Skip to main content

Privacy Policy

Last updated: 26 February 2026

1. Introduction

Resubly ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, share, and protect your information when you use our SaaS renewal management platform ("Service") at resubly.com.

Our Service is designed for Finance, Procurement, and Operations teams. We understand that you entrust us with sensitive business data, and we take that responsibility seriously.

2. Information We Collect

2.1 Account Information

When you create an account, we collect your email address, name, and password. If you join an organization, we store your role, department assignment, and permissions.

2.2 Contract and Business Data

You may upload or enter contract details including vendor names, contract values, renewal dates, notice periods, payment terms, and vendor contact information (names, emails, phone numbers). You may also upload contract documents (PDFs, invoices).

2.3 Organizational Data

We store organization names, department structures, member lists, notification preferences, and integration configurations (such as Slack or Microsoft Teams webhook URLs).

2.4 Usage and Analytics Data

We automatically collect:

  • Analytics data: Page views, session data, device information, and general usage patterns
  • Experience data: Session recordings and heatmaps to understand how users interact with our interface (inputs in sensitive fields are masked)
  • Log data: IP addresses, browser type, and timestamps when you access the Service

2.5 Waitlist and Feedback Data

If you join our waitlist, we collect your email address, name, and company name (optional). If you submit feedback, we collect the content of your submission along with your user identity.

3. How We Use Your Information

  • Provide the Service: Store and display your contracts, send renewal alerts, generate forecasts, and manage vendor onboarding workflows
  • AI Document Processing: We use AI services to extract contract details (vendor name, cost, dates, terms) from uploaded PDF documents. This processing occurs solely to populate your contract records
  • Notifications: Send email alerts and deliver notifications to Slack or Microsoft Teams based on your configured preferences
  • Improve the Service: Analyze usage patterns to enhance features, fix bugs, and improve the user experience
  • Communication: Send you service-related communications such as account verification, security alerts, and product updates
  • Display vendor logos: Fetch vendor logos from third-party services to enhance the visual display of your contract list

4. Third-Party Services

We use trusted third-party service providers to operate the Service. These providers fall into the following categories:

Cloud hosting and database — Your account data, contracts, and uploaded documents are stored on secure cloud infrastructure.
AI processing — We use AI services to extract contract details from uploaded PDFs.
Analytics — We use analytics and experience monitoring services to understand how users interact with our Service, including page views, session data, and usage patterns.
Email delivery — We use transactional email services to send notifications and alerts.

Each provider processes data in accordance with their own privacy policies. We do not sell your personal information or business data to any third party.

5. Cookies and Tracking

We use cookies and similar technologies for authentication, analytics, and user experience analysis. These may include:

  • Essential cookies: Required for authentication and Service functionality
  • Analytics cookies: Used to measure usage patterns and improve the Service
  • Experience cookies: Used for session recording and heatmap analysis

You can control cookies through your browser settings. Disabling essential cookies may prevent you from using the Service.

6. Data Security

We implement industry-standard security measures to protect your data, including:

  • HTTPS encryption for all data in transit
  • Content Security Policy (CSP) headers to prevent cross-site scripting
  • Role-based access controls within organizations
  • Secure session management and authentication
  • X-Frame-Options, X-Content-Type-Options, and XSS protection headers

While we take reasonable measures to protect your data, no method of transmission or storage is 100% secure. You are responsible for maintaining the security of your account credentials.

7. Data Retention

We retain your data for as long as your account is active or as needed to provide the Service. Contract data and activity logs are retained for the duration of your subscription. Upon account termination, you may request a data export within 30 days. After that period, we will delete your data in accordance with our retention schedule, except where retention is required by law.

8. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access and receive a copy of your personal data
  • Correct inaccurate or incomplete data
  • Request deletion of your personal data
  • Object to or restrict certain processing activities
  • Data portability — receive your data in a structured, machine-readable format
  • Withdraw consent where processing is based on consent

To exercise these rights, contact us at hello@resubly.com. We will respond within 30 days.

9. International Data Transfers

Your data may be processed and stored in jurisdictions outside your country of residence, including the United States, where our infrastructure providers operate. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.

10. Children's Privacy

The Service is designed for business use and is not intended for individuals under the age of 18. We do not knowingly collect personal information from children.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the Service. The "Last updated" date at the top of this page indicates when the policy was last revised.

12. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, contact us at:

Email: hello@resubly.com