Privacy Policy
Last updated: September 9, 2026
This Privacy Policy explains how Evirail (“Evirail,” “we,” “us,” or “our”), the operator of evirail.com and related applications (the “Service”), collects, uses, discloses, and protects personal information. By using the Service, you agree to this Policy.
1. Who this Policy covers
This Policy covers:
- Website visitors to our marketing site;
- Account users (administrators, managers, employees, and other authorized users of a customer organization); and
- where applicable, individuals whose information appears in operational records created through the Service (for example, job site details or customer acknowledgements captured during an SOP run).
If you use Evirail on behalf of a company (our “Customer”), that company typically controls how employee and field evidence data is collected and used. In that case, we process such data as a service provider / processor for the Customer, and the Customer’s own privacy notices and instructions also apply.
2. Information we collect
2.1 Information you provide
- Account and profile details (name, email address, role, authentication credentials);
- Company and workspace information (company name, subdomain, billing contacts);
- Content and operational records you or your organization submit through the Service, including SOP definitions, job details, run answers, photos, signatures, notes, and related evidence;
- Support and communications content you send us;
- Billing and payment-related details (processed primarily by our payment provider).
2.2 Information collected automatically
- Device and log data (IP address, browser type, approximate location derived from IP, timestamps, pages or API endpoints accessed, error logs);
- Cookie and similar technology data used for session management, security, and basic analytics;
- Offline-app sync metadata (for example, client identifiers and sync status) needed to operate the field application.
2.3 Information from third parties
We may receive information from payment processors (such as Stripe), email delivery providers, hosting and storage providers, and identity or authentication services you choose to connect, as needed to operate billing, security, and communications.
3. How we use information
We use personal information to:
- provide, operate, maintain, and improve the Service;
- authenticate users, enforce access controls, and protect against fraud or abuse;
- process transactions, invoices, and subscription status;
- send service-related notices (security alerts, billing notices, product changes);
- provide customer support and respond to inquiries;
- generate PDFs, deliver emails, and perform other features you or your organization request;
- monitor performance, diagnose issues, and maintain audit logs;
- comply with law and enforce our Terms of Service.
We do not sell personal information.
4. How we share information
We may share information:
- with the Customer organization that owns the workspace (administrators and authorized users can access company data within their permissions);
- with service providers who process data on our behalf (for example hosting, database, object storage such as Cloudflare R2 or equivalent, email delivery such as Mailgun, payment processing such as Stripe, monitoring, and security tools), under contractual confidentiality and use restrictions;
- if required by law, legal process, or governmental request, or to protect rights, safety, and security;
- in connection with a merger, acquisition, financing, or sale of assets, subject to appropriate confidentiality protections;
- with your consent or at your direction.
5. Customer Data and employee information
Customers decide what SOPs, jobs, photos, and other operational records to collect. Employees and other users should follow their employer’s policies. Requests to access, correct, or delete workplace operational records should generally be directed to the Customer first. We will assist Customers with reasonable requests consistent with our contracts and the law.
6. Cookies and similar technologies
We use essential cookies and similar technologies for authentication, security, and remembering preferences. You can control cookies through your browser settings; disabling essential cookies may break sign-in or core features.
7. Data retention
We retain information for as long as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce agreements. Customer workspace data is retained according to the Customer’s subscription, settings, and our deletion/export practices after account closure, subject to backup and legal hold exceptions.
8. Security
We implement administrative, technical, and organizational measures designed to protect personal information, including access controls, encrypted transport (HTTPS), and restricted storage for uploaded evidence where configured. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
9. International transfers
We and our providers may process information in Canada, the United States, and other countries where we or our providers operate. Where required, we use appropriate safeguards for cross-border transfers.
10. Your rights and choices
Depending on your location, you may have rights to access, correct, delete, or obtain a copy of certain personal information, or to object to or restrict certain processing. To exercise rights regarding your account profile, contact us at the address below. For Customer-controlled workplace data, contact your organization. We may need to verify your identity and may decline requests that are unlawful, excessive, or would compromise others’ privacy or security.
11. Children’s privacy
The Service is designed for business use and is not directed to children under 16 (or the equivalent minimum age in your jurisdiction). We do not knowingly collect personal information from children.
12. Third-party links and services
The Service may link to third-party websites or integrate third-party services. Their privacy practices are governed by their own policies.
13. Changes to this Policy
We may update this Privacy Policy from time to time. We will post the updated version on this page and revise the “Last updated” date. Material changes may also be communicated by email or in-product notice where appropriate. Continued use of the Service after changes become effective constitutes acceptance of the updated Policy.
14. Contact
Questions about this Privacy Policy or our privacy practices:
Evirail Privacy
Email: admin@evirail.com
Web: https://evirail.com