Legal
Privacy Policy
How ParcelOS collects, uses, and protects information โ account data, workspace records, and the third-party services involved.
- Effective
- August 9, 2026
- Provided by
- GreenHorizon Ventures LLC
- Applies to
- ParcelOS and getparcelos.com
1. Who we are and what this covers
ParcelOS is a software service for land investors, operated by GreenHorizon Ventures LLC (“GreenHorizon,” “we,” or “us”). This policy explains what information ParcelOS collects, why we collect it, who we share it with, and what you can ask us to do with it.
It applies to our public website at getparcelos.com and to the ParcelOS application. It does not apply to any third-party service you choose to connect to ParcelOS, such as your own DocuSign or Lob account, each of which handles information under its own terms and privacy practices.
2. The two roles ParcelOS plays
ParcelOS handles two very different categories of information, and our responsibilities differ for each. This distinction runs through the rest of this policy, so it is worth stating first.
- Account information is information about you as our customer — your name, email address, workspace settings, support requests, and billing-adjacent records. We decide how this information is used, and we are responsible for it.
- Workspace content is the business data you put into ParcelOS — parcels, prospects, property owners, buyers, co-sellers, deals, and the documents generated from them. You decide what to collect and why. We process it on your behalf, under your instructions, to provide the service. We do not sell it, rent it, or use it to build marketing profiles.
If you are a property owner, buyer, or other individual whose information appears inside a customer's workspace, see section 14.
3. Information you provide to us
Account and profile. Your name, email address, and password. Passwords are stored only as a one-way hash; we never store or display them in readable form.
Workspace and company details. Your workspace name and plan, and the selling-entity details you enter for use in generated documents — company name, entity type, state of formation, business address, phone number, email address, and primary contact name and title.
Support requests. The subject and description of any support request you submit, along with the page you were on and basic browser information you choose to include, plus the replies exchanged with our team.
Public website submissions. If you use our contact form we receive your name, email address, subject, and message. If you apply for Beta access we receive your name, email address, company name, and the details you provide about your current volume and tools.
Files you upload. Due-diligence attachments, document templates, and the CSV files you import to create prospect records.
Questions to the optional AI help assistant. Where a workspace has the assistant enabled, the question you type is processed to generate an answer, and the question and answer are stored so you can see your history. See section 9.
4. Information in your workspace about other people
ParcelOS is built to manage land transactions, so a workspace will normally contain information about people who are not ParcelOS users. Depending on how you use the product, that can include:
- Property owners and prospects — name, mailing address, phone number, email address, the parcels associated with them, your notes, offer amounts, response outcomes, and any do-not-mail suppression you set.
- Buyers — name, company, email address, phone number, mailing address, buyer type, lead source, and your notes.
- Co-sellers and additional grantors — individual or company name, signer name and title, mailing address, email address, and phone number.
- Transaction records — deal terms, pricing, financing and servicing terms, closing dates, progress notes, and parcel and due-diligence records.
- Generated documents — offer letters, contracts, deeds, and reports, which reproduce the names, addresses, and terms above.
- Imported source files — the CSV files you upload are retained with the resulting import batch, so the original rows remain available for review.
You choose what to enter and are responsible for having a lawful basis to collect and use it. We access this content only as needed to run and support the service — for example, to investigate a fault you report to us, to maintain the system, or where the law requires it.
5. Information we collect automatically
Session records. When you sign in we store a session record containing your user identifier, the IP address of the request, and your browser's user-agent string, so we can keep you signed in and let you understand where your account is being used.
Security and operational logs. Our servers record request and error logs. Where a request is rejected by a rate limit — for example repeated failed sign-in attempts or a burst of expensive operations — we log the event with the source IP address so we can detect and stop abuse. Email addresses in those security logs are recorded only as an irreversible hash, never in readable form.
Legal-notice acceptances. When a workspace user accepts an in-product legal notice, we record who accepted it, which version, when, and the IP address and browser used, because that record is the evidence that acceptance occurred.
Contact-form submissions. We store a salted, irreversible hash of the sender's IP address for abuse triage. We do not store the raw IP address of contact-form submissions.
We do not use advertising networks, tracking pixels, session-replay tools, or third-party analytics products anywhere on our website or in the application.
