This Policy is not itself a commercial subscription agreement. If a Customer Agreement or Data Processing Addendum ("DPA") conflicts with this Policy regarding Customer Data processing, the Customer Agreement or DPA controls for that subject matter.
---
1. Scope and roles
1.1 Who this Policy covers
This Policy covers personal information processed when:
- Customer organization administrators and Authorized Users use the authenticated Dockvera application
- Vendors or other third parties use Customer’s public invite or response links
- Visitors use dockvera.com marketing pages
- HarderTech communicates about accounts, billing, security, or support
1.2 Customer vs HarderTech roles
For most operational data inside a Customer’s tenant (scheduling, gate events, Vendor contacts submitted for that Customer’s plants), the Customer organization decides why the data is collected and how it is used in its business. HarderTech processes that data to provide the Service as a service provider or processor, as applicable, except where HarderTech processes information for its own purposes described below (for example, authentication, security, billing, product improvement using Aggregated Data, and legal compliance).
Customers are responsible for providing any notices to, and obtaining any consents from, their employees, Vendors, drivers, and other contacts as required by law. Requests that concern Customer-tenant operational data may be redirected to the relevant Customer organization as the controller or business, where applicable.
---
2. Information we collect
Depending on how the Service is used, we may collect:
2.1 Account and profile information
Name, email address, authentication identifiers, organization membership, roles, and related profile details for Authorized Users (via our identity provider and Customer’s user administration).
2.2 Business and Vendor contact information
Vendor/carrier company names, contact names, emails, phone numbers, and related scheduling contacts; optional driver or operating-carrier details submitted through Customer workflows or Vendor portals.
2.3 Operational data
Delivery requests, appointments, flexible-delivery responses and ETAs, plant and receiving settings, gate check-in events, notes, references (such as PO numbers), and similar operational records Customer chooses to store in the Service.
2.4 Customer Content
Logos, plant images, arrival guides, PPE text, branding, and other materials Customer uploads or configures.
2.5 Audit and security logs
Actions taken in the Service for accountability and security (for example, approvals, check-ins, configuration changes, and user terms acceptance records).
2.6 Device and technical information
IP address, browser/user agent, approximate location derived from IP (if available), cookies or similar technologies, diagnostic logs, and usage telemetry needed for security, performance, and reliability.
2.7 Communications
Support emails, feedback, and related correspondence.
2.8 Payment and subscription information
Subscription status, authorized site counts, invoices, and related billing metadata as reflected in Customer’s commercial arrangements. Card payment details, if any, are typically processed by a payment provider and not stored in full by HarderTech unless separately disclosed.
We do not intentionally collect sensitive government ID numbers or special-category health data as part of core Dockvera workflows. Do not submit such data unless HarderTech has agreed in writing to process it.
---
3. How we use information
We use personal information to:
- Provide, operate, secure, maintain, and improve the Service
- Authenticate users and enforce organization and plant access
- Send operational notifications configured by Customer (for example, request submitted, approval, reschedule, arrival)
- Provide customer support and respond to inquiries
- Detect, prevent, and investigate fraud, abuse, and security incidents
- Comply with law, enforce agreements, and protect rights and safety
- Create Aggregated Data that does not identify Customer, Authorized Users, or a specific Vendor
- Communicate about product updates, security notices, and (where permitted) service-related announcements
HarderTech does not sell personal information and does not use personal information for third-party advertising. If analytics or marketing tooling is added later, this Policy will be updated before those practices begin.
---
4. How we share information
We may share personal information with:
- Subprocessors that help us operate the Service (for example, identity/authentication, database and application hosting, and transactional email). Current providers may include Clerk, Supabase, Vercel, and Resend and may change as HarderTech updates its stack. Subprocessors process data only as needed to provide their services to us and under contractual obligations appropriate to their role.
- Customer administrators and Authorized Users within the same organization, according to roles Customer configures
- Vendors and other parties only as directed by Customer’s use of the Service (for example, content Customer chooses to show on invite pages)
- Professional advisors (legal, accounting) under confidentiality obligations when needed
- Authorities when required by law, legal process, or to protect rights, safety, or security
- A successor in connection with a merger, acquisition, or sale of assets, subject to continued protection consistent with this Policy
We may disclose Aggregated Data that does not identify individuals or Customer.
---
5. Cookies and similar technologies
We use essential cookies and similar technologies as described in the Dockvera Cookie Policy. Marketing pages and the application may set cookies required for authentication, security, and preferences. See the Cookie Policy for details and controls.
---
6. Security
HarderTech uses commercially reasonable administrative, technical, and organizational measures designed to protect personal information, including encrypted connections (HTTPS), role-based access within Customer organizations, tenant isolation controls, and audit logging. No method of transmission or storage is completely secure. Customer is responsible for protecting invite links, credentials, and devices used to access the Service.
This Policy does not claim SOC 2, ISO, PCI, HIPAA, CCPA “certification,” or GDPR adequacy beyond what HarderTech separately confirms in writing.
---
7. Retention and export
We retain personal information for as long as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce agreements. After subscription termination, Customer Data is handled as described in the Terms of Use or Customer Agreement (including any export window and ordinary encrypted backup cycles). Export, where available, is limited to Customer Data and excludes schemas, backups, source code, system logs, platform metadata, and other customers’ data. Audit and security logs may be retained longer where needed for security and compliance.
---
8. Your rights and choices
Depending on applicable law and your relationship to the data:
- Authorized Users may update certain profile information through the Service or by contacting their organization administrator
- Organization administrators control user invitations, role assignments, and much of the operational data in their tenant
- Individuals may request access, correction, deletion, or export of personal information where applicable law provides those rights, by contacting privacy@dockvera.com. We may need to verify identity and, for Customer-tenant data, may redirect the request to the relevant Customer organization as controller or business where applicable
You may opt out of non-essential promotional emails (if any) using unsubscribe links. Transactional and security messages related to the Service may still be sent.
---
9. International transfers
HarderTech may process information in the United States and other countries where we or our subprocessors operate. Where required, we use appropriate transfer mechanisms.
---
10. Children’s privacy
The Service is intended for business use by adults (18 or older). We do not knowingly collect personal information from children under 16 (or a higher age required by local law). If you believe a child has provided personal information, contact privacy@dockvera.com.
---
11. Changes to this Policy
We may update this Policy by publishing a new version and updating the version identifier. For material changes, we will provide notice through the Service, email to an administrator contact, and/or require Authorized User acknowledgment where the Terms of Use acceptance process applies. Continued use after the updated version becomes current constitutes acknowledgment of the updated Policy to the extent permitted by law.
---
12. Contact
HarderTech LLC
Privacy: privacy@dockvera.com
Support: support@dockvera.com
Product: Dockvera