Privacy Policy
Last updated: October 9, 2026
TrussCharts ("we", "our", "us") is a product of Journeys Through Search ("JTS"). This policy describes what we collect, how we use it, and your rights.
What we collect
From this website
- Information you submit through the contact form (name, email, company, systems you use, free-text).
- Server logs, including IP address, user agent, and pages visited, retained for security and debugging.
- Analytics data, including anonymized usage of this site.
From client dashboards we build
When we build a custom dashboard for a client, we access the data sources they authorize (phone systems, CRMs, ad accounts, EMRs, etc.). We only access the fields the client explicitly grants, and we store aggregated or necessary identifying data to power the dashboard. For healthcare clients subject to HIPAA, we sign a Business Associate Agreement (BAA) and follow its terms.
How we use information
- To respond to inquiries you submit through the contact form.
- To build, host, and maintain custom dashboards for paying clients.
- To improve the TrussCharts service.
- To comply with legal obligations.
We do not sell personal information. We do not share client data between clients.
Third-party services
We use the following service providers to operate this website and our dashboards:
- Vercel (hosting of this website and client dashboards)
- Google Workspace (email, documents)
- Resend (transactional email), when configured
- CallTrackingMetrics, CallRail, Salesforce, Zoho, HubSpot, Kipu, ModMed, Google Ads, Meta Ads, and other systems — only when a client authorizes integration
Security
Client dashboards are password-gated at minimum. Credentials, API keys, and tokens are stored encrypted in Vercel environment variables and are never exposed to browsers. We use HTTPS everywhere. We follow the principle of least privilege when accessing client systems.
Your rights
You can request access to, correction of, or deletion of information we hold about you. For dashboard clients, the authoritative data lives in your source systems — we hold only the aggregates and tokens needed to power the dashboard.
HIPAA
If you are a healthcare client, we sign a Business Associate Agreement before any PHI is processed. The BAA governs how we handle PHI, including minimum necessary use, breach notification, and termination.
Contact
Questions about this policy: johnny@journeysthroughsearch.com.
Changes
We may update this policy. If we do, we will post the revised version here with an updated "Last updated" date.