7. How we use information
We use information to:
- provide, operate, and maintain ParcelOS, including generating the documents and letters you request;
- authenticate users and keep workspaces separated from one another;
- detect, investigate, and prevent abuse, fraud, and security incidents, and to enforce rate limits;
- respond to your support requests and communicate with you about the service;
- send transactional email such as password resets, email verification, and support notifications;
- diagnose faults, monitor reliability, and improve the product;
- evaluate Beta applications and reply to contact-form enquiries;
- comply with legal obligations and enforce our Terms of Service.
We do not sell personal information, and we do not share it for cross-context behavioral advertising. We do not use your workspace content to train machine-learning models.
8. E-signature through DocuSign
ParcelOS is introducing an optional electronic-signature integration with DocuSign. It is not yet generally available in ParcelOS. No information is sent to DocuSign unless and until the integration is available to your workspace, you connect your own DocuSign account, and you start a signature workflow. This section describes how the integration handles information when you use it.
- If you connect DocuSign, you connect your own account. ParcelOS does not operate a shared or pooled DocuSign account, and one customer's DocuSign account would never be used to send another customer's documents.
- Authorization uses OAuth. You would authorize the connection by signing in to DocuSign directly through DocuSign's own consent screen. ParcelOS never asks for, receives, or stores your DocuSign password.
- ParcelOS may store the resulting credentials, encrypted. To keep a connection working without asking you to re-authorize on every action, ParcelOS may store the OAuth tokens DocuSign issues. Where they are stored, they are encrypted at rest and are never displayed back in readable form.
- ParcelOS may send documents and recipient details to DocuSign at your request. When you initiate an electronic-signature workflow, ParcelOS may transmit the document and the recipient information needed to route it — typically each signer's name, email address, and signing order.
- ParcelOS may receive status events back. DocuSign may notify ParcelOS about envelope and recipient progress — for example sent, delivered, completed, declined, or voided — so your workspace can show accurate status.
- ParcelOS may retrieve and store completed documents. Once signing finishes, ParcelOS may retrieve the signed document and its certificate of completion and store them with the related record, so your executed paperwork stays with the transaction.
- DocuSign is a third-party service. DocuSign processes information in accordance with the customer's agreement with DocuSign and DocuSign's applicable privacy and data-protection terms. We do not control how DocuSign retains or handles data within your DocuSign account.
Where the integration is available to your workspace, you can disconnect it from your integration settings at any time. Disconnecting stops further ParcelOS activity against your DocuSign account; it does not delete envelopes already in DocuSign, which remain governed by your DocuSign account settings.
9. Other third-party services we use
We keep the list of third parties involved in delivering ParcelOS deliberately short. The services below are the ones that may receive information today.
- Lob (direct mail). When a workspace sends offer letters as physical mail, ParcelOS transmits the recipient's name and mailing address, the sender's return details, and the letter content to Lob for printing and posting. Each workspace supplies its own Lob credentials and pays Lob directly. See our Terms for the commercial side of this.
- OpenAI (optional AI help assistant). Where a system administrator has configured an AI provider and a workspace has enabled the assistant, the question you type is sent to the provider along with relevant help-center articles to generate an answer. This feature is disabled by default. It is designed for product help: it does not send your parcel, prospect, buyer, or deal records to the provider.
- Google Maps (optional map view). Where enabled, a parcel's location may be shown in an embedded Google map, and parcel pages offer links to open a location in Google Maps. Loading a map or following such a link sends the parcel coordinates and your browser's own request information to Google.
- Payment processing (Stripe and Link). If you subscribe to a paid ParcelOS plan, your payment is processed through Stripe Managed Payments, under which Link acts as the merchant of record for the transaction. Stripe and Link receive the information needed to take the payment, calculate any applicable tax, send you receipts and invoices, and provide support for the transaction itself, and they handle that information under their own privacy and security terms. We do not receive or store your full payment-card number. You manage the stored payment method, and cancel the subscription, through Link. You can also ask Stripe to delete the information held for those transactions and the associated Link account; doing so ends any subscription sold to you this way.
- Email delivery. Transactional email — password resets, verification, support and contact notifications — is delivered through our email infrastructure provider.
