1. Who this policy covers
This policy describes how Frontier Freight House LLC (Frontier, we, or us) handles personal information through our website, Frontier TMS, Frontier Passport, and our driver applications.
We decide how to process information for our own accounts, subscriptions, support, website operations, and personal Passport service. For carrier-managed records, we generally process information on the carrier’s behalf. A carrier decides which personnel can access its records and how it uses them for dispatch, hiring, pay, safety, and other business purposes. Direct requests about those records to the carrier; we can help route your request. Direct requests about your personal Passport or Frontier account to us.
2. Information we collect and why
Accounts and communications
We process names, email addresses, phone numbers, company details, roles, sign-in information, preferences, and support correspondence to create and secure accounts, manage access, and answer requests. The website’s call-request form opens an email draft in your email application; the message is sent when you send it.
Carrier operations and uploaded files
Information entered by you or your carrier can include loads, pickup and delivery addresses and contacts, reference numbers, rates, mileage and deadhead, fuel entries, equipment, maintenance notes, accident and inspection reports, photos, bills of lading, proof of delivery, receipts, invoices, factoring packets, settlements, owner-operator percentages, expenses, and pay records. We use these records to provide the selected workflows, calculations, reports, and document delivery.
Passport, credentials, and hiring
Profiles and documents may contain your home address, date of birth, CDL number and issuing state, license class, endorsements, experience, certifications, expiration dates, and a medical examiner’s certificate or medical card. Hiring forms may also contain address and employment history, driving history, accidents, violations, and suspensions. Carrier-managed onboarding can include tax identifiers such as a Social Security number after hiring. Medical cards contain health-related information; identity documents and precise location can also be sensitive personal information.
We process this information to provide credential storage and reminders, document sharing, applications, and carrier onboarding. Submit only information needed for the relevant task. Your personal Passport can be used without joining a carrier. Submitting an application or sharing a document can create a separate carrier or recipient copy.
Signatures and document activity
Electronic signing can store signature or initials images, consent records, signed files, and signing activity. Document sharing records can include recipients, selected files, expiration and revocation status, and whether a link has been opened. These records support document delivery and the history of the transaction.
Payment information
Stripe handles subscription checkout and payment processing. We receive billing contacts, subscription and invoice records, payment status, and limited payment-method details such as card brand and last four digits. We do not store full payment card numbers. Carrier-entered settlement and pay records are separate from your payment for a Frontier subscription.
Technical information
Our infrastructure processes request information such as IP addresses, browser or device information, timestamps, authentication events, errors, and service usage needed to operate, protect, and troubleshoot the Services. Android scanner diagnostics are described below.
3. Connected fleet data and location
When an authorized carrier connects an ELD or GPS provider, Frontier uses the connection credentials and granted permissions to retrieve available vehicle and driver records. Depending on the provider and plan, these can include vehicle IDs, VINs and plates, driver names and license identifiers, precise vehicle coordinates, location timestamps, speed, heading, odometer readings, engine or reefer information, hours-of-service status and remaining hours, and mileage by jurisdiction.
These records support fleet maps, dispatch, mileage and IFTA workflows, and driver availability. Scheduled imports can continue while a connection is enabled even when a driver is not using the Frontier app. This is different from phone location: choosing a location action in a road report uses your device location with your permission. Turning off phone location does not turn off a carrier’s ELD integration.
Carriers are responsible for informing their drivers and obtaining any necessary authority or consent for workplace and vehicle monitoring. An authorized carrier user can disconnect an integration to stop future imports through that connection. Disconnecting does not automatically erase previously imported business records or information held by the original provider.
4. Scanning and AI-assisted processing
The native iPhone document scanner uses Apple VisionKit. Supported Android builds use Google ML Kit through Google Play services. Native document scanning processes the images on the device to prepare a PDF; saving or uploading it in Frontier sends that file to our storage for the selected workflow. Browser scanning and file selection are available where supported. Camera or photo access depends on your device and the action you choose.
Google’s ML Kit SDK can send Google device and application information, device or installation identifiers, performance and error information, and technical details about feature use for diagnostics and usage analytics. Google states that document-scanner images and results are processed on-device. See Google’s ML Kit data disclosures and document scanner description.
AI extraction is a separate operation from scanning. AI-assisted rate-confirmation, settlement, and license reading can send the selected document or image to Anthropic’s API. AI assistant requests can send your question and relevant company records needed to answer it. Files may contain personal information; the document’s contents, not just its filename, may be processed.
We use the returned information to fill fields or provide the requested response. Review it against the original before relying on it. Anthropic handles API data under its commercial terms and retention rules; this policy does not promise zero retention. Its standard API retention has exceptions, including safety and legal requirements. See Anthropic’s API retention explanation. Only provide documents you are authorized to submit for this processing.
5. Who receives information
The services involved depend on the feature you use. Not every provider receives every category of data.
- Vercel: website and application hosting, including web requests and server-side processing.
- Supabase: authentication, application databases, and uploaded-file storage.
- Resend: delivery of application emails, including recipients and message content.
- Stripe: subscription checkout, billing, and payment-related information.
- Anthropic: documents, questions, and relevant records submitted for AI-assisted features as described above.
- Connected fleet providers: authentication and data requests for the provider your carrier connects. Supported connectors include Geotab, Blue Ink Tech, EROAD, GPS Insight, Azuga, Linxup, Samsara, and Motive; availability and imported fields depend on the connection.
