Privacy Policy
This Privacy Policy explains how Projeyes Platform collects, uses, shares, and protects your personal data when you use our website and services (the platform, application, APIs, and any related services). We aim to operate the service efficiently while respecting individuals' rights and applicable regulatory requirements in the Kingdom of Saudi Arabia, including the Personal Data Protection Law (PDPL).
Scope
This policy applies to:
- Visitors to projeyes.com
- Users of the platform (individuals/teams/companies)
- Account administrators (Admins)
- Anyone who contacts us via support or sales
Personal Data We Collect
Data you provide directly
- Account data: name, email, mobile number, password (stored securely using hashing/encryption mechanisms as applicable).
- Company/organization data: organization name, industry, number of users, billing information.
- Work content within the platform: projects, tasks, comments, attachments, team names, and any text/files you upload.
- Support communications: messages, tickets, and recordings/attachments related to an issue.
Data collected automatically (when you use the service)
- Usage data: pages/features used, login frequency and time, in-product actions (logs).
- Technical data: IP address, browser type, operating system, device identifiers, language, time zone.
- Cookies and similar technologies (see Cookies section).
Data from third parties (when you connect integrations)
If you connect Projeyes Platform with a third-party service (e.g., Google, Microsoft, Slack, etc.), we may receive data based on your authorization and integration settings (such as your name, email, user lists, calendar data, etc., depending on the integration). You are responsible for the permissions you grant.
Why We Use Your Data (Purposes)
- To provide and operate the service (account creation, workspace management, data synchronization).
- Security, fraud prevention, and abuse detection (e.g., detecting hacking attempts/spam).
- Billing and payments (if applicable): invoicing, collection, subscription management.
- Technical support and quality improvement (issue resolution, performance improvements).
- Product improvement and development of new features (internal analytics and usage understanding).
- Operational communications (important alerts, changes to the service/policies).
- Marketing (optional): marketing messages only if you consent or where permitted by law, and you can opt out at any time.
In the context of e-commerce, the service provider may not use consumers' data or communications for unauthorized purposes or disclose them except with the consumer's consent or if required by applicable laws in the Kingdom of Saudi Arabia.
Legal Basis for Processing
We process personal data to the extent permitted by applicable laws. Examples of legal bases include:
- Performance of the service contract and providing the service to you.
- Legal compliance (e.g., invoicing/record-keeping requirements where applicable).
- Your consent (especially for marketing or certain integrations).
- Legitimate interests (e.g., improving security and preventing abuse), provided it does not override your rights.
Data Sharing
We may share your data, to the minimum extent necessary, with:
- Hosting and infrastructure providers (servers/databases/monitoring).
- Email/SMS providers for notifications and OTP (if these features are used).
- Payment gateways (if you are on a paid plan) to process payments - we do not store full card details in Projeyes Platform.
- Analytics providers to understand product performance (we recommend enabling only what is necessary).
- Integration partners you connect (based on your permissions).
- Official/judicial authorities if we are legally required to do so.
We do not sell your personal data.
Cross-Border Data Transfers
Your data may be stored or processed outside the Kingdom only when operationally necessary (e.g., using a hosting provider or third-party service), and in accordance with applicable cross-border transfer requirements and the relevant safeguards/exceptions permitted by law (such as standard contractual clauses, binding rules, approvals, or applicable statutory exceptions).
Data Retention
We retain your data:
- For as long as your account/subscription exists or as needed to provide the service.
- After cancellation: we may retain limited data for a reasonable period for legal/accounting, dispute resolution, or abuse prevention purposes.
- System logs are typically retained for shorter periods for security and diagnostics.
- Company account administrators (Admins) may export workspace data or request deletion within the limits of the law and the contract.
Information Security
We apply organizational and technical safeguards to protect data (such as access controls, encryption in transit, log monitoring, and backups), and we follow relevant cybersecurity practices.
Explicit notice: no platform is 100% breach-proof. If a security incident occurs, we will assess the impact and take appropriate steps, including notifications where required.
Your Rights (Data Subject Rights)
Subject to applicable laws, your rights may include:
- The right to be informed about how your data is collected and processed.
- The right to access your data and request a copy.
- The right to correct inaccurate data.
- The right to erasure/deletion in certain cases.
- The right to withdraw consent where processing is based on consent.
- The right to data portability where applicable.
You can exercise these rights by contacting us via the channels below. We may request identity verification to protect your account.
Cookies
We use cookies for purposes such as:
- Session operation and login (necessary).
- User preferences.
- Performance measurement and experience improvement (optional).
You can manage cookies through your browser settings. Disabling certain cookies may affect platform functionality.
Children's Data
The service is intended for work teams and companies and is not designed for minors below the legally applicable age. If we discover inappropriate collection of a child's data without a legal basis, we will delete it upon verification.
Policy Changes
We may update this policy. If changes are material, we will post a notice on the website/platform or notify you by email.
Contact and Complaints
For privacy inquiries or rights requests:
Or via the Support page within the platform