Privacy Policy

Last updated: March 2026  ·  Effective for all users of candorhoa.com

Candor HOA LLC ("we," "us," "our") is committed to protecting the privacy of homeowners associations and their members. This policy explains what data we collect, how we use it, and your rights.

1. What Data We Collect

Data TypeWhat It IncludesWhy We Collect It
Account data Email address, display name, unit number, role To authenticate you and personalize your experience
HOA financial data Reserve fund balances, assessments, expense line items, reserve study imports Core app functionality — financial modeling and planning
Community data Board meeting minutes, announcements, community events, bulletin posts Community communication features
Usage data Pages visited, features used, error logs Improving the Service, debugging
Device data Browser type, IP address, device type Security, fraud prevention, session management
Communication preferences Email opt-in status, push notification subscription, phone number (if SMS enabled) Sending notifications you've requested

We do not collect Social Security numbers, financial account numbers, government IDs, or payment card data directly. Payment processing (if applicable) is handled by third-party processors who are responsible for that data.

2. How We Use Your Data

We do not use your data for advertising. We do not sell your data to third parties. We do not use HOA financial data for any purpose other than providing the Service to your organization.

3. Data Storage and Security

Your data is stored on Cloudflare's infrastructure (D1 database, R2 object storage) in the United States. We use the following security measures:

No system is perfectly secure. We will notify affected organizations promptly in the event of a data breach.

4. Data Sharing

We share data only in the following limited circumstances:

We will never sell your data.

5. AI Features and Anthropic

When you use AI-powered features (such as "Explain This," reserve study parsing, or vendor email drafting), relevant data is sent to Anthropic's Claude API to generate a response. This may include:

Anthropic's use of this data is governed by their privacy policy. Per our API agreement, Anthropic does not use API inputs to train their models. We do not send personally identifiable information (names, emails, unit numbers) to Anthropic unless it is directly part of a document you ask us to parse.

6. Communications

Email: We send transactional emails (sign-in codes, alerts from your board) and may send product updates. You can opt out of product updates at any time. Transactional emails cannot be disabled as they are necessary for the Service.

Push notifications: If you install the app and grant permission, your board may send push notifications. You control this through your device settings.

SMS: If your HOA has enabled SMS notifications and you've provided your phone number, we may send you text alerts via Twilio. Reply STOP at any time to opt out. Standard message and data rates may apply.

7. Data Retention

8. Your Rights

Depending on your location, you may have rights including:

California residents have additional rights under the CCPA, including the right to know what data we collect and to opt out of any sale of personal data (we don't sell data, but you have the right to confirm this). The self-service tools in Settings satisfy CCPA's right-to-know and right-to-delete; if you cannot access your account, email [email protected] and we will respond within 30 days.

For questions about HOA-level data (financial records, board minutes, etc.), contact your board administrator. For questions about Candor's handling of your data, email [email protected].

9. Children's Privacy

The Service is not directed to children under 13. We do not knowingly collect data from children under 13. If you believe a child has provided us with personal information, contact us and we will delete it.

10. Changes to This Policy

We may update this policy periodically. We will notify board administrators by email at least 14 days before material changes take effect. The "last updated" date at the top of this page reflects the most recent revision.

11. Contact

Privacy questions or requests: [email protected]

General support: [email protected]