ComplianceAide Inc.
Privacy Policy
This Privacy Policy is the policy incorporated into the ComplianceAide End User License Agreement and Terms of Service. It explains how ComplianceAide Inc., doing business as TheComplianceAide, handles personal data for the website, portal, workspaces, agent integrations, support, billing, and related services.
Information we process
- Account, workspace, invite, billing, support, and security-contact information.
- Customer evidence and files that authorized users upload, connect, synchronize, or ask the service to analyze.
- Usage, device, log, diagnostic, and security telemetry needed to operate, protect, debug, and improve the service.
- Communications and requests sent to ComplianceAide, including data-rights and deletion requests.
How we use information
- Provide, maintain, secure, support, and improve the ComplianceAide offering.
- Create assessments, reports, policies, artifacts, audit trails, and workflow outputs requested by authorized users.
- Manage trials, licenses, invoices, renewal notices, and account administration.
- Detect, prevent, and respond to misuse, fraud, service abuse, legal requests, and security incidents.
Customer evidence and connected services
Customer evidence remains customer-controlled content. When customers connect storage, agent, email, PSA/RMM, cloud, or other third-party services, ComplianceAide processes the connected data only as needed to perform the requested workflow, subject to the EULA, any order form, and any applicable data processing addendum.
Subprocessors and international transfers
ComplianceAide may use hosting, storage, email, payment, telemetry, security, AI, and support providers as subprocessors. Processing may occur in the United States and other locations where ComplianceAide or its subprocessors operate. Where required, ComplianceAide uses appropriate transfer safeguards such as standard contractual clauses, the EU-U.S. Data Privacy Framework where applicable to a provider, or other recognized lawful mechanisms.
Existing customers may request the current subprocessor list and may ask to receive notice of material subprocessor changes by emailing info@thecomplianceaide.com.
Data-rights, access, deletion, and DSAR requests
Customers and authorized users may request access, correction, export, deletion, or restriction of personal data by emailing info@thecomplianceaide.com with the workspace name, account email, request type, and enough detail to verify authority. If the request involves an end customer or employee whose data is controlled by a ComplianceAide customer, ComplianceAide will route the request to the customer administrator when appropriate.
ComplianceAide will respond within a commercially reasonable period and in the timeframe required by applicable law. Deletion may be limited where records must be retained for security, billing, fraud prevention, legal compliance, dispute handling, audit trail integrity, backups, or contractual obligations.
Retention and deletion
ComplianceAide retains personal data and customer evidence for as long as needed to provide the service, comply with legal and contractual obligations, resolve disputes, preserve audit trails, and enforce agreements. Workspace owners may request deletion or closure through support or portal administration paths where available.
Security
ComplianceAide uses administrative, technical, and organizational safeguards designed to protect customer data. No online service can guarantee absolute security. Vulnerability reports should be sent to security@complianceaide.com.
Changes to this policy
ComplianceAide may update this policy from time to time. The effective date will change when material updates are posted. If an applicable agreement requires additional notice, ComplianceAide will provide that notice through an appropriate account, email, portal, or contractual channel.
For privacy, data-rights, deletion, DPA, or subprocessor-notice requests, email info@thecomplianceaide.com. For support, email support@thecomplianceaide.com.