What data the production engine holds
Bmfurn stores the data required to run the production engine on the workshop's behalf. That includes:
- Custom order specifications - dimensions, material, finish, quantity, notes
- Cost estimates - material rates, finish costs, labor hours, quote totals
- Production schedules - assigned slots, stage plans, capacity load
- Build stage state - cutting, assembly, finishing, QC and handover events
- Vendor and material sourcing records - vendors, lead times, POs, rates
- End-customer contact context (name, delivery details) supplied by the workshop
- Workshop team accounts, roles, and audit events
How the data is used
Workshop and order data is used only to operate the production engine on your workshop's behalf and to improve accuracy for that workshop specifically - sharper estimates over time, better slotting, better reorder timing.
Data belonging to one workshop is not shared with, mixed into, or used to train shared models across other workshops. Historical labor data and material rate history stay within your workshop's tenant.
End-customer data
Where the workshop chooses to share a customer-facing status link with an end customer, the link exposes only the coarse build stage of the order the customer placed. It never exposes cost, capacity, other orders, vendor information, or internal notes.
End-customer contact records entered by the workshop are treated as workshop data: stored securely, retained per the workshop's account, and deletable on written workshop request.
Storage, encryption, and access
All data is transmitted over TLS 1.2 or higher and stored encrypted at rest using AES-256. Access to production data is scoped by role inside the workshop and by least-privilege for internal support access. Support access is logged and used only with the workshop's knowledge.
Every meaningful change - stage updates, cost overrides, schedule shifts, PO edits - is captured to an audit ledger the account owner can export.
Retention and deletion
Live order data is retained for the life of the workshop's account. Archived orders are retained to improve future estimates and scheduling accuracy for that same workshop. On written request from the account owner, records are purged from live and backup systems within 30 days.
On account termination, all workshop data is exported on request and then purged.
Marketing and communications
Emails you receive are limited to operational content: sign-up confirmation, login credentials, onboarding steps, product changes that affect how the engine works, security notices, and billing. Bmfurn does not sell workshop or end-customer data and does not run marketing drips against your registration email.
Cookies and analytics
The site uses first-party cookies to keep you signed in inside the product and to remember basic preferences on the marketing site. Analytics is limited to aggregate, non-identifying page traffic used to see which parts of the site are useful.
Your rights
As the workshop account owner you can request access to, correction of, or deletion of any workshop data held on your workspace. End customers whose data you have loaded into the engine should raise such requests to your workshop; we support you in fulfilling them.
Subprocessors
A small, deliberate set of infrastructure subprocessors is used for hosting, mail delivery and analytics. The current list is kept up to date and shared with Manufacturer-tier accounts on request as part of onboarding.