F Fieldsworn
Why we exist What's different How it works Who it's for
Book a pilot

Fieldsworn Inc.

Privacy

We photograph the inside and outside of people's homes. That is the most sensitive thing we hold, and this page says plainly what happens to it.

Effective 15 September 2026. Last updated 15 September 2026.


The short version

  • Your insurer engaged us to inspect your property. They gave us your name, your address, and your contact details. We did not buy them, and we will not add to them.
  • We take photographs of the property and record where and when each one was taken.
  • We send those photographs to an AI provider to help classify what is in them. A person reviews and signs off every report before it goes anywhere.
  • The report goes to your insurer. That is the point of the work.
  • We do not sell anything to anyone. We run no advertising, we do no tracking, and there is no analytics software in our app or our portals.
  • We do not hold your Social Security number, your date of birth, your card number, or your bank details. We never ask for them.

1. Who we are

Fieldsworn Inc. is a New York corporation performing field property inspections for insurance carriers. Where we hold information about a policyholder, we hold it as a service provider to that person's insurer — under the Gramm-Leach-Bliley Act's service-provider exception — solely to perform the inspection the insurer engaged us for. That is a real constraint on what we are permitted to do with it, and several of the limits further down this page exist because of it.

For anything on this page: info@fieldsworn.com.

2. Who this covers

Three different groups of people, who reach us in three different ways.

  • Policyholders, homeowners, landlords and tenants at properties we inspect. Most of you did not choose us — your insurer did. Section 3 is about you.
  • Our field representatives and staff, who use the Fieldsworn mobile app and our internal portals. Section 4 is about you.
  • Carrier staff who use the carrier portal. Section 5.

3. Information about people whose property we inspect

What we hold

CategoryDetail
Identity and contactName, email address, telephone number. For rented and managed buildings, the property manager's name and number.
Property locationStreet address and geographic coordinates. Where the owner's mailing address differs from the building — normal for rentals and multi-family — we hold both.
PhotographsImages of the property, each with the coordinates and the time it was captured. For interior and move-in/move-out work, images from inside.
Inspection findingsConstruction, condition, measurements, and the sketch a representative draws on site.
CorrespondenceThe notices we are required to send before a visit, the address or number each went to, and whether the provider confirmed delivery.
SchedulingThe time you chose, or your instruction that nobody needs to be present, or your refusal.
Prior reportsWhere your insurer supplies reports from whoever inspected the property before us, we hold and read those too.

Where it comes from

Almost all of it comes from your insurer, not from you. They hold the policy; they gave us the book. The rest comes from the visit itself — the photographs, the measurements, and anything you tell a representative at the door or through the scheduling page.

We also check addresses against the United States Census Bureau's public geocoding service. That sends an address and receives coordinates. It is a US government public-record service, and we name it here rather than leave it buried.

What we use it for

  • Telling you a visit is coming, and letting you schedule it, decline it, or say nobody needs to be home.
  • Getting a representative to the right door at a time that works.
  • Producing the inspection report your insurer engaged us to produce.
  • Quality review — a named person checks the work before it is delivered.
  • Keeping the evidence that we did what we said: which notice went out, when, and whether it arrived.

4. The mobile app and our field representatives

The Fieldsworn app is a work tool for our own representatives. It is not for the general public and there is nothing in it for a member of the public to use. Here is every permission it asks for and why.

PermissionWhat it is for
CameraTaking the inspection photographs. This is the job.
LocationCaptured at exactly three moments: when a photograph is taken, so the image records where it was shot; at clock-in and clock-out, so a shift has a place as well as a time; and when a required notice is hand-delivered, so the delivery has evidence. Foreground only. The app does not watch location continuously and does not request background location — when it is closed, it knows nothing about where anyone is.
NotificationsRoute assignments and job updates. This uses an anonymous per-install token, not a phone number.

The app does not use the microphone. It holds no audio permission, it contains no audio or video recording code, and the permission is explicitly blocked in the build so it cannot be reintroduced by accident.

There is no analytics, no crash reporting, no advertising identifier and no tracking software of any kind in the app. Mileage is a number a representative types from their own odometer — it is not derived from tracking anyone's movements.

About our own people we hold: name, email, telephone, role, professional licence details where the role requires one, identity and eligibility documents, hours worked, declared mileage, and training completion. Payment runs through Stripe; we hold Stripe's identifiers, never bank details.

5. Carrier staff

Name, work email, and the access record for what they did in the portal — which orders they placed, which reports they opened. Every access to policyholder-linked data is logged.

6. Artificial intelligence

We use AI, and carriers and homeowners both ask about it, so here is the whole answer.