- Cloud hosting and infrastructure providers. ParcelOS runs on servers we operate at United States cloud hosting and infrastructure providers, which hold the application, its database, and its backups.
- Website font and content-delivery providers. Our public pages load typography from a third-party font and content-delivery provider, which serves fonts without cookies or visitor profiling.
We do not use advertising platforms, analytics vendors, or customer-tracking tools.
11. How we protect information
We take security seriously and design for it deliberately. Measures currently in place include encryption of traffic in transit over HTTPS, one-way hashing of passwords, encryption at rest of third-party API credentials such as integration keys and OAuth tokens, workspace isolation enforced on every request, role-based permissions for write and delete actions, session invalidation when a password is changed or reset, rate limiting on authentication and on expensive operations, automated dependency and secret scanning in our development pipeline, and routine database backups whose restore procedure we have tested.
No system can be guaranteed completely secure, and we do not claim otherwise. You also play a part: use a strong, unique password, give each colleague their own account rather than sharing one, grant the minimum role each person needs, and disable public portal links you no longer use. If you believe your account has been compromised, contact us promptly.
12. Retention and deletion
We retain personal information for as long as reasonably necessary to provide ParcelOS, maintain business and transaction records, comply with legal obligations, resolve disputes, enforce our agreements, and protect the security and integrity of the service. Retention periods vary depending on the nature of the information and why it is maintained.
ParcelOS does not apply a fixed automatic deletion schedule to workspace content, because appropriate retention periods may vary based on the nature of the records, customer requirements, and applicable legal obligations.
In practice:
- Workspace content is retained until you delete it or ask us to delete the workspace.
- Your user account can be deleted by you at any time from your profile settings, which removes your user record and signs you out everywhere. Note that this deletes the person, not the workspace: records created in a workspace remain in that workspace.
- Support requests, contact messages, and Beta applications are retained while they remain operationally useful.
- Security and operational logs are retained for as long as they remain useful for security, abuse prevention, and diagnostics, and are discarded in the normal course of log rotation.
- Backups are maintained on a rolling basis and are overwritten as that cycle advances, so content deleted from the live system may persist in backups until the corresponding backups are overwritten.
13. Your choices and requests
You can review and update your name and email address in your profile, change your password, delete your own user account, and control what your workspace stores by editing or deleting records directly.
Depending on where you live, you may have rights to access, correct, delete, or obtain a copy of personal information about you, or to object to or restrict certain processing. To exercise any of these, contact us using the details in section 18. We will respond within the time the applicable law allows, and we may need to verify your identity first.
We will not discriminate against you for exercising these rights. If a request concerns information held inside a customer's workspace, please read the next section.
14. If you are not a ParcelOS user
If you are a property owner who received a letter, a buyer in a transaction, or another individual whose details a ParcelOS customer has entered into their workspace, that customer — not GreenHorizon — decides what to collect about you and why. They are the appropriate first point of contact for access, correction, or deletion, and the letter or correspondence you received should identify them.
You are welcome to contact us as well. We will help where we can, and we will pass your request to the relevant customer, but we generally cannot alter or erase records in a customer's workspace on our own initiative, because that content belongs to them.
15. Where information is processed
ParcelOS is provided by a United States company, and its primary application infrastructure is located in the United States. Authorized personnel and service providers may access or process information from other locations as needed to operate and support the service.
If you access ParcelOS from outside the United States, your information may be transferred to and processed in the United States and other locations where we or our service providers operate, where data-protection laws may differ from those of your own jurisdiction.
16. Children's privacy
ParcelOS is a business tool and is not directed to children. We do not knowingly collect personal information from anyone under 18. If you believe a child has provided us with personal information, contact us and we will delete it.
17. Changes to this policy
We may update this policy as the product changes or as the law requires. When we do, we will revise the effective date shown at the top of this page. If a change materially affects how we handle personal information, we will provide additional notice where appropriate or required by law. The updated policy will apply from the effective date shown at the top of the page.
18. How to reach us
Questions about this policy, or about how ParcelOS handles information, should go to GreenHorizon Ventures LLC.
Email staging@getparcelos.com, or use our contact page.
See also our Terms of Service.