AFP Desk
AFP Desk — Privacy Policy
Effective September 8, 2026
This policy explains what AFP Desk ("AFP Desk", "we", "us") collects, how we use it, and your choices. It covers the AFP Desk web applications, portal, dispatch desk, API and monitoring tools (the "Services").
1. Our role, and yours
AFP Desk serves businesses, not consumers. Two different roles apply:
- For your company's account information, we act for ourselves — we decide how it is used.
- For the operational data you put into the Services — including your drivers' names, phone numbers, pay rates, schedules and hours-of-service records — you are the controller and we process it on your behalf, under your instructions and the Terms of Service. Your drivers are your people. If a driver asks about their data, that request goes to you, and we will help you answer it.
2. What we collect
Account information you give us: name, company name, email, phone number, timezone, language, and optionally your USDOT number.
Operational data you or your team enter or import: driver records (name, email, phone, pay rates, hour caps, availability, notes, optional photo), truck records, loads and trips, schedules, dispatch logs, and payroll and performance reports.
Connected account data. For Dispatch Pro, Safety Pro, Dispatch Pro+ and Self Dispatch Pro, we access accounts you hold with third-party systems, using the access you grant us:
- Amazon Relay — board and trip signals: arrivals, departures, yard status, delay codes, trip and leg identifiers, and driver hours-of-service readings;
- Geotab — vehicle telematics, location and hours-of-service records;
- Netradyne — driver safety events, alerts and driver scoring.
We store the resulting alerts, events and snapshots in your workspace. Where a safety event needs review we view camera video inside your own Netradyne account; we do not download, export or store that video, and we never use driver video, telematics or safety scores to train any model. These are your accounts with your vendors — see the Terms of Service.
Communications. Support messages, and the content of dispatch notes and alerts our personnel record for your account. For managed dispatch we call and text your drivers on your behalf, and we keep a record of what was sent. We do not record calls.
Usage and technical data: login timestamps, session cookies needed to keep you signed in, IP address, browser and device information, and audit logs of actions taken in your workspace.
We do not collect payment card numbers. Stripe collects and stores those directly.
3. How we use it
To provide, operate and support the Services; to dispatch and monitor for the services you purchased; to send alerts by portal, email and SMS; to bill you and process subscriptions; to send account, billing and security email; to answer support requests; to detect and prevent fraud, abuse and security incidents; to keep audit records; and to meet legal obligations.
We also create de-identified and aggregated information — which does not identify you, your company or any driver — to monitor performance, benchmark and improve the Services.
We do not sell personal information, and we do not share it for cross-context behavioral advertising. We do not use your data to advertise to you.
4. Who we share it with
Service providers who help us run AFP Desk, each under their own confidentiality and security commitments and permitted to use the data only to serve us:
| Provider | Purpose |
|---|---|
| Stripe | Payment processing and subscription billing |
| Resend | Transactional email (receipts, password resets, verification, alerts) |
| Twilio | SMS alerts and driver text messaging |
| Vercel | Web application hosting |
| Railway | API, worker and database hosting |
Resellers ("Providers"). If your account was set up or is serviced by an authorized AFP Desk Provider, that Provider's administrators can see your workspace in order to serve you. They are bound by a written agreement covering confidentiality and data protection.
Systems we connect to on your behalf. Amazon Relay, Geotab and Netradyne are your accounts with your vendors, not ours. We read from them with the access you grant and write back only what you ask us to. What those vendors collect is governed by their own agreements and privacy terms with you, which we do not control.
Legal and safety. We may disclose information if required by law, subpoena or lawful request, or where necessary to protect our rights, our users, or the safety of any person.
Business transfer. If the AFP Desk business is reorganized into a company, sold, merged or transferred, account and operational data may transfer as part of that transaction. This policy continues to apply until replaced.
4A. Text messaging (SMS) and mobile information
When a trucking company uses AFP Desk to text schedule information to its drivers, we process the driver's mobile number, the message content, and delivery and opt-out status so we can send the message and honor opt-outs. We do not sell, rent or share mobile phone numbers, SMS opt-in data or consent with third parties or affiliates for their marketing or promotional purposes. Mobile information is shared only with our messaging service provider (Twilio, see above) so that messages can be delivered, and as required by law. Message and data rates may apply. Reply STOP to opt out of text messages at any time, or HELP for help. See section 5A of our Terms of Service for the full SMS Terms.
5. Retention and deletion
We keep account and operational data while your workspace is active. When a workspace is canceled it enters a 30-day recovery window — access is suspended, data is retained, and it can be restored on request. After that window the workspace and its data are permanently deleted and cannot be recovered.
We may keep billing records, audit logs and de-identified data for as long as needed for legal, tax and security purposes.
You can export your operational data at any time from your workspace.
6. Security
We use encrypted connections (HTTPS/TLS), hashed passwords, scoped session tokens, role-based access controls, per-workspace data isolation, and audit logging. Access by our personnel is limited to the customers they are assigned to. Connected account credentials and monitoring tokens are stored in hashed or encrypted form, used only to deliver your service, and destroyed when you cancel or revoke access.
No system is completely secure and we cannot guarantee absolute security. Tell us at contact@afpdesk.com immediately if you believe your account has been compromised.
7. Your choices and requests
You can review and update account information in your workspace settings at any time. You can request a copy of your data, ask us to correct it, or ask us to delete your account by emailing contact@afpdesk.com. We will verify your identity and respond within the time the law allows.
You can turn off SMS and email alert channels in your notification settings. Recipients can opt out of texts by replying STOP. Account, billing and security messages cannot be turned off while your account is active.
8. California residents
If your business or its personnel are in California, the CCPA/CPRA may apply. We do not sell or share personal information as those terms are defined, and we do not use sensitive personal information for anything beyond providing the Services. California residents may request access, correction, deletion, and details of what we collect and disclose, and will not be discriminated against for exercising those rights. For driver data, direct your request to the carrier that employs you; we will support them in responding. To make a request, email contact@afpdesk.com.
9. Where we operate
AFP Desk is offered to businesses in the United States and data is processed there. The Services are not directed at users outside the United States, and we do not offer them under the GDPR or other non-US privacy regimes.
10. Children
The Services are for business use by motor carriers and their teams. They are not directed at children and we do not knowingly collect information from anyone under 18.
11. Changes
We may update this policy. For material changes we will update the effective date above and, where appropriate, notify account administrators by email or in-app.
12. Contact
contact@afpdesk.com