Privacy Policy

Effective Date: February 23, 2026

IMPORTANT: This Privacy Policy describes how ContractChecker.net collects, uses, and protects Your information. By using the Service, You consent to the data practices described in this policy.

1. INTRODUCTION

ContractChecker.net ("we," "us," or "our") is committed to protecting Your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard Your information when You use our web application and services (the "Service").

We are a technology company, not a law firm or financial institution. We do not provide legal or financial advice.

2. STRICT LIMITATION ON DATA COLLECTION

✓ MINIMAL DATA COLLECTION POLICY

We collect ONLY the data necessary to provide and secure our Service. We do NOT collect names, email addresses, phone numbers, financial data, or other personally identifiable information unless You voluntarily provide it.

2.1 Data We Collect

Data TypeCollectedPurpose
Device IDYESSecurity, fraud prevention, service delivery
NameNONot collected
Email AddressNONot collected
Phone NumberNONot collected
Financial DataNONot collected
Payment InformationNOProcessed by third-party payment processors only

3. DEVICE ID – LAWFUL BASIS FOR PROCESSING

GDPR & UK-GDPR COMPLIANCE

We process Your Device ID in compliance with the General Data Protection Regulation (EU) 2016/679 ("GDPR") and the UK General Data Protection Regulation ("UK-GDPR").

3.1 What is a Device ID?

A Device ID is a unique identifier generated by Your web browser or device operating system. It is a random string of characters used to distinguish Your device from other users' devices. The Device ID does not reveal Your name, location, or personal contact information.

3.2 Lawful Basis for Processing (GDPR Article 6)

We process Your Device ID under the following lawful bases:

  • Legitimate Interest (Article 6(1)(f)): The processing is necessary for our legitimate interests, namely:
    • Ensuring the security and integrity of our Service;
    • Preventing fraud, abuse, and unauthorized access;
    • Maintaining service quality and functionality;
    • Providing and improving our Services.
  • Strictly Necessary (Article 6(1)(b)): The processing is necessary for the performance of a contract to provide the Service to You.

3.3 Legal Basis Under UK-GDPR

For users in the United Kingdom, we rely on the same lawful bases under the UK-GDPR (Schedule 2 to the Data Protection Act 2018), specifically:

  • Legitimate Interests (UK-GDPR Article 6(1)(f));
  • Necessary for the performance of a contract (UK-GDPR Article 6(1)(b)).

4. HOW WE USE YOUR INFORMATION

We use the Device ID we collect for the following purposes:

  • Service Delivery: To provide, maintain, and improve our Service;
  • Security: To detect, prevent, and address fraud, security breaches, and other prohibited activities;
  • Analytics: To understand how users interact with our Service (in aggregate, anonymized form only);
  • Troubleshooting: To identify and resolve technical issues;
  • Compliance: To comply with legal obligations and enforce our Terms of Service.

5. DATA RETENTION

We retain Your Device ID only for as long as necessary to fulfill the purposes outlined in this Privacy Policy. Specifically:

  • Device ID data is retained for a maximum period of 12 months from the date of collection;
  • After this period, the data is automatically deleted or anonymized;
  • We do not retain any contract documents You upload – they are processed in memory and deleted immediately after analysis.

6. YOUR RIGHTS (GDPR, UK-GDPR, CCPA, PIPEDA, APP)

YOUR DATA PROTECTION RIGHTS

6.1 GDPR & UK-GDPR Rights (EU/UK Users)

If You are located in the EU or UK, You have the following rights:

  • Right to Access: You may request a copy of the personal data we hold about You;
  • Right to Rectification: You may request correction of inaccurate personal data;
  • Right to Erasure: You may request deletion of Your personal data ("right to be forgotten");
  • Right to Restrict Processing: You may request restriction of processing;
  • Right to Data Portability: You may request transfer of Your data to another controller;
  • Right to Object: You may object to processing based on legitimate interests;
  • Right to Withdraw Consent: Where processing is based on consent, You may withdraw consent at any time.

6.2 CCPA Rights (California Residents)

If You are a California resident, You have the following rights under the California Consumer Privacy Act (CCPA):

  • Right to Know: You may request disclosure of the categories and specific pieces of personal information collected;
  • Right to Delete: You may request deletion of personal information;
  • Right to Opt-Out: You may opt out of the sale of personal information.

Note: We do NOT sell Your personal information. We do NOT collect "sensitive personal information" as defined by CCPA.

6.3 PIPEDA Rights (Canada)

If You are located in Canada, You have rights under the Personal Information Protection and Electronic DocumentsEDA), including the Act (PIP right to access, correct, and withdraw consent for processing of Your personal information.

6.4 APP Rights (Australia)

If You are located in Australia, You have rights under the Australian Privacy Principles (APP), including the right to access, correct, and complain about a breach of the APP.

7. INTERNATIONAL DATA TRANSFERS

Your information may be transferred to and processed in countries other than Your country of residence. However, we ensure that such transfers are conducted in compliance with applicable data protection laws, including:

  • For EU/UK transfers: Standard Contractual Clauses (SCCs) or adequacy decisions;
  • For international transfers: Appropriate safeguards as required by law.

8. DATA SECURITY

We implement appropriate technical and organizational security measures to protect Your information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption of data in transit (TLS/SSL);
  • Secure storage with access controls;
  • Regular security assessments and audits;
  • Employee training on data protection.

However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect Your information, we cannot guarantee absolute security.

9. THIRD-PARTY SERVICES

We may use third-party service providers to assist in operating our Service. These providers have access to Your information only to perform tasks on our behalf and are obligated not to disclose or use it for any other purpose.

We do NOT sell, trade, or otherwise transfer Your personal information to outside parties. We do NOT use Your information for targeted advertising.

10. CHILDREN'S PRIVACY

Our Service is not intended for use by individuals under the age of 18 (or the age of majority in Your jurisdiction). We do not knowingly collect personal information from children. If We become aware that We have collected personal information from a child, We will take steps to delete such information promptly.

11. CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time. We will notify You of any changes by posting the new Privacy Policy on this page and updating the "Effective Date" at the top. You are advised to review this Privacy Policy periodically for any changes.

12. CONTACT INFORMATION

If You have any questions about this Privacy Policy, wish to exercise Your data protection rights, or wish to file a complaint, please contact us at:

Email: support@contractchecker.net

Data Protection Officer: We have not appointed a dedicated DPO as our processing activities do not meet the threshold requiring one under GDPR Article 37.

13. REGULATORY SUPERVISORY AUTHORITIES

If You are located in the following jurisdictions, You have the right to lodge a complaint with the relevant supervisory authority:

  • EU: Your local Data Protection Authority or the Irish Data Protection Commission (for our primary establishment)
  • UK: Information Commissioner's Office (ICO)
  • Canada: Office of the Privacy Commissioner of Canada or Your provincial privacy authority
  • Australia: Office of the Australian Information Commissioner (OAIC)