Legal
ScreenOps Privacy Notice
Effective September 17, 2026 | Version screenops-privacy-2026-09-v3 | ScreenOps Product
Mosari LLC (“Mosari,” “we,” or “us”) provides ScreenOps, a Mosari software-as-a-service product and field-service CRM platform for screen door, window screen, and related service businesses. This policy explains what we collect, how we use it, who we share it with, and the choices you have. It covers the ScreenOps web application, field and mobile surfaces, customer portal, and marketing site.
Our role: controller and processor
For account, billing, support, and marketing-site information, Mosari generally acts as the controller or business where those concepts apply. For the records a subscribing business stores in its workspace — including its own customers, properties, jobs, and photos — that business is the controller and Mosari is its processor, acting on its documented instructions. If you are a homeowner or client of a business that uses ScreenOps, contact that business to exercise your rights over its records; we will assist them in responding.
Information we collect
Account information. Name, email, account type (vendor/company staff or admin), password (stored only as a salted hash), multi-factor authentication enrollment state, and hashed recovery codes.
Company and workspace records. Business details, staff roles and invitations, customer and property records, opening and measurement data, estimates, jobs and field visits, routes and dispatch assignments, photos and media you upload, inventory and procurement records, and communications sent through the platform.
Billing information. Plan, seat, and entitlement data, plus payment identifiers and status from our payment processor. We do not store full payment card numbers.
Usage, device, and log data. Pages and features used, request metadata, approximate location derived from address lookups you perform, device and browser type, and security telemetry including audit events and abuse-protection records. Some security records store hashed rather than raw IP and user-agent values.
Integration data. When you connect a third-party service, the tokens and records needed for that feature. Connection credentials are encrypted at rest.
Support and feedback. Messages, tickets, and feedback you send us, including any attachments.
How we use information
We use information to operate company workspaces and staff access, deliver customer portal features, run the integrations you enable, process payments, provide support, secure the platform and investigate abuse, meet legal and accounting obligations, and improve the Service. We may create aggregated or de-identified statistics that do not identify you or your customers. We do not sell personal information. We do not independently use workspace customer records to market Mosari products or unrelated third-party products to a subscribing business's customers. A business may instruct us to process those records for its own authorized transactional or marketing communications, in which case we provide the communication technology and the business remains responsible for lawful consent, content, audience selection, and opt-outs.
Marketing communications
Transactional and customer-care permission does not authorize marketing. ScreenOps may facilitate a subscribing business's marketing only when the recipient has the separate authorization required for that channel and the message passes applicable suppression, plan, frequency, and billing checks. Mobile opt-in information and phone numbers are not sold or shared with unrelated third parties for their own marketing purposes.
Mobile messaging and SMS consent
This ScreenOps Privacy Notice is the definitive privacy policy for Mosari LLC's ScreenOps messaging program. Other Mosari product notices do not replace or modify this mobile-messaging section.
ScreenOps account holders may separately opt in to non-marketing operational text messages from Mosari LLC through ScreenOps. These messages may concern account or billing activity, service activity, support requests, workflow alerts, and security notices. This permission is optional, is collected through an unchecked consent box, and is not a condition of purchasing or using ScreenOps. One-time authentication codes, if offered, use a separate verification flow and are not authorized by this operational-message consent.
When you separately choose to receive customer-care text messages from a business using ScreenOps, we process your mobile number and consent record so that business can send transactional messages about appointment confirmations and reminders, rescheduling or cancellation notices, technician en-route and arrival updates, job status and completion updates, estimate and invoice availability, payment confirmations, service follow-ups, and review requests related to completed services. Consent is optional, is not a condition of purchase, and is not combined with consent for marketing text messages.
Consent given to one subscribing business applies only to that business and the messaging purpose stated when consent was collected. It is not transferred to Mosari LLC, another ScreenOps business, an affiliate, or any third party for a different messaging purpose.
To maintain proof of your choice and honor it across the Service, we may retain the mobile number, transactional and marketing consent statuses, consent or opt-out time and source, the version of the disclosure and policies shown, phone-number changes, and limited request evidence such as IP address and browser or device user-agent. A new phone number does not inherit consent from a previous number. Unknown, opted-out, or suppressed numbers are not eligible for transactional ScreenOps text delivery.
