Legal
Privacy Policy
Effective date: 1 August 2026
This Privacy Policy explains how ComplyraOne (“we”, “us”, or “our”) collects, uses, shares, and protects personal information when you visit complyraone.com, related product sites such as GreenOS and KeeperOS, or otherwise interact with our marketing and commercial services.
We process personal data in line with the UK GDPR, the Data Protection Act 2018, and, where applicable, the EU GDPR. If you have questions, contact us at hello@complyraone.com.
1. Who we are
ComplyraOne provides enterprise software for sustainability and compliance, including GreenOS (carbon accounting and ESG reporting) and KeeperOS (policy, controls, and evidence management). This policy applies to our public websites, demo request forms, and related communications. Product applications may present additional notices where account or customer data is processed under a customer agreement.
2. Information we collect
Information you provide
- Contact and enquiry details (for example name, work email, company, role, and message content) when you book a demo, contact us, or request materials.
- Account or billing details if you subscribe to a product, which may include organisation name, user names, and business contact details.
- Career-related information if you apply or express interest in working with us.
Information collected automatically
- Technical data such as IP address, browser type, device type, approximate location derived from IP, referring URL, and pages viewed.
- Usage data about how you interact with our websites (for example navigation paths and feature clicks), collected through server logs and, where enabled, analytics tools.
- Cookies and similar technologies as described in the Cookies section below.
Information from others
We may receive limited business contact information from partners, event organisers, or publicly available professional sources when you have expressed interest in our products or when we pursue legitimate B2B outreach.
3. How we use personal information
We use personal information to:
- Operate, secure, and improve our websites and services.
- Respond to enquiries, schedule demos, and provide customer support.
- Send service, security, and administrative communications related to your organisation's use of our products.
- Send marketing communications about ComplyraOne products where we have a lawful basis (and you can opt out at any time).
- Analyse aggregated website performance and product interest to improve our offerings.
- Comply with legal obligations and enforce our Terms of Service.
4. Lawful bases
Depending on the activity, we rely on one or more of:
- Contract: to provide requested information, demos, or paid services.
- Legitimate interests: to operate and secure our business, improve products, and conduct proportionate B2B marketing, balanced against your rights.
- Consent: where required (for example certain cookies or email marketing preferences).
- Legal obligation: where we must retain or disclose information to meet regulatory or legal requirements.
5. Sharing personal information
We do not sell personal information. We may share it with:
- Service providers who support hosting, analytics, email delivery, customer relationship management, and security, under appropriate contracts.
- Professional advisers (legal, accounting) where reasonably required.
- Authorities or other parties when required by law or to protect rights, safety, or security.
- A successor organisation in connection with a merger, acquisition, or asset transfer, subject to appropriate protections.
Where customer data is processed inside GreenOS or KeeperOS on behalf of a business customer, we act as a processor under that customer's instructions and agreement.
6. International transfers
Our service providers may process data in the United Kingdom, European Economic Area, or other countries. Where personal data is transferred internationally, we use appropriate safeguards such as UK/EU adequacy decisions or standard contractual clauses.
7. Retention
We keep personal information only as long as needed for the purposes described above, including to meet legal, accounting, or reporting requirements. Enquiry and marketing records are typically retained for a limited period unless a continuing business relationship exists. Product account data is retained according to the customer agreement and applicable law.
8. Security
We apply administrative, technical, and organisational measures appropriate to the risk, including access controls, encryption in transit where applicable, and monitoring of our systems. No method of transmission or storage is completely secure; please use strong credentials and report suspected incidents promptly to hello@complyraone.com.
9. Your rights
Subject to applicable law, you may have the right to access, rectify, erase, restrict, or object to certain processing, and to data portability. Where processing is based on consent, you may withdraw consent at any time. You also have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) or another supervisory authority.
To exercise your rights, email hello@complyraone.com with sufficient detail for us to verify and respond to your request.
10. Cookies
Our marketing site may use strictly necessary cookies to operate the site, and, where enabled, analytics cookies to understand aggregate usage. You can control non-essential cookies through your browser settings and any cookie preference tools we provide. Blocking some cookies may affect site functionality.
11. Children
Our websites and services are directed to businesses and professionals. We do not knowingly collect personal information from children.
12. Changes
We may update this Privacy Policy from time to time. The effective date at the top of this page will be revised when material changes are made. Continued use of our websites after an update constitutes notice of the revised policy where permitted by law.
13. Contact
For privacy questions or requests: hello@complyraone.com
General enquiries: Company & contact