Gatepost
Business Software for Farriers & Mobile Service Professionals
Last updated: July 25, 2026 · Effective: May 26, 2026
Gatepost is a software product offered by DT Technologies (doing business as Virtual Office WI). This Privacy Policy explains what personal information we collect, how we use it, who we share it with, how long we keep it, and the rights you have over it. We do not sell or rent personal information.
"Gatepost," "we," "us," or "our" refers to DT Technologies DBA Virtual Office WI, a Wisconsin business that publishes Gatepost as a software product. Gatepost is professional business-management software for farriers and other mobile service professionals, such as pet groomers and house cleaners (the "Service").
Contact: privacy@getgatepost.com
Mailing: DT Technologies / Virtual Office WI, Wisconsin, USA
Website: getgatepost.com
This Policy applies to the Gatepost web application, the Gatepost mobile app, the getgatepost.com marketing site, our customer onboarding and intake links, and any communication features (email, SMS, push notifications) we operate on behalf of our service-professional customers. It does not apply to third-party services we integrate with, each of which has its own privacy practices (see Section 7).
Two types of people interact with Gatepost:
For data our customers enter on behalf of their clients, the service professional is the data controller and Gatepost is a data processor. Clients with questions about their data should first contact the professional they work with.
Name, email address, password (hashed — we never see it in plain text), business name, phone number, role, profile photo (optional). Used to create and authenticate your account and bill your subscription.
Customer name, phone, email, mailing address, notes; and records about the subject of the work — for example a horse's name, breed, age, shoe size, special requirements, medical notes, and vet contact, or the equivalent details for a pet or serviced location — plus photos. This data is entered by the service professional on behalf of their business. Animal medical notes are not human protected health information (PHI) under HIPAA — Gatepost is not a HIPAA covered entity.
Appointment dates, times, locations, services, status, recurrence rules; invoice line items, totals, payment status; Stripe payment-link IDs and payment metadata. We do not collect or store full card numbers — payment card data is handled entirely by Stripe (a PCI-DSS Level 1 provider) and never touches our servers.
With your permission, the Gatepost mobile app accesses your device location to:
Background location is collected only while you have an active trip running in the mileage tracker, which you start and stop manually. We do not collect location data when the app is closed or when no trip is active. Raw GPS coordinates are processed on-device; we store distance totals and trip timestamps, not the route trace. Apple requires a clear background-location disclosure — this is it.
If you upload photos of horses, pets, jobs, appointment notes, or your profile, those images are stored in access-controlled Supabase Storage. Photos are not analyzed by machine learning, not used to train models, and not shared with third parties.
Device-specific tokens issued by Apple Push Notification service or Firebase Cloud Messaging. Used solely to deliver notifications you have opted into (invoices paid, appointments confirmed, route updates). You can disable notifications at any time in your device settings.
For every email, SMS, or push notification sent through Gatepost we log the sender, recipient, subject or template, timestamp, and delivery status. This is used to provide delivery receipts, support troubleshooting, and SMS compliance audit records. Message bodies for SMS are retained for 30 days for support purposes, then deleted.
The Gatepost web app uses first-party cookies and local storage for session authentication and to remember preferences (e.g., your developer-portal home preference). The mobile app uses secure on-device storage (Expo SecureStore / iOS Keychain / Android Keystore) for auth tokens. We do not use third-party advertising cookies, cross-site trackers, or analytics fingerprinting.
Basic application logs (feature use, error traces, performance timing). Used to improve reliability. Not linked to advertising profiles. Crash logs may include an account identifier so we can reproduce the issue.
If you fill out the early-access form at getgatepost.com/early-access we collect name, email, business name, and how you heard about us. Used to evaluate beta requests and contact you when your spot is ready.
We collect personal information from these sources:
We do not use personal information for advertising, profiling, or to train third-party AI models.
We share personal information only as needed to operate the Service or as required by law. The categories of recipients are:
We do not sell personal information and we do not share personal information for cross-context behavioral advertising, as those terms are defined under the California Consumer Privacy Act.
Gatepost relies on the following sub-processors. Each has its own privacy policy governing how they handle data we send them.
