1. Scope
This Privacy Policy applies to the Complytecs website, demo-request experience, and hosted compliance platform. It does not replace the privacy terms in a customer’s signed agreement. When we process information for a customer through the platform, that customer controls the information and its instructions govern our processing.
2. Information we collect
Information you provide
We collect contact and professional information you submit, such as your name, work email, organization, role, phone number, account credentials, support requests, and demo-request details.
Platform information
Authorized users may submit facility, workforce, regulatory, operational, communications, and compliance records. Depending on a customer’s configuration and agreements, these records may include personal information or protected health information.
Technical information
We may receive device, browser, IP address, session, diagnostic, and activity information needed to operate, secure, audit, and improve the services.
3. How we use information
We use information to provide and secure the services; authenticate users; maintain records and auditability; respond to requests; support customer-configured workflows; communicate about the services; diagnose problems; prevent misuse; and comply with law and contractual obligations. We do not sell personal information or use customer platform content for unrelated advertising.
4. Healthcare information
Where Complytecs acts as a business associate under HIPAA, our handling of protected health information is governed by the applicable business associate agreement and customer instructions. Customers are responsible for determining what information their users may submit and for configuring appropriate access.
5. How information is disclosed
We may disclose information to service providers that support hosting, security, communications, analytics, and customer support under appropriate obligations; to a customer and its authorized users; in connection with a corporate transaction subject to suitable protections; or when required to comply with law, protect rights and safety, or address fraud and security threats. Customer content is not disclosed to another customer.
6. Retention and security
We retain information for as long as reasonably needed to provide the services, meet contractual or legal requirements, resolve disputes, and maintain legitimate business records. We use administrative, technical, and organizational safeguards designed for the nature of the information. No system can guarantee absolute security.
7. Your choices and rights
You may choose not to submit optional website information. Account users may update certain profile information in the platform. Requests concerning customer-controlled platform data should first be directed to the customer that provided your access. Where applicable law grants access, correction, deletion, restriction, or appeal rights, you may submit a request through your account contact or the same channel you used to contact Complytecs. We may need to verify your identity and authority.
8. Cookies and sessions
Complytecs uses cookies or similar local storage needed for secure sessions, preferences, and essential operation. We may also use limited measurement tools on the public website. Browser settings can control some storage, but blocking essential cookies may prevent sign-in.
9. Children
The services are designed for organizations and authorized workforce users, not for children. We do not knowingly collect personal information directly from children through the public website.
10. Changes and contact
We may update this policy as the services or legal requirements change. We will post the revised policy with a new effective date and provide additional notice when appropriate. Questions or requests may be submitted through your Complytecs account contact or the contact channel used to request a demo.