Last updated: Dec 16, 2024
This privacy policy ("Policy") applies to Complyance Inc was last updated December 2024. We may change or update this policy at any time, and the same will be updated here.
If you are a Complyance Inc user or customer, we shall notify the changes or updates either by sending an email or a notification on the Scrut Automation App (as defined below). Please ensure to read such notices carefully.
We sincerely believe that you should always know what data we collect from you, the purposes for which such data is used, and that you should have the ability to make informed decisions about what you want to share with us.
Therefore, we want to be transparent about: (i) how and why we collect, store and use your personal data in the various capacities in which you interact with us; and (ii) the rights that you have to determine the contours of this interaction.
While we would strongly advise you to read the Policy in full, the following summary will give you a snapshot of the salient points covered herein:
If you have any queries or concerns with this Policy, please contact our Data Protection Officer (refer Section 12). If you do not agree with the Policy, we would advise you to not visit/use the Website or the Scrut Automation application(s)/platform(s) (collectively "App").
Type of User | Visitor | Customer | User |
---|---|---|---|
What Data We May Collect | Your location; How you behave on the Website, (what pages you land on, how much time you spend, etc.); What device you use to access the Website and its details (model, operating system, etc.); Cookies and Web Beacon data Name; and e-mail. | 1. The name and e-mail of your representative who signs up for a Service on your behalf; and 2. Credit Card/ Debit Card/Other Payment Mode information to check your financial qualifications, detect fraud and facilitate payments for our Services. | Your name, e-mail; How you behave in the relevant product environment and use the features; What device you use to access the Website/App and its details (model, operating system, etc.); Cookies and Web Beacon data; |
How and Why We Use It | We use this information to analyse and identify your behaviour and enhance the interactions you have with the Website. If you submit your details and give us your consent, we may send you newsletters and e-mails to market other products and services we may provide. | We collect this data in order to help you register for and facilitate provision of our Services. We also use this data to enable you to make payments for our Services. We use a third-party service provider to manage payment processing. This service provider is not permitted to store, retain, or use information you provide except for the sole purpose of payment processing on our behalf. If you give us your consent, we may send you newsletters and e-mails to market other products and services we may provide. | We collect this data in order to facilitate provision of our Services. We will occasionally send you e-mails regarding changes or updates to the Service that you are using. In the event you report an issue with a Service, we may also screen/video record your device only when you use the App for a limited time period to help us better understand how to address the issue. If you give us your consent, we may send you newsletters and e-mails to market other products and services we may provide. |
Information transferred via the Google API: Scrut's use and transfer of information received from Google API's to any other app will adhere to Google API Services User Data Policy, including Limited Use requirements.
For the avoidance of any doubt, we should clarify that in the event we anonymize and aggregate information collected from you, we will be entitled to use such anonymized data freely, without any restrictions other than those set out under applicable law.
Where such data is not being used by us to render Services to you, we shall explicitly seek your consent for using the same. You can choose to withdraw this consent at any time, Read about how we've made a difference for our customers.
Scrut Automation uses artificial intelligence (AI) to enhance the services we provide, ensuring that customer data is processed accurately, efficiently, and securely. All AI-driven data processing is performed with a strong commitment to safeguarding customer privacy. We implement strict access controls, encryption, and regular audits to prevent unauthorized access to, or misuse of, your information. Our AI models are trained only on data necessary to deliver our services, and we adhere to industry best practices to anonymize and aggregate data wherever possible to protect customer identities.
We do not use customer data to train external models or for any purpose beyond the agreed-upon scope of our services. Any personal data processed by our AI systems is handled in compliance with applicable data protection laws, including GDPR and CCPA where relevant.
Subject to the GDPR and applicable law's limitations, the rights afforded to you as a data subject are:
In case you want to exercise the rights set out above you can contact our Data Protection Officer whose details are set out in Section 12 below.
The data provided by you as a Visitor, or when you sign up as a Customer / User or register for our Services will be processed by us for the purpose of rendering Services to you or in order to take steps prior to rendering such Services, at your request. Where such data is not being used by us to render Services to you, we shall explicitly seek your consent for using the same. You can choose to withdraw this consent at any time here.
Additionally, we may process your data to serve legitimate interests.
