Privacy Policy
Last updated: September 16, 2026
QMaster LLC d/b/a Honos operates the Honos platform (honosclub.com) and the mobile applications Honos, Honos Pro and Honos Dispatch. This policy explains what personal information we collect, why we collect it, who we share it with, how long we keep it, and the rights you have over it.
This English text is the legal original. The Russian and Spanish versions are provided for convenience; if they differ, the English text governs.
This policy is written to meet the requirements of the New York SHIELD Act (N.Y. Gen. Bus. Law §§ 899-aa, 899-bb) and the rules of U.S. mobile carriers.
1. Information we collect
- Account information: first and last name, mobile phone number, email address, date of birth (used for the birthday bonus), and the language you prefer.
- Service information: the service address, what needs repair, photographs of the appliance taken by you or by the technician, the estimate, your signature on the estimate and on the service agreement, and payment records.
- Loyalty information: points earned and redeemed, your membership level, your referral code and who invited you.
- Consent records: the date, the method, the language and the exact text of the consent you gave to receive text messages.
- Technical information: device identifiers used to deliver push notifications, and the approximate location of your device when you open the map to find companies near you.
- We do not collect or store payment card numbers. Card payments are processed by Stripe, and the card data goes directly to Stripe.
- We do not collect fingerprints, face scans, or any other biometric identifiers.
2. The service address
The address attached to an order is the service address — the place where the work is to be performed. It is not, by itself, a record of where you live. It is often the same as the address in your profile because that is the convenient default, but you may give a different address for any order: a relative’s home, an office, or a property you rent out.
The profile address is optional. You can leave it empty and give the address only when you place an order.
3. Why we use it
- To create and protect your account, and to confirm that a phone number belongs to you.
- To schedule visits, perform the work, prepare estimates, take payments and keep the record of what was done.
- To run the loyalty program: earn and redeem points, apply your membership level, and credit referrals.
- To notify you about your orders and your points, through the channels you agreed to.
- To meet legal, tax and accounting obligations, and to defend a claim if one is made.
4. Text messages
We do not sell, rent, or share your mobile phone number or SMS opt-in consent with third parties or affiliates for their own marketing or promotional purposes. Mobile information will not be shared with third parties or affiliates for marketing or promotional purposes. We share your number only with vendors who send text messages on our behalf and only to deliver the Honos messages you requested or consented to.
You can stop text messages at any time by replying STOP. We keep a record of your consent and of your withdrawal — see section 7. See our SMS Terms for the full program description.
5. Signatures: electronic, not biometric
When you sign an estimate or a service agreement with your finger on a screen, you are giving an electronic signature within the meaning of the federal ESIGN Act (15 U.S.C. § 7001) and New York State law. By signing this way you agree that an electronic signature has the same legal effect as a handwritten one.
What we store is an image of the mark you drew, together with the date, the document it belongs to and the version of the text you signed. We do not analyse the drawing, we do not extract any measurement from it, and we do not use it to identify you. It is a record of your agreement, not a biometric identifier: it is never used for authentication, and it is not run through any recognition system.
6. Who can see your information
Honos is a platform of independent service companies. Your account is one; the companies are separate.
- A service company sees your information only after you join it yourself, place an order with it, or give your details to it directly. Before that, the company does not know that you exist.
- A company sees only its own relationship with you: your orders with that company and your points with that company. Your history with any other company is never shown to it.
- Service providers acting on our behalf: Stripe (payments), Twilio (text messages), Resend (email), Google (maps and geocoding), Firebase (push notifications), and our hosting provider. They may process your data only to provide these functions to us, and not for their own purposes.
- Law enforcement or government agencies, when we are legally required to disclose information.
- We do not sell your personal information, and we do not share it for cross-context behavioural advertising.
7. How long we keep it
We keep each kind of record only as long as there is a reason to:
- Account information: while your account exists, and up to 30 days after you ask us to delete it.
- Loyalty points and the history of how they were earned and spent: while your account exists, and 3 years after it is closed — points are a liability we may have to account for.
- Payment records and receipts: 7 years from the payment, as tax and accounting practice requires.
- Signed estimates and service agreements, including the signature image: 7 years from the date of signature, the period within which a claim about the work can still be brought.
- Photographs attached to an order: 3 years from the completion of the order; they are evidence of the condition of the appliance before and after the work.
- SMS consent records: 4 years after consent is withdrawn or the account is closed, because a complaint about text messages can be brought within that period. This is the record that protects you as much as us: it shows exactly what you agreed to.
- Server logs: 90 days.
8. Your rights
You may exercise any of these rights free of charge, once we have confirmed your identity.
- Access and export: ask for a copy of the personal information we hold about you. We answer within 45 days and provide it in a readable, portable format.
- Correction: ask us to correct information that is wrong. We correct it or explain why we cannot.
- Deletion: ask us to delete your account and your personal information. We do it within 30 days and tell you what we are required by law to keep — normally the financial record of paid orders and the signed documents listed in section 7, without the details that are no longer needed.
- Withdraw SMS consent: reply STOP to any message, or turn it off in the application, at any time and without giving a reason. Withdrawal does not affect anything else in your account.
- Complain: if you believe we have handled your information wrongly, write to us first. You may also contact the Office of the New York State Attorney General.
9. How to reach us about your data
Write to qmasterllc@gmail.com from the email address on your account, or call +1 929 703-7117. Put “privacy request” in the subject line. We confirm every request when we receive it, and we tell you what we did when we are done.
10. How we protect it
We maintain a data security program with administrative, technical and physical safeguards appropriate to the size and complexity of our business and to the sensitivity of the information, as required by the New York SHIELD Act. In particular:
- Encryption in transit: all traffic between your device and our servers travels over TLS (HTTPS). Nothing personal is sent over an unencrypted connection.
- Encryption at rest: the database, the uploaded photographs and signatures, and the backups are stored on encrypted storage.
- Passwords are never stored in readable form; they are stored as a one-way hash (bcrypt).
- Access is limited by role and by company. Staff of one company cannot see the customers, orders or money of another company.
- Working sessions can be revoked. When a staff member leaves, their access ends immediately rather than at the end of a token’s life.
- The database and the file storage are not reachable from the public internet; only the web entry point is.
- We designate an employee to coordinate the security program, we review who has access and remove access that is no longer needed, and we select service providers capable of maintaining appropriate safeguards.
- We dispose of private information within a reasonable time after it is no longer needed, in a way that makes it unreadable.
11. If there is a breach
If we discover that private information has been acquired by, or disclosed to, an unauthorized person, we will notify the affected people in the most expedient time possible and without unreasonable delay, consistent with the legitimate needs of law enforcement and with any measures necessary to determine the scope of the breach and restore the integrity of the system.
The notice will describe what happened, what information was involved, what we have done about it, and how to reach us. Where the SHIELD Act requires it, we will also notify the New York State Attorney General, the Department of State and the Division of State Police, and, where the numbers require it, the consumer reporting agencies.
12. Children
Our services are intended for adults. You must be at least 18 years old to create an account or order work — see the Terms of Service. The service is not directed to anyone under 18, and we do not knowingly collect personal information from minors. If you believe a minor has given us information, write to us and we will delete it.
13. Changes
If we change this policy we will post the new version on this page and update the date at the top. Material changes will also be announced in the application before they take effect.
14. Contact
QMaster LLC d/b/a Honos, a New York limited liability company
1820 Avenue M #814, Brooklyn, NY 11230
qmasterllc@gmail.com · +1 929 703-7117
honosclub.com