We share the minimum data necessary for each provider to perform its function. We update this list as we add or remove providers; check this page for the current list.
All Gatepost data is stored on infrastructure operated by our sub-processors, primarily in the United States. Data is encrypted in transit (TLS 1.2+) and at rest (AES-256). Database access is enforced by row-level security at the database layer — each Gatepost user can only read or modify data belonging to their own business.
Production credentials are managed in secure environment variables. We do not log passwords, payment card numbers, or full session tokens.
Breach notice. If we discover a security incident that compromises personal information, we will notify affected customers without undue delay, and within the timeframes required by applicable state law.
We retain personal information only as long as we need it:
You have the right to:
How to exercise these rights:
We will not discriminate against you for exercising any of these rights — your service and pricing will not change.
This section gives the additional disclosures required by the California Consumer Privacy Act, as amended by the California Privacy Rights Act.
Categories of personal information collected in the past 12 months: identifiers (name, email, phone, address, account ID, IP address); commercial information (subscription status, purchase history); internet/network activity (usage logs, device info); geolocation (mobile, only with consent and only during active trips); visual information (uploaded photos); professional information (business name, role); inferences are not drawn from this data for advertising.
Sensitive personal information: precise geolocation (mobile, during active trips) and account login credentials. We use sensitive PI only for the purposes described in Section 5 — never for advertising or profiling.
Sources, purposes, and disclosure categories: see Sections 4, 5, 6, and 7.
Sale or sharing: We do not sell personal information and do not share it for cross-context behavioral advertising. No opt-out is necessary because no sale or sharing occurs. We have not sold or shared personal information of minors under 16 in the preceding 12 months.
Your California rights: right to know, right to delete, right to correct, right to limit use of sensitive PI, right to data portability, right to non-discrimination. To exercise any right, contact privacy@getgatepost.com. We may need to verify your identity (typically by confirming control of the email on file). You may use an authorized agent; we will require written proof of authorization.
Metrics: we are a small business and currently fall below the CCPA threshold requirements that would require us to publish annual request metrics; if that changes, we will publish them here.
Gatepost sends transactional SMS messages to your customers on a business's behalf through Twilio. SMS is used only for appointment-related communication. We do not send marketing SMS.
Message types: appointment reminders, two-way confirmation
requests, and en-route arrival notifications.
Frequency: up to 3 messages per scheduled appointment.
Message and data rates may apply.
Opt-out: reply STOP to any message. Reply
HELP for help. Opt-out is honored immediately and persists for
all future messages from the same business.
Customer mobile phone numbers are used solely to deliver appointment-related SMS. We do not sell, share, or rent customer mobile numbers for marketing. Numbers are shared with Twilio only as necessary to deliver authorized messages.
Full consent practices are documented in our SMS Consent Policy.
Gatepost is a professional business tool intended for adults. We do not knowingly collect personal information from anyone under the age of 13. If we learn we have collected information from a child under 13, we will delete it promptly. If you believe a child has provided us with personal information, please contact privacy@getgatepost.com.
Gatepost is operated in the United States and the Service is intended for U.S. service businesses. If you access the Service from outside the U.S., your information will be transferred to and processed in the U.S. We do not currently offer GDPR or UK-GDPR rights frameworks; if you require those protections, please do not use the Service.
The Gatepost mobile app requests the following permissions. Each is optional and can be revoked in your device settings; revoking a permission disables only the feature that depends on it.
Apple App Store privacy nutrition labels reflect the categories described above. Data is collected only as needed to operate the feature you are using; nothing is collected for advertising or third-party tracking.
Account deletion in the mobile app: Profile → Delete Account permanently removes your account and associated data. This satisfies Apple's account deletion requirement.
We may update this Policy as the Service evolves or as the law changes. The "Last updated" date at the top reflects the most recent revision. For material changes we will notify active users by email or in-app notice at least 14 days before the change takes effect, unless the change is required immediately by law. Continued use of the Service after the effective date constitutes acceptance.
DT Technologies DBA Virtual Office WI
Attn: Privacy
Wisconsin, USA
Email: privacy@getgatepost.com
Website: getgatepost.com