JServ Services Ltd ("we," "us," or "our") is a United Kingdom based company providing Software-as-a-Service (SaaS) solutions to both business (B2B) and individual (B2C) customers. We are committed to protecting your privacy and complying with applicable data protection laws, including the UK General Data Protection Regulation (UK GDPR), the EU GDPR, and the California Consumer Privacy Act (CCPA).
This Privacy Policy explains how we collect, use, disclose, and safeguard personal information when you interact with:
- our public-facing websites (the Website), and
- our hosted SaaS applications and related cloud-based services (the SaaS Services).
Scope of This Policy
This policy applies to personal information collected through:
- our marketing and informational websites;
- user accounts and subscriptions for our SaaS Services; and
- communications, support, and business operations related to both.
Information Collected via the Website
Personal Information You Provide
We may collect personal information you provide directly to us, including:
- Email address
- Account credentials
- Marketing preferences
- Billing-related information (processed by our payment provider)
- Communications with customer support
b. Automatically Collected Website Data
When you use the Services, we may automatically collect:
- IP address
- Account credentials
- Browser type and version
- Log files and usage data
- Cookies and similar tracking technologies
This data is used primarilyv to allow the Website to operate, security, and improving the Website.
Information Collected via the SaaS Services
Account and Subscription Information
When you register for or use the SaaS Services, we may collect:
- Authentication data
- Subscription status and plan information
Customer Data (SaaS Content)
Customer Data is processed solely to provide the SaaS Services:
- Unique identifier for each subscription
- Unique identifier for each agent
- Unique identifier for each control
- IP addresses for each device connecting
- Log files and activity records
Cloud Infrastructure and Dependencies
We rely on third-party cloud and infrastructure providers to deliver the SaaS Services, including:
- OVHcloud – cloud hosting and infrastructure services (data hosting, storage, and networking)
OVHcloud processes personal data only as necessary to provide its services to us and is bound by contractual data protection obligations consistent with UK GDPR and EU GDPR requirements.
How We Use Personal Information
We use personal information to:
- Operate, maintain, and secure the Website and SaaS Services
- Create and manage user accounts
- Provide customer support and respond to enquiries
- Process subscriptions and payments
- Improve functionality, performance, and user experience
- Monitor for fraud, abuse, and security incidents
- Comply with legal and regulatory obligations
Legal Bases for Processing (UK GDPR & EU GDPR)
If you are located in the United Kingdom or European Economic Area (EEA), we process personal data under the following legal bases:
- Performance of a contract
- Legal obligations
- Legitimate interests, such as service improvement and security
- Consent, where required
Website server logs. The request logs described under Data Retention are processed on the basis of our legitimate interests. Those interests are keeping the Website available and secure, investigating faults and abuse, and understanding in aggregate which pages are read so that we can improve them. Running a service without a record of the requests made to it is not realistically possible, and a record of this kind is what any web server keeps.
In relying on that basis we have weighed those interests against your own. The logs hold no more than a request needs to be understood, they are used only for the purposes above, they are never used to build a profile of an individual or to make a decision about anyone, they are not sold or shared with an analytics or advertising provider, they stay on our own infrastructure, and they are deleted after 360 days. Because nothing is stored on or read from your device for this purpose, it is not processing that asks for your consent - but you can object to it, and the rights set out below apply to it in full.
Payments
Payments for the SaaS Services are processed by Paddle.com, which acts as the merchant of record. Paddle processes payment and billing information directly and handles applicable taxes. We do not store full payment card details. Paddle's processing of personal data is governed by its own privacy policy.
How We Share Information
We do not sell personal information. Where necessary may share information with:
- Service Providers and Cloud Vendors supporting the Website and SaaS Services
- Payment Processing: Paddle.com
- Legal and Regulatory Authorities, where required
- Business Transfers, such as mergers or acquisitions
Cookies and Tracking Technologies
Cookies and similar technologies are used on the Website to:
- Enable essential functionality
- Maintain sessions and authentication
- Remember a preference you have already chosen, where you have agreed to it
- Record your cookie choice itself, so you are not asked again
We set no advertising or analytics cookies. Our Cookie Policy lists each cookie by name, says what it is for and how long it lasts, and is where you can change or withdraw your choice.
Data Retention
Personal information is retained only for as long as necessary for the purposes outlined in this policy, unless a longer retention period is required by law. Customer Data is retained according to contractual terms with customers.
Website server logs, which record the address of the request, the page requested, the response given, the browser identifier your browser sends and the site you arrived from, are kept for a maximum of 360 days and are then deleted. These logs are used to operate, secure and troubleshoot the Website, and to understand which pages are visited. They are not used to build a profile of you and are not combined with any advertising or tracking service.
Data Security
We implement appropriate technical and organizational measures to protect personal information, including encryption, access controls, and secure cloud infrastructure. Despite these measures, no system can be completely secure.
Your Rights Under UK GDPR & EU GDPR
You have the right to:
- Access your personal data
- Request correction or erasure
- Object to or restrict processing
- Request data portability
- Withdraw consent at any time
- Lodge a complaint with a supervisory authority (UK: Information Commissioner’s Office)
Your Rights Under CCPA (California Residents)
If you are a California resident, you have the right to:
- Know what categories of personal information we collect, use, and disclose
- Request access to or deletion of your personal information
- Opt out of the sale or sharing of personal information (we do not sell or share personal information for cross-context behavioral advertising)
- Not be discriminated against for exercising your rights
We may verify your identity before responding to a request.
International Data Transfers
Personal information may be transferred outside the United Kingdom or EEA. Where required, we rely on appropriate safeguards such as UK International Data Transfer Agreements (IDTAs), Standard Contractual Clauses, or adequacy decisions.
Children's Privacy
The Website and SaaS Services are not directed to children under the age of 16. We do not knowingly collect personal information from children.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. The effective date will be updated accordingly. Continued use of the Website or SaaS Services constitutes acceptance of the revised policy.
Contact Information
To exercise your rights or ask questions about this policy, contact us at:
Jserv Services Ltd
United Kingdom
support@remote-tools.co.uk