Legal

Privacy Policy

This page is maintained by GuardVault Security Systems to explain how we collect, use and protect personal data when you visit our websites, sign up for a trial or use the GuardVault platform.

1. What we collect

We collect the minimum information needed to provide the service:

  • Account data: name, email address, organization name and role when you register or are provisioned by an administrator.
  • Usage data: login events, session metadata, audit logs and feature usage generated while using the platform.
  • Technical data: IP address, browser type, device identifiers and cookies for security and analytics.
  • Communications: support tickets, sales inquiries and feedback you send us.

2. How we use your data

We use personal data to:

  • Provide, operate and secure the GuardVault platform.
  • Authenticate users and enforce access policies.
  • Generate audit trails required by security and compliance workflows.
  • Communicate about service status, billing and support.
  • Improve product performance and reliability through aggregated analytics.

3. Session recordings and audit logs

GuardVault records privileged sessions as part of its core security function. These recordings, keystroke logs and command histories are owned and controlled by the customer organization. GuardVault processes this data only to provide the service and does not use it for advertising or unrelated purposes.

4. Cookies and analytics

We use essential cookies for authentication and security. Optional analytics cookies help us understand how visitors use the website. You can control optional cookies through your browser settings.

5. Data sharing

We do not sell personal data. We share data only with service providers who perform functions on our behalf (such as hosting, email delivery and analytics) and with your organization administrators who manage your account.

6. Data retention

We retain personal data for as long as your account is active or as needed to provide the service. Audit logs and session recordings are retained according to the policy configured by your organization administrator. When an account is closed, we delete or anonymize personal data within a reasonable period, except where retention is required by law.

7. Your rights

Depending on your location, you may have the right to access, correct, delete or restrict processing of your personal data. To exercise these rights, contact your organization administrator or email us at privacy@guardvault.eu.

8. Security

We implement technical and organizational measures to protect personal data, including encryption, access controls and regular security reviews. Because security is a shared responsibility, customers must also protect their accounts, credentials and endpoints.

9. International transfers

GuardVault cloud services may process data in multiple regions. We use appropriate safeguards for cross-border transfers in accordance with applicable data protection laws.

10. Changes to this policy

We may update this Privacy Policy from time to time. We will post the revised version on this page and update the effective date.

11. Contact

For privacy questions or data subject requests, contact privacy@guardvault.eu.

This page is maintained by GuardVault Security Systems and is provided for informational purposes.