Last updated: July 29, 2026
SwiftOrderUp, a service order management platform used by service companies, is a product of MWORKS SOFTWARE LTDA (CNPJ 40.990.926/0001-96). This creates two distinct roles, and it is important to know which one applies to you: • If you signed up for SwiftOrderUp for your own company: we are responsible for the processing of your account, billing and platform usage information. • If your information is in SwiftOrderUp because you are a customer of a company that uses the platform: that company is responsible for this information, and we only process it on that company's behalf, as its service provider. Requests for access, correction or deletion must be made directly to the company that provided the service to you — we cannot change or delete this information on our own.
We collect only what is necessary to operate the platform: • Account and registration: name, email, phone, identification number (individual or business tax ID) and password. The password is stored only as a cryptographic hash — not even we can read it. • Content you create: service orders, clients, teams, products, notes, addresses and photos attached to jobs. • Technical information: application error and diagnostic records (version, platform, device model, session identifier, failure messages), used to investigate problems. When a request fails, the diagnostic record may include the data that was being sent at that moment — which can contain information you had typed, such as a client's name, e-mail, phone, address or identification number. Passwords, tokens and other credentials are always removed before the record is stored. In the most recent versions of the application, that personal data is also replaced with a placeholder on the device itself, before the record is sent. • Interest in plans: if you open the subscription screen and do not complete the purchase, we keep your contact information and the plan you were interested in for sales follow-up. • What we do NOT collect: we do not collect your geographic location, and we have no access to your card information — payment happens entirely in the app store or with our subscription provider.
When a company uses SwiftOrderUp, it registers its own customers on the platform: name, email, phone, identification number, service address and photos of the work performed. This information is entered by the company, belongs to the company and is kept isolated in the database dedicated exclusively to that company. We access it only to keep the service running, to respond to a support request from the company itself or to comply with a legal obligation.
We use the information to: authenticate your access; run the features of the platform; send operational emails (registration confirmation, password reset, billing notices); process and validate subscriptions; investigate errors and improve the product; and comply with legal obligations. We do not use your information or your customers' information to train models, and we do not sell or rent it to anyone.
We process account and content information to perform the contract entered into with you. Technical and security records rely on our legitimate interest in keeping the platform available and free of abuse. Sales contact information left on the subscription screen relies on our legitimate interest in following up on an interest you expressed, and you may request its removal at any time. Where the law requires consent, it will be requested separately and specifically.
We do not sell or rent information. We share it only with service providers that perform part of the service on our behalf, and only to the extent necessary: • Amazon Web Services (AWS): application hosting, database, photo storage and email delivery. • RevenueCat: subscription management. We send only a pseudonymized account identifier — we do not send name, email or identification number. The RevenueCat SDK also sends an identifier of your device, generated by the operating system and specific to this application, used to recognize purchases made from the same device. • Google Play and Apple App Store: when the subscription is purchased inside the app, the store processes the payment and reports only the status of the subscription to us. Payment information stays with the store. We may also disclose information if we are required to do so by law or court order, or to investigate fraud and abuse of the platform.
The information is stored on AWS servers, and it may be processed outside your country of residence. Each company that uses the platform has its own separate database, which prevents one company from reaching another company's information. Photos are kept in private storage, accessible only through temporary links generated for authenticated users.
We keep your account information and the content you create for as long as the account exists, and afterwards for the period necessary to comply with legal or tax obligations or to defend ourselves in legal proceedings. Application diagnostic records are discarded automatically within a few weeks. Company registrations that are started and never confirmed are discarded within 48 hours. Security records related to account creation are retained for an indefinite period in order to prevent abuse and automated account creation.
You may request: confirmation that we process your information; access to it; correction of incomplete or outdated information; anonymization or deletion; information about who we share it with; and the withdrawal of consent, where applicable. To exercise any of these rights, use our contact page. We will respond within the periods set by applicable law. If the information in question was entered by a company that uses the platform, we will forward the request to that company, because the decision is theirs.
You may request the deletion of your account through the user deletion page, by providing your credentials. To be transparent about what this request does today: your identifying information in the user record is anonymized and your access is terminated immediately. The work history of the company — service orders, notes, service addresses and photos — remains in the database of that company, because it belongs to the company and may be needed for tax and warranty obligations. If you want these records removed entirely, submit the request through the contact page so that we can evaluate it together with the company responsible.
All traffic between the app and our servers is protected by HTTPS. Passwords are stored only as hashes. Access is controlled by session token and by permission profile, and each company is isolated in its own database. Production credentials are kept in a secrets manager, outside the source code. No system is immune to incidents: if a breach occurs with relevant risk to your rights, we will notify you and the competent authority.
SwiftOrderUp is a work tool intended for companies and professionals. It is not directed to anyone under 18 years of age, and we do not intentionally collect information from children or teenagers. If we identify information of this kind, it will be deleted.
We may update this policy to reflect changes to the platform or to the law. The date at the top indicates the most recent revision, and material changes will be communicated through the channels of the app. For questions, requests related to your information or any privacy matter, talk to us through the SwiftOrderUp contact page. The data controller responsible for this processing is MWORKS SOFTWARE LTDA (CNPJ 40.990.926/0001-96).