Privacy Policy

Privacy Policy

This Privacy Policy explains how JORVALE, LLC collects, uses, stores, shares, and protects personal information when you visit jorvale.com, contact us, create an account, subscribe to an automation plan, use our managed workflow services, or otherwise interact with our website and services.

1. About This Privacy Policy

JORVALE, LLC provides managed business automation services through jorvale.com. Our services are designed to help businesses operate recurring workflows, connect business applications, integrate APIs, use AI-assisted processing, monitor automation activity, and manage recurring automated processes.

Our subscription plans may include managed workflows, monthly process capacity, AI-assisted task processing, application integrations, API connections, webhook connections, workflow monitoring, error monitoring, and technical support.

This Privacy Policy applies to information collected through jorvale.com, checkout pages, customer accounts, contact forms, subscription management, support communications, automation setup, integrations, workflow execution, and service fulfilment.

By using our website, purchasing a subscription, connecting a business system, or submitting personal information to us, you acknowledge that your information will be handled as described in this Privacy Policy.

2. Data Controller and Processing Roles

For personal information collected through our website, checkout process, customer accounts, subscription management, enquiries, and direct communications, the data controller is:

Company: JORVALE, LLC
Address: 19 Crossroads Ct, Ste 201, Delafield, WI 53018, US
Email: [email protected]
Phone: +1 (262) 256-0250
Website: jorvale.com

When a business customer connects an application, API, business system, database, account, or other service to an automation workflow, information controlled by that customer may be processed through the workflow.

In these circumstances, the business customer may act as the data controller and JORVALE, LLC may act as a data processor or service provider, processing information only as reasonably necessary to configure, operate, monitor, maintain, or support the requested automation.

Where required by applicable law or the nature of the service, additional data processing terms or a data processing agreement may define the responsibilities of each party.

3. Information We Collect

Depending on how you interact with us and which automation services you use, we may collect the following categories of information:

Identity and contact information: your name, company name, job or business contact details, billing address, email address, telephone number, and other contact information.

Customer and subscription information: customer account information, selected subscription plan, subscription status, renewal status, service history, workflow allocation, monthly process usage, support history, and customer preferences.

Order and transaction information: selected plan, transaction amount, currency, billing information, payment status, subscription payments, refunds, disputes, invoices, and related records.

Automation configuration information: workflow names, workflow requirements, trigger settings, actions, schedules, process rules, conditions, routing instructions, connected applications, integration settings, webhook information, and other configuration details required to operate the service.

Integration information: information relating to applications, APIs, software platforms, cloud services, business tools, and other systems that you choose to connect to an automation workflow.

Workflow processing information: data transmitted, generated, transformed, routed, received, or otherwise processed through a configured workflow where this is necessary to perform the automation requested by the customer.

AI processing information: prompts, instructions, workflow inputs, generated outputs, classifications, summaries, extracted information, or other data processed through AI-assisted workflow steps where AI functionality forms part of the selected automation.

Communication information: messages sent through contact forms, emails, support requests, onboarding communications, service questions, feedback, and other correspondence.

Technical information: IP address, browser type, device type, operating system, referring page, access time, page activity, security logs, diagnostic information, workflow logs, error records, and service performance information.

Marketing preferences: whether you have requested or agreed to receive promotional communications, service updates, or other optional marketing information.

4. Information Processed Through Automation Workflows

Our managed automation services may connect different business systems and automatically transfer or process information between those systems.

Depending on the workflow selected by the customer, processed information may include business records, form submissions, order information, product information, customer enquiries, operational data, notifications, documents, database entries, CRM information, task information, or other data required for the workflow to operate.

The exact information processed depends on the customer's chosen systems, workflow instructions, integrations, and business requirements.

Customers are responsible for ensuring that they have a lawful basis and appropriate authority to provide, connect, transfer, or otherwise process information through our services.

Customers should not configure workflows to process sensitive personal information unless such processing is necessary, lawful, appropriate for the service, and has been agreed with us where additional safeguards may be required.

Where credentials or access permissions are necessary, customers should use restricted, role-based, temporary, or limited-access permissions whenever the relevant platform supports them.

5. How We Use Personal Information

We may use personal information to:

Process subscription orders and payments; create and manage customer accounts; activate or manage subscription plans; configure managed workflows; connect approved business applications; establish API or webhook connections; operate workflow logic; monitor workflow activity; investigate automation errors; provide AI-assisted processing; manage monthly process capacity; provide technical support; and communicate with customers about their services.

We may also use information to maintain service reliability, protect our systems, prevent fraud or misuse, troubleshoot technical issues, improve automation performance, maintain billing and accounting records, comply with legal obligations, and establish or defend legal claims.

Where permitted, we may use contact information to provide subscription notices, service announcements, important workflow information, or marketing communications.

Marketing messages may be stopped by using the unsubscribe option provided in the communication or by contacting us at [email protected].

