PRONIZE

PRIVACY POLICY

Last Updated: February 2026

This Privacy Policy explains how Pronize (“Pronize”, “we”, “us”, or “our”) collects, uses, discloses, and protects personal data when individuals access or use our cloud-based software platform, website, AI-powered tools, and related services (collectively, the “Service”).

This Policy is designed to comply with the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and applicable EU data protection laws.

1. Scope of This Policy

This Policy applies to:

  • Business customers and their authorized users
  • Website visitors
  • Business partners and suppliers
  • Individuals whose personal data is included in customer-provided content

This Policy does not apply to third-party services integrated with the Service.

2. Data Controller

Pronize acts as the data controller for personal data processed in connection with:

  • Account management
  • Billing and subscriptions
  • Website analytics
  • Direct customer relationships

Where Pronize processes personal data on behalf of a customer, Pronize acts as a data processor under a separate Data Processing Agreement (DPA).

Contact: info@pronize.com

3. Personal Data We Collect

3.1 Information Provided Directly

  • Name and surname
  • Business email address
  • Phone number
  • Company name, role, and department
  • Account credentials
  • Support communications

3.2 Customer Business Data

When customers use the Service, they may upload:

  • Orders, production, and supply-chain records
  • Supplier and buyer contact details
  • Pricing, quotations, and shipment data
  • Contracts or trade documentation

This data is processed only to provide the Service.

3.3 AI-Processed Content

AI features may process:

  • Documents
  • Text or structured data
  • Workflow information

Customer content is not used to train shared AI models unless explicitly agreed in writing.

3.4 Automatically Collected Data

  • IP address and device identifiers
  • Browser and operating system
  • Usage logs and activity history
  • Performance and analytics metrics
  • Cookie identifiers

4. How We Use Personal Data

We use personal data to:

  • Provide and operate the Service
  • Authenticate users and secure accounts
  • Deliver AI-assisted analytics and automation
  • Manage subscriptions, billing, and contracts
  • Respond to support requests
  • Monitor performance and improve reliability
  • Prevent fraud, abuse, or security incidents
  • Comply with legal obligations

We do not sell personal data.

5. Legal Bases for Processing (GDPR Art. 6)

We process personal data based on:

  • Contract performance – delivering the Service
  • Legal obligations – accounting, tax, compliance
  • Legitimate interests – security, product improvement, fraud prevention
  • Consent – cookies, marketing, optional features

Where legitimate interest applies, we perform balancing assessments to protect individual rights.

6. Data Sharing and Recipients

We may share personal data with:

  • Cloud hosting and infrastructure providers
  • Payment processors
  • IT, analytics, and security vendors
  • Professional advisors
  • Public authorities where legally required

All third parties are bound by:

  • Contractual confidentiality
  • GDPR-compliant Data Processing Agreements
  • Security and data protection obligations

7. International Data Transfers

If personal data is transferred outside the European Economic Area (EEA), Pronize ensures safeguards such as:

  • European Commission Standard Contractual Clauses (SCCs)
  • Adequacy decisions
  • Supplementary technical and organizational protections

8. Data Retention

We retain personal data only as long as necessary to:

  • Fulfill contractual obligations
  • Comply with legal requirements
  • Resolve disputes
  • Enforce agreements

Afterward, data is securely:

  • Deleted, or
  • Irreversibly anonymized

9. Security Measures

We implement appropriate technical and organizational safeguards, including:

  • Encryption in transit and at rest
  • Role-based access controls
  • Secure authentication
  • Continuous monitoring and logging
  • Vulnerability management and testing
  • Backup and disaster recovery
  • Staff confidentiality and training

10. Automated Decision-Making and AI

AI features provide decision support only.

No solely automated decisions with legal or similarly significant effects are made.

Human review remains available where relevant.

11. Cookies and Tracking

We use:

  • Strictly necessary cookies – core functionality
  • Analytics cookies – performance measurement (consent-based where required)

Marketing or tracking cookies are used only with explicit consent.

Full details are provided in the Cookie Policy.

12. Your GDPR Rights

Individuals in the EU have the right to:

  • Access their personal data
  • Correct inaccurate data
  • Request erasure
  • Restrict processing
  • Object to processing
  • Receive data portability
  • Withdraw consent at any time
  • Lodge a complaint with a supervisory authority

Requests: info@pronize.com

We respond within one month as required by GDPR.

13. Data Breach Procedures

If a personal data breach occurs, Pronize will:

  • Notify the competent supervisory authority within 72 hours where required
  • Inform affected individuals when risk is high
  • Document and remediate the incident

14. Children's Privacy

The Service is not intended for individuals under 16, and we do not knowingly collect children's data.

15. Changes to This Policy

We may update this Privacy Policy due to:

  • Legal or regulatory changes
  • Service or technology updates
  • Security improvements

The latest version will always be published on our website.

16. Contact

For privacy or data protection inquiries:

info@pronize.com