מדיניות פרטיות

עודכן לאחרונה: 28 באוגוסט 2026

helmate (״אנחנו״) מספקת שירות SaaS לניהול פרויקטי בנייה פרויקטים, תקציב, אנשי קשר, מסמכים, צ׳אט תפעולי עם AI, ואינטגרציות אופציונליות (Gmail, WhatsApp ועוד). מדיניות זו מתארת אילו נתונים אנו אוספים, כיצד משתמשים בהם, ומהן זכויותיך.

1. מי אנחנו

הלמייט (Helmate). הלמייט מופעלת בכתובת helmate.ai. האפליקציה זמינה ב-app.helmate.ai. לפניות בנושא פרטיות: support@helmate.ai.

2. אילו נתונים אנו אוספים

  • חשבון: כתובת אימייל, שם תצוגה, מזהה Firebase Auth, העדפות שפה ומגדר (לפנייה בעברית בצ׳אט ובקול).
  • פרויקטים: שם פרויקט, משימות, לוח שנה, תקציב, הוצאות, אנשי קשר, מסמכים שהעלית, והערות תפעוליות.
  • צ׳אט ו-AI: הודעות שאתה שולח לעוזר, הקשר פרויקט, ושימוש ב-AI (למשל Gemini) לתשובות, סיכומים וחילוץ נתונים.
  • קבצים: מסמכים, תמונות וקבלות שאתה מעלה לאחסון מאובטח (Firebase Storage / GCP).
  • התראות: אסימוני push (FCM) לתזכורות ועדכונים אם אישרת.
  • Gmail (אופציונלי, Pro): אם אתה מחבר Gmail בפרופיל, אנו מבקשים gmail.readonly ו-gmail.send. עם gmail.readonly אנו מציגים סיכומי תיבה וחיפוש (כותרות, שולח, תאריך ו-snippet), ומייבאים לקבצי הפרויקט שלך קבצים מצורפים רלוונטיים (למשל הצעות מחיר וחשבוניות) כשאתה מבקש זאת בצ׳אט או כשסריקה אוטומטית מזהה מסמך בנייה. לא לייצוא תיבה שלמה ולא לפרסום. עם gmail.send אנו שולחים אימיילים רק כשאתה מאשר מפורשות מהצ׳אט, מכתובת Gmail שלך.
  • WhatsApp (אופציונלי, Pro): מספרי טלפון של אנשי קשר שאתה בוחר לשליחה, ותוכן הודעות שאתה שולח דרך השירות.
  • מכרזים ציבוריים: העדפות התאמה והתראות על מכרזים אם השתמשת בתכונה.
  • טכני: לוגים, כתובת IP, סוג דפדפן/מכשיר, ונתוני שגיאות לשיפור השירות.
  • שימוש באתר: בעת ביקור באתר הציבורי אנו עשויים לאסוף צפיות בדפים, מקור הגעה, סוג דפדפן/מכשיר ולחיצות על קישורים, כדי למדוד קידום ולשפר את הדפים. לא נאסף דרך זה תוכן פרויקט.

3. כיצד אנו משתמשים בנתונים

  • להפעיל את השירות: הצגת פרויקטים, סנכרון, צ׳אט, ייצוא נתונים, והתראות.
  • לספק יכולות AI בהקשר הפרויקט שלך (לא לאימון מודלים ציבוריים של צד שלישי מעבר לשימוש API המוגדר).
  • לשלוח אימייל או WhatsApp רק כשאתה מבקש זאת בממשק.
  • לתמוך בך, לאבטח את המערכת, ולעמוד בדרישות חוק.

איננו מוכרים את תוכן הדואר, הצ׳אט או נתוני הפרויקט שלך לצדדים שלישיים.

4. אחסון, אבטחה ושמירה

נתונים נשמרים בענן (Firebase / Google Cloud). אסימון OAuth של Gmail (refresh token) נשמר ב-Firestore (מוצפן במנוחה אצל ספק הענן) ומשמש רק לפעולות שאישרת. אנו שומרים נתונים כל עוד החשבון פעיל או כנדרש לצורך השירות, גיבוי, או חובות משפטיות. ניתן לנתק Gmail בכל עת בפרופיל. ניתן למחוק את החשבון לצמיתות מתוך האפליקציה: פרופיל ← חשבון ← מחיקת חשבון. המחיקה מסירה את נתוני הפרויקט והקבצים השמורים שלך מהשירות. לשאלות נוספות: support@helmate.ai.

