§01
Who we are
DocuCRM Labs Inc. is the data controller for personal information you provide to us directly when you visit our marketing site or use the app at app.docucrm.com.
When our customers use DocuCRM to send documents to their own recipients, the customer is the data controller for that recipient data and DocuCRM acts as a processor. A separate Data Processing Agreement governs that relationship — write to privacy@docucrm.com for a copy.
§02
What we collect
We collect four categories of data:
- Account data. Email, name, and password hash, plus the minimum metadata needed to authenticate you. If you sign in with Google, we store your Google account identifier and, if your Google profile has one, your avatar image.
- Document data. Documents you upload, the recipients you add, the signing events, and the hash-chained audit log that proves them. When a recipient draws a signature, we capture the signature stroke data (the path and timing of the drawn signature) as part of the signing evidence. To make sending faster, we also keep a per-account dictionary of recipient email addresses you've sent to before.
- Network and consent data. We record IP addresses against your session, against entries in the audit log, and against each recipient's electronic-signature consent — so that a signed envelope can prove who acted, and from where, at the moment of signing.
- Usage data. Basic device + browser metadata and error reports — scoped to keeping the service running and debugging problems.
We don't sell personal data. We don't build advertising profiles. We don't read your document contents to train models.
§03
Why we collect it
We process personal data only when one of these legal bases applies:
- Contract. To provide the service you signed up for, including the transactional emails it depends on — signing invitations, completion receipts, and account notifications. We don't currently send marketing email.
- Legitimate interest. Security, fraud prevention, debugging, keeping the service running.
- Legal obligation. Tax, anti-money-laundering, and other compliance requirements.
§04
How long we keep it
Account data is retained while your account is active and for 30 days after deletion to allow recovery from accidental deletes.
Signed envelopes are retained until you delete them. Soft-delete leaves an audit-trail entry; the document and its receipt remain verifiable.
Drafts remain until you delete them. Envelopes with an explicit expiry are auto-closed at the configured time.
Usage logs are retained for 90 days, then aggregated into anonymous metrics.
§05
How erasure works today
Erasure is self-service. Account owners can delete their account and its data from their settings, and recipients can request erasure of their personal data directly — no email ticket required. When you do, we soft-delete the record and write an audit-trail entry capturing who asked and when. The signed PDF and its receipt remain verifiable.
Should you ever want to, recipients can do this through the self-service form at app.docucrm.com/privacy/erasure, without needing an account.
One stronger guarantee is still on our roadmap: per-recipient cryptographic key-erasure that destroys the encryption keys for a recipient's data while keeping the signature proof intact. It is designed but not yet shipped. We will update this page the day it does.
§07
International transfers
Where international transfers occur, we apply Standard Contractual Clauses and the EU-US Data Privacy Framework where applicable. Write to privacy@docucrm.com for the current arrangement.
§08
Your rights
You can ask us, at any time, to:
- Access a copy of your personal data.
- Correct anything that's wrong.
- Erase your data (subject to legal hold exceptions).
- Port your data to another provider.
- Object to specific processing activities.
To exercise any of these, email privacy@docucrm.com and we will respond within thirty days. Erasure can also be handled through the self-service form at app.docucrm.com/privacy/erasure. You have the right to lodge a complaint with your local data protection authority.
§10
Changes to this policy
If we update this policy in a way that affects your rights, we'll email all account holders at least thirty days before the change takes effect. Smaller editorial changes get a new "Last updated" date and a note in the changelog.
Questions?
Write to privacy@docucrm.com — a human will reply.