Welcome to SnapGRC's Policy
Last Updated: 07/01/2025
1. Introduction
- Welcome to SnapGRC (“we”, “us”, “our”), a UK-based SaaS company. We are committed to protecting your privacy and handling your personal data transparently and securely. This Privacy Policy explains how we collect, use, disclose, and protect your information when you use our services, website, or platform (collectively, the “Services”). By using our Services, you agree to the terms of this policy.
2. Data We Collect
- Personal Data: Information you provide directly (e.g., name, email, job title, company name, billing address).
- Payment Information: Credit/debit card details processed securely by third-party providers (e.g., Stripe, PayPal). We do not store card details on our servers.
- Usage Data: Information about your interactions with our Services (e.g., IP address, browser type, pages visited) via Google Analytics.
- Other Data: Additional information you provide (e.g., support queries, feedback).
3. How We Use Your Data
- Provide, maintain, and improve our Services.
- Process payments and manage subscriptions.
- Communicate with you (e.g., updates, support, marketing*).
- Analyze usage trends via Google Analytics.
- Comply with legal obligations (e.g., tax, fraud prevention).
- Legal Basis (UK GDPR):
- Contractual Necessity: To fulfill our service agreement.
- Consent: For marketing (opt-out available).
- Legitimate Interests: To improve Services and prevent fraud.
- Legal Obligations: To meet regulatory requirements.
4. Data Sharing
- Third-Party Service Providers:
- Google Analytics (see Google’s Privacy Policy).
- Payment processors (e.g., Stripe, PayPal).
- Cloud hosting and IT providers.
- Legal Authorities: If required by law.
- Business Transfers: During mergers, acquisitions, or sales.
- We do not sell your data to third parties.
5. Data Retention
- Payment Records: 7 years (UK financial compliance).
- Analytics Data: Up to 26 months (Google Analytics).
- Account Data: Until deletion request or account closure.
6. Your Rights (UK GDPR)
- Access, correct, or delete your data.
- Restrict processing or object to data use.
- Request data portability.
- Withdraw consent (where applicable).
- Contact us at [email protected] to exercise rights.
7. Cookies & Tracking
- We use cookies for analytics and functionality. Manage preferences via browser settings.
8. Security
- We implement encryption and access controls. Note: No online transmission is 100% secure.
9. International Data Transfers
- Data may be transferred outside the UK (e.g., Google Analytics in the US). Safeguards like SCCs apply.
10. Children’s Privacy
- Services are not intended for users under 18. We do not knowingly collect minors’ data.
11. Changes to This Policy
- Updates will be communicated via email or website notice.
12. Contact Us
- Email: [email protected]