6. GDPR and UK GDPR Legal Bases

Where the General Data Protection Regulation, UK GDPR, or similar data protection legislation applies, we process personal information under one or more of the following legal bases:

Performance of a contract: processing necessary to establish or manage a subscription, configure or operate a workflow, provide integrations, monitor automation activity, provide technical support, process payments, or otherwise perform services requested by the customer.

Legal obligation: processing necessary to comply with accounting, tax, consumer protection, fraud prevention, regulatory, record-keeping, or other applicable legal requirements.

Legitimate interests: processing necessary for service security, workflow reliability, fraud prevention, troubleshooting, service improvement, customer support, business administration, transaction management, and protection of our legal rights, provided those interests are not overridden by your rights and freedoms.

Consent: processing based on your freely given consent, including certain marketing communications, optional cookies, or other activities where consent is required.

Where processing is based on consent, you may withdraw that consent at any time. Withdrawal does not affect processing that was lawful before consent was withdrawn.

7. Subscription and Payment Information

Our automation services may be offered through monthly subscription plans. Payments may be processed by independent payment providers such as Stripe, PayPal, or other payment services displayed during checkout.

Payment providers may collect payment card details, billing information, transaction identifiers, device information, and fraud prevention data under their own privacy policies.

Full card details are generally submitted directly to the selected payment provider and are not intended to be stored directly on our systems.

We may receive limited payment information such as the payer name, billing information, subscription status, payment status, transaction reference, payment method type, partial card information, renewal information, and refund status.

We may use this information to activate subscriptions, manage recurring billing, confirm payments, process cancellations or refunds, prevent payment fraud, and maintain financial records.

8. Cookies and Similar Technologies

We may use necessary cookies to operate the website, maintain checkout sessions, remember user preferences, support customer account functions, manage subscription sessions, protect our systems, and support website functionality.

With your consent where required, we may also use analytics, performance, preference, or marketing cookies.

Non-essential cookies should not be activated before valid consent is obtained where applicable.

For more information about the cookies we use and how to manage your preferences, please read our Cookie Policy.

9. How We Share Personal Information

We may share or make information available only where reasonably necessary to operate our website, provide subscriptions, run automation workflows, or support our business operations.

Relevant service providers may include payment processors, website hosting providers, cloud infrastructure providers, database providers, email providers, customer support tools, monitoring services, security providers, accounting providers, professional advisers, automation platforms, AI service providers, API providers, and other technology providers involved in the customer's configured workflow.

Where a customer instructs us to connect third-party applications, workflow information may be transferred between the connected systems as necessary to perform the requested automation.

These providers may process information under agreements with us or under their own terms and privacy policies, depending on the nature of the platform and customer-selected integration.

We may also disclose information where required by law, court order, regulatory request, tax obligation, fraud investigation, payment dispute, or where reasonably necessary to protect our business, customers, infrastructure, or legal rights.

If our business or relevant assets are sold, transferred, merged, or reorganised, personal information may be disclosed to advisers and transferred as part of that transaction, subject to appropriate safeguards.

10. Sale of Personal Information

We do not sell personal information as part of our ordinary business model.

We use personal information and customer-authorised workflow information to provide managed automation services, operate subscriptions, process transactions, maintain integrations, communicate with customers, support workflows, and conduct legitimate business operations.

11. AI-Assisted Processing

Certain subscription plans or workflows may use artificial intelligence services to perform tasks such as classification, extraction, summarisation, content transformation, routing, analysis, or other automated processing.

Where AI-assisted processing is included in a customer's workflow, information required to perform the requested task may be transmitted to the applicable AI or technology provider.

The type and amount of information processed will depend on the workflow configured for the customer.

Customers should avoid placing unnecessary confidential, sensitive, or regulated personal information into AI-enabled workflow steps unless such processing is appropriate and lawful.

AI-generated output may require human review depending on its intended use. Customers remain responsible for reviewing outputs before relying on them for significant business, legal, financial, employment, medical, or other consequential decisions.

12. International Data Transfers

Our website, cloud infrastructure, payment providers, automation platforms, AI providers, connected applications, APIs, or other service providers may process information in countries outside your own country, including countries outside the European Economic Area or the United Kingdom.

The location of processing may also depend on the third-party applications selected and connected by the customer.

Where required by applicable data protection law, international transfers will rely on an approved adequacy decision, standard contractual clauses, an international data transfer agreement, or another recognised legal safeguard.

Additional information about relevant transfer safeguards may be requested by contacting [email protected].

13. Data Retention

We retain personal information only for as long as reasonably necessary for the purpose for which it was collected and to meet applicable legal, accounting, tax, security, dispute-resolution, and contractual requirements.

Retention periods may depend on the nature of the information, the customer's subscription status, the type of workflow, whether integrations remain active, whether support is ongoing, applicable limitation periods, and whether records are required for legal or regulatory purposes.

Workflow logs, diagnostic records, configuration information, and temporary processing data may be retained for a limited period where reasonably necessary for troubleshooting, monitoring, security, service operation, billing, or compliance.

