Privacy and data protection
Privacy Policy
Last updated July 22, 2026
Scope and organizational roles
This policy applies to the Senzilytics website, tenant platform, demonstration environment, and native mobile applications. For tenant workspace data, the subscribing organization generally determines why its workforce and operational data is processed, while Senzilytics operates the platform on that organization's instructions. Contact your organization's administrator first for requests concerning employer-managed records.
Information we process
We may process account and identity information such as name, work email, organization, role, permissions, and authentication provider; tenant-entered EHS, ESG, audit, risk, compliance, training, incident, observation, corrective-action, and workflow records, including authorized photo, video, and document evidence; device and session information such as device identifier, device name, platform, push token, and security-session status; and technical information such as IP address, user agent, timestamps, diagnostics, and security events. Demo and commercial inquiries may also include company, job title, country, phone number, and communication preferences.
How information is used
Information is used to authenticate users, enforce tenant isolation and permissions, provide contracted platform functions, synchronize authorized field records, deliver requested notifications, protect the service, investigate misuse, provide support, maintain auditability, improve reliability, and comply with applicable obligations. Senzilytics does not use tenant operational data for third-party advertising.
Mobile and offline data
The native application stores rotating credentials in the iOS Keychain or Android Keystore. Offline workspace information, queued submissions, corrective-action progress, and selected evidence file bytes are stored in an encrypted database and separated by organization and user. Camera, photo-library, and document access is requested only when a user chooses the corresponding evidence action. Evidence is uploaded to private storage after tenant, user, role, assignment, subscription, and record ownership are revalidated; when evidence accompanies a corrective-action update, file registration completes before the related lifecycle change synchronizes. Cached workspace authorization is time limited and server permissions are checked when records synchronize. Signing out removes the local credential and workspace cache; encrypted queued submissions may remain scoped to the same account so authorized work can resume after reauthentication. Removing the application clears application-controlled local storage according to the device operating system.
Sharing and service providers
Authorized users and administrators of the applicable tenant may access information according to configured roles. We may use service providers for cloud hosting, databases, authentication, email, push delivery, file storage, security, support, and tenant-enabled intelligence functions. Providers are permitted to process information only for the services they supply and are expected to apply appropriate protections. We do not sell personal information or share it for cross-context behavioral advertising.
Retention and deletion
Tenant records are retained according to the customer agreement, tenant instructions, configured lifecycle rules, security needs, and applicable legal or regulatory requirements. Security and transaction records may be retained for a reasonable period to protect the service and demonstrate compliance. Demo access is time limited. Requests for access, correction, export, restriction, or deletion can be submitted through the account and data request page. Some workplace safety or compliance records may need to be preserved by the tenant or by law.
Security
We use administrative, technical, and organizational safeguards designed to protect information, including encrypted transport, scoped authorization, tenant filtering, protected credentials, session revocation, and activity records. No method of storage or transmission can be guaranteed completely secure.
International processing
Senzilytics and its service providers may process information in countries other than the user's location. Where required, appropriate contractual or other legal safeguards should be used for cross-border processing.
Children
Senzilytics is an enterprise workplace platform and is not directed to children. Tenant administrators should provision only authorized workforce or business users permitted to use the service.
Your choices and rights
You can decline optional marketing communications and change device notification permissions in operating-system settings. Depending on applicable law, you may have rights to request access, correction, deletion, portability, objection, or withdrawal of consent. Tenant-managed requests should normally be directed to your organization first.
Changes and contact
We may update this policy as the platform or legal requirements change and will revise the date above. For privacy questions or requests, email privacy@senzilytics.com. For product support, visit the Support Center.