שימוש מוגבל בנתוני Google: נתוני Gmail שמתקבלים דרך Google APIs משמשים רק לספק ולשפר תכונות גלויות בממשק (סיכום תיבה, ייבוא מסמכים, שליחה לפי בקשתך). איננו מעבירים נתוני Gmail לפרסום, לברוקרים, או לאימון מודלי AI כלליים של צד שלישי מעבר לשימוש API הנדרש לתכונות אלה.

5. שיתוף עם צדדים שלישיים

  • Google: אימות, Gmail API, Gemini AI, Firebase לפי מדיניות Google.
  • Twilio: שליחת WhatsApp אם הפעלת.
  • ספקי תשתית: אחסון, CDN, ניטור תחת הסכמי עיבוד נתונים.

לא נמסור נתונים לפרסומאים.

6. זכויותיך

בהתאם לדין החל (כולל GDPR ליחידים באיחוד האירופי וחוק הגנת הפרטיות בישראל), ייתכן שיש לך זכות לגישה, תיקון, מחיקה, הגבלת עיבוד, והתנגדות. פנה אלינו ב-support@helmate.ai. ניתן גם לבטל הרשאות Gmail ב-הגדרות Google Account.

7. ילדים

השירות מיועד לעסקים ולאנשי מקצוע; איננו מכוונים לילדים מתחת לגיל 16.

8. שינויים

נעדכן מדיניות זו בעת הצורך; תאריך העדכון יופיע בראש העמוד.

Privacy Policy

Last updated: August 28, 2026

helmate (“we”) provides construction project management SaaS: projects, budget, contacts, documents, operational AI chat, and optional integrations (Gmail, WhatsApp, and others). This policy describes what we collect, how we use it, and your rights.

1. Who we are

Helmate (הלמייט). helmate is operated at helmate.ai. The app is available at app.helmate.ai. Privacy inquiries: support@helmate.ai.

2. Data we collect

  • Account: email, display name, Firebase Auth ID, language and related preferences.
  • Projects: project names, tasks, calendar, budget, expenses, contacts, documents you upload, and operational notes.
  • Chat & AI: messages you send to the assistant, project context, and AI usage to answer, summarize, and extract data for your projects.
  • Files: documents, photos, and receipts you upload to secure storage.
  • Notifications: push tokens for reminders and updates if you allow them.
  • Optional Gmail (Pro): if you connect Gmail in Profile, we request gmail.readonly and gmail.send. With gmail.readonly we show inbox summaries and search (headers, sender, date, snippet) and import relevant attachments (e.g. quotes, invoices) into your project files when you ask in chat or when an automatic scan finds a construction document. We do not export the full mailbox or use mail for advertising. With gmail.send we send email only when you explicitly approve it from chat, from your Gmail address.
  • Optional WhatsApp (Pro): phone numbers you choose and message content you send through the product.
  • Technical: logs, IP address, browser/device type, and error data to keep the service reliable.
  • Website use: when you visit the public website, we may collect page views, referral source, browser/device type, and link interactions to measure promotion and improve the pages. This does not collect project content.

3. How we use data

  • To run the service: projects, sync, chat, exports, and notifications.
  • To provide AI features in your project context (not to train public third-party models beyond the API use required for those features).
  • To send email or WhatsApp only when you request it in the product.
  • To support you, secure the system, and meet legal requirements.

We do not sell your mail, chat, or project content to third parties.

4. Storage, security & retention

Data is stored in the cloud (Firebase / Google Cloud). Gmail OAuth refresh tokens are stored in Firestore (encrypted at rest by the cloud provider) and used only for actions you authorize. We keep data while the account is active or as needed for the service, backup, or legal duties. You can disconnect Gmail anytime in Profile. You can permanently delete your account in the app: Profile → Account → Delete account. Deletion removes your stored project data and files from the service. Questions: support@helmate.ai.

Limited use of Google user data: Gmail data obtained through Google APIs is used only to provide and improve user-facing features in the app (inbox summary, document import, send-on-request). We do not transfer Gmail data for advertising, to data brokers, or to train general-purpose third-party AI models beyond the API calls required for those features.

5. Sharing with processors

  • Google: sign-in, Gmail API, AI APIs, and Firebase under Google’s terms.
  • WhatsApp messaging provider: if you enable WhatsApp sending.
  • Infrastructure: storage, CDN, and monitoring under data-processing agreements.

We do not share data with advertisers.

6. Your rights

Under applicable law (including GDPR for individuals in the EU and Israeli privacy law), you may have rights to access, correct, delete, restrict, or object. Contact support@helmate.ai. You can also revoke Gmail access in Google Account settings.

7. Children

The service is for businesses and professionals; we do not target children under 16.

8. Changes

We may update this policy as needed; the date at the top of the page will change.

ראו גם: תנאי שימוש

הלמייט