Information processed temporarily through a workflow may be deleted, overwritten, anonymised, or otherwise removed when it is no longer required for the relevant processing purpose, subject to technical, contractual, backup, security, and legal requirements.

When information is no longer required, we will take reasonable steps to delete, anonymise, or securely dispose of it.

14. Data Security

We use reasonable administrative, organisational, and technical measures designed to protect personal information and workflow information against accidental loss, unauthorised access, misuse, alteration, disclosure, or destruction.

These measures may include access controls, password protection, encrypted connections, role-based permissions, software updates, monitoring, backups, restricted administrative access, authentication controls, and the use of established infrastructure and payment providers.

Customers are responsible for maintaining appropriate security within their own connected systems and for limiting the permissions granted to integrations to those reasonably necessary for the applicable workflow.

No internet transmission, cloud service, integration, API, automation platform, or electronic storage system can be guaranteed to be completely secure.

Customers should use strong passwords, enable available account security features, protect API credentials, periodically review connected applications, and contact us promptly if unauthorised access is suspected.

15. Personal Data Breaches

If we become aware of a personal data breach affecting information for which we are responsible, we will investigate the incident and take reasonable steps to contain, mitigate, and address it.

Where applicable law requires notification, we will notify the relevant supervisory authority and affected individuals within the legally required timeframe.

Where we process personal data on behalf of a business customer and become aware of a relevant breach, we will provide appropriate notification or assistance to the customer as required by applicable law and the relevant service agreement.

16. Your GDPR Data Protection Rights

Where GDPR, UK GDPR, or similar legislation applies, you may have the right to:

Request access to your personal information; request correction of inaccurate or incomplete information; request deletion of information; request restriction of processing; object to certain processing; receive certain information in a portable format; withdraw consent; and submit a complaint to an applicable data protection authority.

The right to deletion is not absolute. We may retain information where processing is required for legal compliance, billing records, fraud prevention, contractual obligations, security, dispute resolution, or the establishment, exercise, or defence of legal claims.

To exercise a privacy right relating to information that JORVALE, LLC controls directly, contact [email protected].

If your personal information was processed through a workflow operated on behalf of one of our business customers, you may need to direct your request to that business customer as the relevant data controller.

We may request reasonable information to verify identity and confirm that a request relates to the person making it.

Authorised agents may submit requests where permitted by law, but we may require evidence of the agent's authority and verification of the relevant individual.

17. Objection to Direct Marketing

You may object at any time to the use of your personal information for direct marketing.

You may unsubscribe using the link included in a marketing communication or contact us at [email protected].

We may retain limited suppression information where necessary to ensure that your marketing preference continues to be respected.

18. Automated Processing and Decision-Making

Automation is a core part of our services. Our workflows may automatically transfer information, trigger actions, classify information, generate notifications, update connected systems, or perform other tasks according to rules configured for the customer.

We do not ordinarily use personal information collected directly through our website to make decisions based solely on automated processing that produce legal effects or similarly significant effects on individuals.

Customers are responsible for determining whether their own configured workflows involve automated decision-making regulated by applicable law and for implementing any legally required notices, human review, safeguards, or consent mechanisms.

Payment providers, security services, connected applications, and other third-party services may also use automated systems under their own terms, privacy policies, and legal responsibilities.

19. Children's Privacy

Our website and managed automation services are intended primarily for businesses and individuals who have legal authority to enter into a service or subscription agreement.

Our services are not directed toward children, and we do not knowingly collect personal information directly from anyone below the minimum age at which they may lawfully provide their own consent under applicable law.

If you believe that a child has submitted personal information directly to us without appropriate permission, contact [email protected] so that we can review the matter and take appropriate action.

20. Third-Party Platforms and Services

Our website and automation services may connect with independent third-party platforms, including cloud applications, business software, APIs, AI services, communication platforms, payment providers, database services, CRM systems, productivity tools, analytics providers, and other applications selected by the customer.

Third-party platforms operate independently and control their own availability, security, technical functionality, API access, privacy practices, data retention, terms, and processing activities.

Customers should review the privacy policies and terms of connected applications before authorising an integration.

We are not responsible for the independent privacy practices or security practices of third-party providers except to the extent responsibility cannot lawfully be excluded.

21. Changes to This Privacy Policy

We may update this Privacy Policy when our subscription plans, automation services, workflow features, integrations, AI functionality, technology providers, legal obligations, or data practices change.

Any updated version will be posted on jorvale.com. Material changes may also be communicated through the website, customer account, email, or another appropriate method where required.

22. Contact Us

For questions about this Privacy Policy, our handling of personal information, or a privacy rights request, contact:

JORVALE, LLC
19 Crossroads Ct, Ste 201, Delafield, WI 53018, US
Email: [email protected]
Phone: +1 (262) 256-0250
Website: jorvale.com

Please include ā€œPrivacy Requestā€ in the subject line and provide enough information for us to identify and respond to your request.