GovedIn ("GovedIn", "we", "us") provides a mobile and web workspace for U.S.
federal-government contracting professionals to manage proposals, compliance,
and opportunity intelligence. This policy explains what information we collect,
how we use it, who we share it with, and the choices you have. It applies to
the GovedIn iOS app, Android app, and web app at govedin.com (the "Service").
1. Information we collect
Account information
Name and email address you provide at sign-up.
A bcrypt-hashed password (we never store the plaintext password).
Optional profile photo.
Email-verification codes during signup, password reset, and resend flows.
Organization information
Organization name, address, DUNS / UEI / CAGE codes, NAICS codes, capabilities,
past performance, and other profile fields you choose to enter.
Membership and role within an organization (admin, member, viewer).
User-generated content
Workspaces, proposals, and tasks you create.
Documents you upload (PDF, Word, Excel, images), including their text contents.
Notes, comments, pricing data, and AI chat conversations.
Capability statements, generated outlines, and exported deliverables.
Device and usage information
Expo push-notification tokens (only if you grant notification permission) so we
can deliver alerts you've opted into.
Server logs containing IP address, timestamps, request paths, and HTTP status —
retained for security and debugging.
App crash diagnostics from Apple and Google reported through their standard
developer dashboards. We do not run additional third-party analytics or
advertising SDKs.
2. How we use information
To provide and operate the Service: authenticating you, storing your workspaces,
running document analysis, generating proposal content, and delivering exports.
To send transactional email (verification codes, password resets, organization
join/claim notifications) via Resend.
To send opportunity alerts and workspace notifications you've enabled in
Notification Settings.
To search public federal-opportunity data on your behalf via the SAM.gov API.
To debug, secure, and improve the Service.
We do not sell your personal information, we do not use it for
cross-app advertising, and we do not use uploaded proposal content to train
third-party machine-learning models on your behalf.
3. Sub-processors and third parties we share data with
We use the following service providers, strictly to operate the Service:
OpenAI — text from documents you upload and the prompts/responses
in the AI chat are sent to OpenAI's API for analysis and content generation.
OpenAI does not use API content to train its models by default
(see openai.com/policies).
Replit Object Storage and Replit Deployments — hosts the Service
and stores uploaded files.
PostgreSQL (managed by Replit) — primary application database.
Resend — transactional email delivery.
SAM.gov — public federal-opportunity data is fetched on your
behalf when you search; no personal data is sent to SAM.gov.
Apple Push Notification service and Expo Push —
delivery of push notifications to your device.
We may also disclose information if required to comply with applicable law,
regulation, legal process, or a binding governmental request.
4. Data retention
Account, organization, and workspace data are retained for as long as your
account is active.
You can delete a workspace, document, or asset at any time inside the app.
You can request full account and data deletion by emailing
support@govedin.com; we will delete
your account and associated personal data within 30 days, except where retention
is required by law.
Server logs are retained for up to 90 days.
5. Security
All network traffic between your device and the Service uses HTTPS / TLS.
Passwords are hashed with bcrypt; we never store plaintext credentials. Uploaded
files are stored in Replit Object Storage with access scoped to authenticated
organization members. Authorization is enforced at the API layer for every request.
6. Children's privacy
GovedIn is a business tool intended for adults working in federal contracting.
It is not directed to children under 13 and we do not knowingly collect personal
information from children.
7. Your choices
Access and correction: view and edit your profile, organization
profile, and workspace content directly in the app.
Notifications: Settings → Notifications lets you toggle each
push category on or off. You can also revoke push permission at the OS level.
GovedIn is operated from the United States. By using the Service from outside
the United States, you understand that your information will be processed and
stored in the United States.
9. Changes to this policy
We may update this policy from time to time. The "Last updated" date at the top
reflects the most recent revision. Material changes will be communicated in-app
or by email.