Legal
At Syncura, we are committed to protecting your privacy and handling your data with transparency and care. This Privacy Policy explains how we collect, use, store, and protect personal information in connection with our website and services.
What information we collect
We collect personal information in two contexts. When you interact with our website — by submitting a contact form, booking a demo, or downloading content — we may collect your name, work email address, company name, and any information you provide voluntarily. Demo bookings are handled through a third-party scheduling service, which receives the details you enter and the meeting time. We also collect standard website usage data including IP addresses, browser type, pages visited, and session duration, primarily through cookies and similar tracking technologies. When you engage with Syncura as a client, we process the documents and data you provide as part of your use of our platform. This includes the content of documents submitted for processing, metadata associated with those documents, and usage data generated during platform operation.
How we use your information
Information collected through our website is used to respond to your enquiries, provide requested materials, and communicate with you about Syncura's products and services. We do not send unsolicited marketing communications. Client data is used solely to deliver the contracted Syncura service. We do not use client data to train models shared across clients, sell data to third parties, or use data for any purpose outside the scope of your service agreement.
Legal basis for processing (GDPR)
For individuals in the European Economic Area, we process personal data on the following legal bases: performance of a contract or pre-contractual steps at your request; our legitimate interests in operating and improving our business; and your consent, where explicitly provided. You may withdraw consent at any time by contacting us at privacy@syncura.ai.
Data sharing and subprocessors
Syncura engages third-party subprocessors to deliver the Service. These include Amazon Web Services, Inc., which provides cloud infrastructure and hosting in the United States (US East region). The subprocessor list is maintained as Annex A to our Data Processing Agreement. Syncura gives at least thirty (30) days' notice before engaging a new subprocessor or replacing an existing one, and clients may object on reasonable data-protection grounds within that period. Separately, we use a small number of third-party providers to run our website and business operations. These process visitor and prospect information rather than client data, and include Webflow (website hosting), Cal.com (demo scheduling), Google Analytics (website analytics), and Microsoft 365 (email and business systems). We do not sell personal data to third parties, and we do not share personal data with third parties for their own marketing purposes.
Data residency
Client data is processed and stored on Amazon Web Services in the United States (US East region). Syncura does not currently offer alternative processing regions. Where personal data originates in the European Economic Area, the United Kingdom, or Switzerland, the transfer mechanisms set out in our Data Processing Agreement apply.
Data security
Syncura implements industry-standard security measures to protect your data. All data is encrypted in transit using TLS 1.2 or higher and encrypted at rest using AES-256. Access to client data is restricted on a least-privilege basis, and multi-factor authentication is required for administrative access. Syncura's full security posture — including its compliance alignment, resilience measures, and the status of independent security testing — is set out on our Trust Centre page.
Cookies
Our website uses cookies to understand how visitors interact with our content and to improve the user experience. We use Google Analytics for this, and may use functional cookies to support form completion and session management. You can control cookie preferences through your browser settings. We do not use cookies for advertising or cross-site tracking purposes.
Your rights
Depending on your location, you may have the right to access, correct, delete, or restrict processing of your personal information, or to request a copy of the data we hold about you. To exercise any of these rights, please contact us at privacy@syncura.ai. We respond to all data rights requests within 30 days.
Data Processing Agreements
For clients operating under GDPR or similar regulatory frameworks, Syncura acts as a data processor. Our Data Processing Agreement, together with Annex A (subprocessors) and Annex B (technical and organisational measures), is published on our Legal page. For questions, contact privacy@syncura.ai.
Changes to this Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes we will update the date at the top of this page. We encourage you to review this page periodically.
Contact us
For questions, concerns, or requests regarding this Privacy Policy or our data practices — including any request to exercise your data rights — contact us at privacy@syncura.ai. We respond to all privacy enquiries within 5 business days. For general enquiries unrelated to privacy, contact info@syncura.ai.