Legal

Privacy Policy

Last updated: 22 June 2026

This Policy explains what data JagaSec Technologies ("JagaSec", "we", "us") collects, why we collect it, and how we protect it — across this website and our products.

This is a starting template written in plain language. Please have it reviewed by qualified legal counsel before you rely on it for your jurisdiction.

1. Who we are

JagaSec Technologies is a software company that builds security and IT management tools. For data your organization enters into our products, your organization is the data controller and we act as a processor on your behalf. For account and website data, we are the controller.

2. What we collect

  • Account data — name, work email, organization name, and the role assigned to you.
  • Product data — the records your organization chooses to store (e.g. assets, employees, vendors). You control this content.
  • Usage & technical data — IP address, browser/device type, pages viewed, and security/audit logs needed to operate the Service safely.
  • Communications — messages you send us (e.g. support or demo requests).

3. How we use it

  • To provide, secure, and improve the Service.
  • To authenticate you and protect accounts against abuse.
  • To respond to your requests and send essential service notices.
  • To meet legal, accounting, and security obligations.

We do not sell your personal data.

4. Legal bases

Where applicable law requires it (e.g. GDPR), we rely on: performance of a contract, our legitimate interests in running a secure service, your consent (where asked), and compliance with legal obligations.

5. Sharing & processors

We share data only with vetted service providers who help us run the Service (e.g. hosting, email delivery), under contracts that require them to protect it. We may disclose data where required by law or to protect rights and safety. Each organization's data is logically isolated from every other organization.

6. Data retention

We keep personal data only as long as needed to provide the Service and meet legal requirements. When your organization deletes data or closes its account, we delete or anonymise it within a reasonable period, except where retention is legally required.

7. Security

We protect data with encryption in transit and at rest, role-based access controls, isolation between customers, and continuous monitoring. See our Security page for more.

8. Your rights

Subject to local law, you may request access to, correction of, or deletion of your personal data, and may object to or restrict certain processing. To exercise these rights, contact us below. If we process data on behalf of your organization, we will direct your request to that organization.

9. Cookies

Our website uses only the cookies needed to function and to keep you signed in securely. We do not use advertising trackers.

10. International transfers

If data is transferred across borders, we use appropriate safeguards as required by applicable law.

11. Children

The Service is for businesses and is not directed to children. We do not knowingly collect data from children.

12. Changes

We may update this Policy from time to time. Material changes will be posted here with a new "Last updated" date.

13. Contact

Questions or privacy requests? Email privacy@jagasec.com.