Accordingly, the grounds on which we can engage in processing are as follows:
Nature of Data | Grounds |
---|---|
Visitor Data | Consent; - Performance of a Contract; and - Legitimate Interest - Performance of a Contract; and - Legitimate Interest |
Account Registration Data | Compliance with applicable laws; Legitimate Interest |
Service Usage Data | Performance of a Contract; and Legitimate Interest |
Data for Marketing our Services | Consent; and Legitimate Interest |
If you believe we have used your personal data in violation of the rights above or have not responded to your objections, you may lodge a complaint with your local supervisory authority.
Additionally, please note:
Scrut Automation complies with CCPA by giving you the five privacy rights for California consumers:
Scrut Automation assures that it will not ask for waiver of privacy rights from California consumers. In case you want to exercise the rights set out above you can contact our Data Protection Officer whose details are set out in Section 12 below.
Scrut Automation adheres to the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (SPDI Rules) to ensure your data is secure. Here's how Scrut Automation complies with the SPDI Rules:
Right | Description |
---|---|
The right to be informed and give consent | Before Scrut Automation collects any of your personal data, we will clearly explain what information we need, why we need it, and how we will use it. We will only collect your personal data with your explicit consent. |
The right to access your data | You have the right to request access to the personal information Scrut Automation holds about you. This includes the ability to review and verify its accuracy and completeness. |
The right to correct mistakes | If you find any errors or missing information in your data held by Scrut Automation, you have the right to request corrections. We will take reasonable steps to update your information promptly upon verification of your request. |
The right to withdraw consent | You can withdraw your consent for Scrut Automation to process your sensitive personal data at any time. Once you withdraw consent, we will stop using your data for the purpose originally agreed upon, unless there's a legal reason for continued processing (like a court order). To withdraw consent, please click here. |
Please contact our Data Protection Officer, whose details are presented in Section 12, if you would like to exercise the rights listed above.
We will store any personal data we collect from you as long as it is necessary in order to facilitate your use of the Services and for ancillary legitimate and essential business purposes – these include, without limitation, for improving our Services, attending to technical issues, and dealing with disputes.
We may need to retain your personal data even if you seek deletion thereof, if it is needed to comply with our legal obligations, resolve disputes and enforce our agreements.
If you are a customer, please be advised that: (i) you will need to inform your Leads about how you store and deal with any data you collect from them using one of our Services, in compliance with applicable laws including the GDPR; and (ii) after you terminate your usage of a Service, we may, unless legally prohibited, delete all data provided or collected by you from our servers.
If you are a Customer, you are empowered to use proprietary or other third party technologies and integrate with our App. If you do, you agree and acknowledge that it is your sole obligation to inform your stakeholders about any data you collect by using such technologies and the policies by which such collection is bound.
In order for us to facilitate our operations, we may transfer and store the data we collect and process in accordance with this Policy, to our database server in a third-country for Disaster Recovery purpose. Your rights and protections will, under no circumstances, be diluted by this transfer.
Further, in the ordinary course of business, we may employ other companies and people to assist us in providing certain components of our Services in compliance with the provisions of this Policy. To do so, we may need to share your data with them.
Where applicable – if the entities to which these transfers are affected are not situated in countries deemed 'adequate' by the European Commission, we shall enter into appropriate Data Protection Addendums with the transferee parties that comprehensively protect your data. We shall also put in place industry-standard technical and organizational measures (including robust data handling policies) to ensure that such transfers are completed in accordance with applicable laws.
Some of the examples of where we may sub-contract processing activities to third parties include—data analysis, marketing assistance, processing credit card payments, and providing customer service.
In addition to the purposes set out in the Policy, we may disclose any data we collected or processed from you if it is required:
We implement industry-standard technical and organizational measures by using a variety of security technologies and procedures to help protect your data from unauthorized access, use, loss, destruction or disclosure. When we collect particularly sensitive data it is encrypted using industry-standard cryptographic techniques including but not limited to SSL, TLS, RSA, and AES.
We adhere to the ISO/IEC 27001:2022 standard, an internationally recognized framework for Information Security Management Systems (ISMS). Our commitment to ISO 27001 ensures that we follow rigorous security practices and maintain high standards for information security.
In compliance with the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, we adhere to the following reasonable security practices and procedures to protect your personal data:
The name and contact details of our Data Protection Officer, who you may contact if you have any concerns, complaints or feedback pertaining to this Policy, are as follows:
Name | Tanuj M |
Address | Complyance Inc, 2810 N Church St, Wilmington,Delaware 19802, USA |
privacy@complyance.io / tanuj@complyance.io | |
Phone Number | +1-(507)428-7571 |