  • What is sent: inspection photographs, and prior-vendor PDFs where an insurer supplied them. Sent as image data directly, never as a public link — our storage is never made publicly readable to serve a model.
  • What comes back: classifications drawn from a fixed vocabulary, and text transcribed from a document. Nothing else.
  • The model classifies. A table prices. No dollar figure in any report is produced by a model. Replacement cost comes from a published cost table a person loaded with a written, citable source.
  • A human signs. Every report clears review by a named person, and any override of an automated flag carries a written reason that stays on the record permanently.

Our AI provider is Anthropic. Photographs reach them at the moment of a request.

7. Who else sees it

Your insurer. The finished report, and the status of the work, go to the carrier who ordered it. That is the purpose of the engagement.

The companies below process data on our behalf. We do not sell data to anyone, ever.

ProviderWhat it handles
NeonThe application database
RailwayHosting for our API
CloudflareStorage for photographs and reports; hosting for our websites
AnthropicAI classification and document transcription
StripePayments and contractor payouts
ResendEmail notices
TwilioText messages and automated calls
LobPrinting and posting physical letters
ExpoPush notifications to the app
MicrosoftOur company email

We will also disclose information where the law requires it, or to establish or defend a legal claim — which includes producing the evidence that a required notice was properly given.

8. What we refuse to do

These are limits we have built into the product, not intentions.

  • We verify contact data. We never append it. If your insurer's record is missing your phone number, we report the gap back to them. We do not buy one from a data broker. Consent does not transfer with a purchased number, and this platform sends texts and places calls.
  • We never overwrite your insurer's record of you. We annotate what we could not confirm; we do not silently correct it.
  • We do not sell, rent, or share data for anyone's marketing.
  • We do not hold Social Security numbers, dates of birth, payment card numbers, or bank account numbers.
  • We buy no consumer data from brokers.

9. How long we keep it

We keep information for as long as we need it to perform the inspection, and afterwards for as long as our contract with the insurer and the law require — an inspection report is a document that may have to be defended years later, and the record that a required notice was sent is part of it.

Retention periods are set in our agreement with each insurer, and that number governs their book. When an insurer's engagement ends, we return or destroy their data on their instruction and issue a numbered certificate recording exactly what was destroyed and what was kept.

Where we are required to keep the fact that something happened, we remove the parts that identify a person rather than keeping the whole record. A delivered notice, for example, keeps its date and its outcome and loses the address it went to.

10. Where it is stored

Our infrastructure providers are United States companies and our operations are in the United States. One exception is worth stating plainly rather than leaving you to assume: our object storage for photographs is configured for automatic geographic placement, which means image files may be stored in a data centre outside the United States. We would rather say so than imply a guarantee we cannot currently make.

11. How we protect it

  • Encrypted in transit on every connection that leaves our infrastructure, and encrypted at rest in the database and in file storage.
  • Passwords are hashed, never stored or logged in readable form. Second-factor secrets and integration credentials are encrypted under separate keys.
  • Access is scoped by role and by carrier. A carrier sees their own book and no one else's.
  • Every access to policyholder-linked data is written to an audit log, and a failure to write that log raises an alert.
  • A reviewer cannot approve an inspection carried out by their own account.
  • Two-factor authentication is available on every portal account.

We maintain a written information security programme as New York's SHIELD Act requires. If a breach affects your private information, we will notify you and the authorities as the law requires.

No system is perfectly secure, and anyone who tells you otherwise is selling something.

12. Your choices

  • Text messages and calls: reply STOP to any text to stop them. This does not stop a required notice sent by post or email, because that notice is not something you opted into — it is something your insurer is required to send.
  • The visit: you can schedule it, tell us nobody needs to be present, or refuse. A refusal stops us dispatching anyone and is reported to your insurer.
  • Access and correction: because we hold your information on behalf of your insurer rather than on our own account, requests about it are usually best directed to them — they are the ones who decide. Write to us anyway if that is easier, and we will route it and tell you what we did.

We will not discriminate against you for exercising any of this. We are also not able to delete a record your insurer requires us to keep, or one under a legal hold, and we will say so plainly rather than going quiet.

13. Children

Nothing we operate is directed at children and we do not knowingly collect information about them. Children may of course live at a property we photograph. Our representatives are instructed not to photograph people at all.

14. Changes

If we change this page we will update the date at the top. If a change materially alters what we do with information we already hold, we will say so directly rather than rely on you noticing.

15. Contact

Fieldsworn Inc.
72-19 65th Place
Glendale, NY 11385
United States
info@fieldsworn.com

F Fieldsworn
Carriers Owners QA review Privacy [email protected]
Photos are GPS- and time-stamped at capture. · © 2026 Fieldsworn