← Back to RecordBinder

Privacy Policy

This policy explains how RecordBinder handles account, organization, workflow, and evidence information for the RecordBinder service.

Effective Date

Effective date: July 17, 2026

Last updated: July 17, 2026

What RecordBinder Is

RecordBinder is a compliance documentation and workflow tool that helps organizations define requirements, assign work, collect evidence, verify submissions, and prepare audit-ready exports.

Information We Collect

We collect account information such as name, email address, authentication identifiers, membership role, and company access status.

Customers may provide company and organization data, including company names, locations, areas, compliance items, member scopes, assignments, and operational metadata.

Customers and users may upload documents, files, photos, checklist answers, evidence, verification notes, assignment activity, corrective-action activity, and audit packet information.

We may collect device, browser, log, session, and usage data needed to operate, secure, debug, and improve the service. We also collect support and contact communications when you choose to contact us.

How We Use Information

We use information to provide RecordBinder, authenticate users, enforce permissions, preserve organization records, process assignments and verification activity, generate exports, secure the service, troubleshoot issues, communicate about the service, and comply with applicable obligations.

Service Providers And Subprocessors

RecordBinder uses service providers to host, store, secure, and operate the product. These may include Supabase for database, authentication, and storage infrastructure, Vercel for web hosting and deployment, and configured email providers for authentication or service communications.

Payment processing is not represented as active in this policy. If subscription billing is enabled in the future, a payment provider such as Stripe may process billing information under its own terms and privacy practices.

Data Sharing

We do not sell customer data. We share information with service providers as needed to operate RecordBinder, with authorized users according to company membership and scope settings, when a customer intentionally exports or shares records, and when required by law or to protect rights, safety, and security.

Data Retention

RecordBinder is designed to preserve compliance history. Customer records, evidence, audit logs, verification activity, and related metadata may be retained while an account is active and for a reasonable period afterward unless deletion is requested and legally or operationally permitted.

Security Practices

We use access controls, company isolation, row-level security, private storage paths, audit logging, and standard hosting security practices intended to protect customer information. No internet service can guarantee absolute security.

Customer Responsibilities

Customers are responsible for configuring users, roles, locations, assignments, evidence, retention decisions, exports, and internal compliance procedures appropriately for their organization.

Access, Correction, Export, And Deletion

Authorized customers may request access, correction, export, or deletion of personal or company data by contacting RecordBinder. Some records may need to be retained for legal, security, audit, or operational reasons.

Cookies And Local Storage

RecordBinder may use cookies, local storage, and similar technologies for authentication, session management, security, preference storage, and product operation.

Children's Privacy

RecordBinder is intended for business and organizational use. It is not directed to children, and we do not knowingly collect personal information from children.

Changes To This Policy

We may update this policy as RecordBinder changes. The updated policy will be posted on this page with a revised last updated date.

Contact

Privacy questions and requests can be sent to support@recordbinder.app.