1. Introduction
Welcome to SwiftDesign CRM, operated by Swiftdesign LLC. This Privacy Policy outlines how we collect, use, process, and protect your personal data when you use our SaaS platform, website, and associated services. We are committed to complying with all applicable data protection regulations, including the GDPR and CCPA.
2. Data We Collect
We may collect the following types of information when you use SwiftDesign CRM:
- Account Information: Name, email address, and company name. (We utilize secure, passwordless authentication, meaning we never collect, see, or store passwords).
- Billing Information: Payment details, billing address, and transaction history. All payment processing is securely handled by our third-party provider, Stripe. We do not store full credit card numbers on our servers.
- Usage Data: IP addresses, browser types, log data, and interaction metrics to improve our service.
- Client Data: Data you upload regarding your own clients (leads, documents, communications) remains strictly your property. We only process this data to provide the CRM service.
3. Third-Party Payment Processing
We use Stripe, a highly secure third-party payment processor, to handle all subscription billing and SaaS payments. By subscribing to our services, you agree to Stripe's Privacy Policy. SwiftDesign CRM is not liable for data breaches that occur exclusively within the payment processor's infrastructure, though we ensure strict API security when interacting with them.
4. How We Use Your Data
We use your data solely to provide, maintain, and improve our services; to process your transactions; to send administrative and support communications; and to comply with legal obligations.
5. Data Security
We implement enterprise-grade security measures across our global edge network, including AES-256 encryption at rest and TLS/SSL encryption in transit. Your data is protected by strict Row-Level Security (RLS) policies directly at the database engine level, ensuring that workspaces are mathematically isolated and immune to cross-tenant data leaks. However, no internet-based service is 100% secure.
6. Your Rights
Depending on your jurisdiction, you have the right to access, rectify, delete, or restrict the processing of your personal data. To exercise these rights, please contact us at hello@swiftdesigncrm.com.
7. Data Controller vs. Data Processor
Under GDPR and CCPA, for the data you upload regarding your own clients, you act as the "Data Controller" and SwiftDesign CRM acts strictly as the "Data Processor." It is your legal responsibility to ensure you have obtained the necessary consent from your clients before uploading their personal information into our CRM. We do not use your client data for our own marketing or analytics purposes.