- HERE or openrouteservice: addresses, coordinates, and relevant routing parameters for geocoding and mileage estimates. National Weather Service: location coordinates for weather requests. OpenFreeMap: map-resource requests, which can reveal your IP address and requested map area. Opening navigation in Apple Maps or Google Maps sends the selected locations to that service.
- Apple and Google device services: scanner and platform functionality, including the Android SDK diagnostics described above.
We also disclose information to people you or your carrier authorize: company members with relevant access, hiring recipients, document-share recipients, and recipients of invoices or factoring packets. A share link may be forwarded, so share it carefully. Revocation prevents future access through that link but cannot retrieve downloaded files or independent carrier copies.
We may disclose information when required by law or valid legal process, to investigate abuse or protect rights and safety, or in connection with a business transfer. If a transfer would make information subject to a materially different privacy policy, we will provide notice. A provider’s own handling of its account, platform, or independently collected data is subject to its terms and privacy notices.
6. Cookies, marketing, and other uses
Authentication uses session technologies needed to keep you signed in. Browser storage also remembers interface preferences such as the website’s theme. The current marketing website does not embed advertising pixels or a separate audience-analytics SDK. Infrastructure logs and native scanner diagnostics are separate from advertising tracking. We will obtain consent before introducing nonessential tracking where required. Browser controls can remove local storage and cookies; blocking authentication storage can prevent sign-in.
We use information to operate and secure the Services, provide support, process billing, send transactional notices, investigate misuse, and comply with legal obligations. Where a legal basis is required, the relevant basis may be performance of a contract, legitimate interests in providing and securing the Services, a legal obligation, or consent, depending on the activity and applicable law.
We may send product updates. You can opt out of marketing through the message’s opt-out method or by contacting us. Necessary account, security, and billing messages can continue.
We do not sell personal information or share it for cross-context behavioral advertising. We do not use carrier operational records to build advertising profiles. We do not use automated processing to make a final hiring or other similarly significant decision about you; the carrier remains responsible for its decisions.
7. Retention and deletion
Retention depends on the record’s purpose, whether it belongs to a carrier or a personal account, applicable recordkeeping duties, disputes, and legal holds. The Services do not apply a single 30-day deletion period to all records.
- Personal-account deletion: the deletion process removes the login and associated personal Passport records and initiates removal of related personal files. A file-removal failure can require follow-up; deletion is not a promise that every copy disappears simultaneously. There is no general 30-day restoration window for a deleted personal login.
- Carrier records: deleting a personal account or leaving a carrier does not automatically delete its load, pay, hiring, safety, signed-document, or other business records, which may identify you. Carrier copies of previously submitted or shared documents may remain. Requests about these records are handled with the carrier and applicable law.
- Company closure: closing a company disables its memberships and access; it does not automatically delete company records. Request an export or deletion review separately. Closing a carrier does not itself delete a driver’s independent Passport.
- Hiring attachments: a scheduled process can remove eligible CDL and medical-card attachments after the applicable application-retention window, unless retained for a hired driver or a hold. Removing attachments does not delete the underlying application record.
- Billing, security, and requests: transaction records, deletion-request records, and information needed for legal obligations, fraud prevention, or disputes may be retained after account deletion. Provider backups and logs can have separate retention periods and may not be erased immediately when an active record is deleted.
Ask us about retention for a particular record or request deletion using the contact below. Archiving an item hides it from an active view; it does not necessarily delete its underlying information.
8. Your choices and privacy requests
You can update supported profile fields, manage document-share links, and use available report exports. Device settings control camera and phone-location permissions. Carrier administrators control integration connections and company access. These controls do not recall copies already lawfully provided to another recipient.
Delete your account: use the account-deletion option in the app or follow our public account-deletion instructions. An owner may need to appoint another owner or close the company first. If you cannot sign in, contact us for identity verification and assistance. Export needed personal records before deleting your login.
Depending on applicable law, you may have rights to access, correct, delete, or obtain a portable copy of information, restrict or object to processing, withdraw consent, or opt out of specified profiling or advertising uses. Withdrawing consent does not undo prior lawful processing. We do not discriminate against you for exercising applicable privacy rights.
Email admin@frontierfreighthouse.com with your request. We may verify your identity and, where applicable, an agent’s authority. Do not send a password or full identity document in your initial email. We will respond within the applicable legal deadline, explain any permitted extension or refusal, and route carrier-controlled requests appropriately.
Appeals: if we decline a request, reply to our decision or email the same address with “Privacy appeal” and explain what you want reviewed. We will review it and explain the outcome within the applicable deadline. You may also complain to your relevant regulator. Kentucky residents can find the complaint process through the Kentucky Attorney General’s Office of Data Privacy.
9. Security and processing locations
Measures in the Services include authenticated access, company and role-based access restrictions, private-file access controls, and encryption of stored ELD connection secrets. No software or storage system is completely secure. If a breach requires notification, we will notify affected people or customers as required by applicable law.
Frontier operates in the United States. Providers may process information in the United States and other countries. Contact us for information about applicable processing arrangements and transfer safeguards. This policy does not itself establish a data-processing agreement or certify compliance with a particular regulatory or security framework.
10. Children
The Services are intended for adults 18 and older, not children. If you believe a child has provided personal information, contact us so we can investigate and arrange its removal as appropriate.
11. Policy changes and contact
We will provide notice by email or in the product before material changes take effect, and obtain consent where required. Revision dates identify changes to this document; they do not replace required notice or consent.
For privacy questions or requests, email admin@frontierfreighthouse.com.
Frontier Freight House LLC
Kentucky, United States