Privacy Policy — ServiceM8 Dashboard Tabs
Single purpose
This extension enhances ServiceM8 with Dispatch Board tabs and job-card workflow tools, including invoice PDF generation and job document downloads. It accesses ServiceM8 information only to provide features the user enables or requests.
Information handled
ServiceM8 account and job information
When you connect and use features, the extension may process your ServiceM8 account identity and records such as jobs, tasks, staff, customers, contacts, job notes, invoices, and attachments. Invoice and other job documents may contain personal identifiers and financial information. When you open a job’s Documents panel, the extension lists that job’s attachments. If you choose Create invoice, it asks ServiceM8 to generate an invoice PDF and add it to the job diary. If you choose Download, the selected file passes through the extension to your browser; Chrome saves it according to your browser download settings.
Job email/contact helpers can read the current job’s contact addresses and the message draft you choose to edit in ServiceM8, so the extension can add/select recipients and format the editor. The draft stays in the ServiceM8 page unless you choose to send it; ServiceM8 handles sending through its own email workflow.
OAuth and account security
The public release uses ServiceM8 Extended OAuth. The backend receives OAuth tokens, stores rotating ServiceM8 refresh tokens encrypted with Cloud KMS, and issues short-lived sessions/access tokens to the extension. It also stores the ServiceM8 vendor/account identifier and name and limited account/session metadata needed for authentication, staff access, and billing. The extension does not collect ServiceM8 email/password.
Cloud features and billing
Some optional features sync user-created data, including pipeline, reminder, post-queue, Staff Docs, and diagram data, through account-scoped Firebase services. Firebase/Google services provide authentication, cloud functions, storage/database, and encryption. Stripe handles subscription checkout and billing.
Optional AI
The optional AI assistant uses an OpenRouter key you provide. The key is stored encrypted by the Firebase service. When you request AI help, relevant text or fields needed for that action are sent to OpenRouter and the model provider you select. AI is optional; conversation state is not saved as a Firebase chat history.
No remote code
The extension runs the JavaScript and CSS included in its package. It does not fetch remote executable code to run as the extension.
Use, sharing, and Limited Use
We use data only to provide, secure, maintain, and support the extension features described in the Store listing. We do not sell data, use it for personalized advertising, or use it for unrelated purposes. Data is shared with ServiceM8 to perform the API actions you request; with Firebase/Google for authentication, account-scoped storage, functions, and encryption; with Stripe for billing; and with OpenRouter/model providers only when you use the optional AI feature. Human access is restricted and occurs only with your specific authorization for support, when needed for security, or when required by law.
The extension’s use and transfer of information received from Google APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements.
Retention and deletion
- Disconnect from ServiceM8 in extension Settings to end the extension session and remove its stored OAuth connection as supported by the account flow.
- Delete optional AI credentials and user-created cloud data using the relevant feature controls or by contacting the support email below.
- Uninstalling removes extension-local storage. It does not delete content already saved in ServiceM8 or cloud data you have not deleted.
- Invoice creation and other write actions change data in your ServiceM8 account. Downloads are saved by Chrome using the browser’s configured download location.
Children
Not directed at children under 13.
Contact
Email info@adamsaddons.me.uk for privacy questions or data deletion requests.