This policy explains what personal data is collected when you use the RemoSign platform, for which purposes, and what your rights are. The operator and data controller is RemoSign ("we"). For any privacy question, write to us at info@remosign.com.
You are under no legal obligation to give us personal data; you provide it voluntarily. Without the necessary details, however, we cannot deliver the signing service.
For your account data and the operation of the Service, we are the data controller. For the documents and signer data you process through the platform, you are the controller and we act as your processor, on the instructions implied by your use of the system. Business customers may request a Data Processing Agreement (DPA) at info@remosign.com.
We use data to provide and secure the signing service, perform our contract with you, produce a reliable audit trail for each document, comply with legal obligations, prevent fraud, and improve the Service. Where the law requires it we rely on your consent, for example for non-essential cookies. For users in the EU and the UK these bases correspond to Article 6(1)(b), (c), (f) and (a) of the GDPR and UK GDPR.
We share data only with service providers that help us run the platform — hosting, payment processing, and email delivery — under appropriate safeguards. We do not sell personal data. We may be required to disclose data by law or to protect rights and user safety.
The Service runs on cloud infrastructure, so data, including documents and signer data, may be stored and processed on servers located outside your country. We work with infrastructure providers committed to recognized security standards and apply accepted legal safeguards, including Standard Contractual Clauses, where required.
We apply technical and organizational security measures, including encryption of sensitive data, restricted access, and optional two-factor authentication. No online transmission or storage method is completely secure, however, and we cannot promise absolute protection against unauthorized access.
Account data is kept while your account is active. Documents follow the Service's retention settings, including automatic deletion after a defined period, with prior notice, where enabled. Certain records, such as audit trails and invoices, are kept only as long as needed for legal, security, and accounting purposes, then deleted or anonymized.
Subject to applicable law, including the GDPR, the UK GDPR, and the Israeli Privacy Protection Law, you may ask to access your personal data, correct it, delete it, restrict its processing, or receive a copy of it, and you may object to certain processing or withdraw consent you have given. Write to info@remosign.com. If your request concerns signer data entered by one of our customers, we will forward it to that customer, who is the controller of that data. You may also lodge a complaint with your local supervisory authority, or with the Privacy Protection Authority in Israel.
We do not send marketing email. Messages sent by the system are operational only: signing invitations, confirmations, verification codes, and notices about your account. If we ever wish to send updates or marketing content, we will do so only after receiving your express prior consent, with a simple unsubscribe option in every message. Contact details of signers invited to the platform by our customers are never used for marketing.
We use only essential cookies required for the Service to work properly, such as sign-in and language preference. Non-essential cookies, if ever introduced, will run only with your express consent.
The Service is not intended for anyone under 18, and we do not knowingly collect personal data of minors.
This policy may be updated from time to time. Material changes will be posted on the site together with an updated effective date.