Message frequency varies and message and data rates may apply. Reply STOP to an eligible message to opt out or HELP for help. We and the subscribing business may also record an opt-out received through support, a carrier, or another documented channel. Consent and suppression evidence may be retained as needed to demonstrate compliance and prevent messages after an opt-out, including after other customer information is removed.
Mobile information and SMS consent records are used to provide and support the requested messaging service. We do not share, sell, or provide your mobile phone number or messaging consent data to third parties or affiliates for marketing or promotional purposes. We may provide the information to messaging carriers and service providers only as needed to deliver, secure, troubleshoot, or comply with the messaging service. See our SMS Terms for program conditions.
Legal bases
Where data protection law requires a legal basis, we rely on performance of our contract with you to provide the Service, our legitimate interests in securing and improving it, compliance with legal obligations, and consent where we ask for it. Where we act as a processor, our customer establishes the basis for its own processing.
Sharing and subprocessors
We share information with infrastructure and service providers that process it on our behalf. Each provider, its purpose, and the data categories involved are listed on our subprocessor page. We also share information when you direct us to (for example, by enabling an integration or inviting a staff member), with professional advisers, in connection with a merger or sale of assets, and where required by law or to protect rights and safety. We respond to lawful government requests only where legally obliged and will notify the affected customer where permitted.
International transfers
The Service runs on globally distributed infrastructure, so information may be processed in countries other than yours, including the United States. Where required, we rely on appropriate transfer mechanisms such as standard contractual clauses with our providers.
How long we keep data
We keep company workspace data for as long as the account is active. After an account is closed we delete or anonymize workspace records within 90 days, security and audit logs within 12 months, and rotate backup exports within 90 days. Abuse and rate-limit records are kept for 90 days, and records of privacy requests for 24 months as proof of fulfillment. We may keep specific records longer when required for tax, accounting, legal hold, or fraud and abuse investigation.
Export and deletion requests
You can request a copy of your data or ask us to delete it. Company owners should submit requests from account settings where available, or email info@mymosari.com. We acknowledge requests within 5 business days and aim to complete them within 30 days. We verify that the requester controls the account before acting, and we can provide an export before a destructive deletion. Copies held in backup exports age out within the 90-day rotation described above. Where a company controls End Customer records, we act on that company's instructions and refer End Customer requests to them.
Your rights and choices
Depending on where you live, you may have rights to access, correct, delete, port, or restrict processing of your personal information, to object to certain processing, and to withdraw consent. You can update account details in settings at any time. To exercise a right, use the contact above; we will not discriminate against you for doing so, and you may use an authorized agent where the law allows. If you are in the EEA or UK you may also complain to your local supervisory authority.
California residents. We do not sell or share personal information for cross-context behavioral advertising, and we do not use or disclose sensitive personal information beyond the purposes permitted by the CCPA as amended. You have the right to know, delete, and correct personal information, and to limit certain uses, as described above.
Cookies and analytics
We use cookies and similar technologies that are necessary to sign you in and keep your session secure, remember interface preferences, and measure product usage so we can improve the Service. We do not use third-party advertising cookies. You can control cookies in your browser, though blocking necessary cookies will prevent sign-in from working.
Security
We use encryption in transit, encryption at rest through our infrastructure providers, application-level encryption for integration credentials, tenant isolation by company, role-based access control, multi-factor authentication, audit logging, and rate limiting. We keep separate test, staging, and production environments and verify changes before release. No service is perfectly secure, so please protect your credentials and report suspected vulnerabilities using the contact published at /.well-known/security.txt. Our disclosure policy is described in the Terms of Service.
Children
The Service is a business tool and is not directed to children. Account holders must be at least 18 years old, and we do not knowingly collect personal information from children. If you believe a child's information has been submitted, contact us and we will delete it.
Changes to this policy
We may update this policy as the Service evolves. Material changes will be posted here with a new effective date and, where practical, announced in-product or by email.
Contact us
Privacy questions can be sent to info@mymosari.com. This notice is the controlling privacy policy for the ScreenOps messaging program. Your use of the Service is also subject to the End User License Agreement and the ScreenOps SMS Terms.
Questions? Visit Help & resources or account recovery.