Privacy Policy
Last Updated: January 1, 2026
Introduction
This Privacy Policy explains how Iteright, Inc. collects, uses, shares, and protects information when you access or use our websites, applications, and related services (collectively, the "Services"). It applies to website visitors and business customers using the Iteright platform.
When you use our Services on behalf of an organization, your organization's agreement with Iteright may control how certain information is processed.
1. Scope and Roles
1.1 When Iteright is a Controller
Iteright acts as a data controller for our own business purposes, including operating websites, marketing activities, recruiting, account administration, security monitoring, and service improvement.
1.2 When Iteright is a Processor
Iteright acts as a processor when handling "Customer Content" on behalf of customers per their instructions. Customer Content includes business strategy materials, portfolio items, workspace content, integration data, and files submitted to the platform.
2. Information We Collect
2.1 Information You Provide
You may provide contact information, account credentials, billing details, communications, Customer Content, and event registration information.
2.2 Information Collected Automatically
The platform automatically collects device and usage data, including IP addresses, browser types, operating systems, pages viewed, timestamps, log data, and security-related information.
2.3 Information from Third Parties and Integrations
Information may come from customers provisioning accounts, identity providers offering SSO, integration providers for connected tools, and service providers supporting business operations.
3. How We Use Information
3.1 Provide and Operate the Services
Uses include account creation, workspace collaboration, integration support, customer support, and transaction processing.
3.2 Improve, Maintain, and Secure the Services
We monitor performance, debug issues, conduct research, prevent fraud, and enforce policies.
3.3 Communications
Iteright responds to inquiries, sends administrative messages, provides onboarding communications, and delivers marketing messages where permitted.
3.4 Compliance and Legal Obligations
We comply with laws, respond to legal requests, protect rights and safety, and maintain audit trails.
4. AI, Machine Learning, and Automated Processing
4.1 We Do Not Train General AI Models on Customer Data
Iteright does not train generalized AI or foundation models on Customer Content.
4.2 AI as Decision Support
AI features provide decision support. Users are responsible for reviewing outputs and validating results before making business decisions.
4.3 Use of AI Service Providers
Third-party AI providers are used with contractual controls limiting data sharing to necessary information only.
4.4 No Sensitive Data Requirements
Customers should not submit information they lack rights to use. The Services are not designed for HIPAA-protected health information, PCI DSS card data, or other highly sensitive regulated information.
5. How We Share Information
5.1 Service Providers (Processors)
Information is shared with vendors providing cloud hosting, analytics, customer support, email delivery, security tools, and AI services.
5.2 Customers and Authorized Users
Workspace administrators and authorized users may see information associated with user accounts and activity.
5.3 Business Transfers
Information may be transferred during mergers, acquisitions, or asset sales with required legal notice.
5.4 Legal, Safety, and Security
Information may be disclosed to comply with law, respond to legal requests, protect rights and safety, and address fraud or security issues.
6. Cookies and Tracking Technologies
6.1 Types of Cookies We Use
The platform uses strictly necessary cookies for authentication, analytics cookies for understanding usage, preference cookies for remembering settings, and marketing cookies for campaign effectiveness.
6.2 Your Choices
You can control cookies through browser settings or cookie consent banners. Disabling certain cookies may impact functionality.
7. Data Retention
Information is retained as long as necessary to provide Services, comply with legal obligations, resolve disputes, and enforce agreements. Customer Content retention follows applicable agreements and customer configuration choices.
We may retain certain information longer where required or permitted by law for security, fraud prevention, and audit purposes.
8. Security
We maintain administrative, technical, and organizational safeguards including access controls, encryption, logging, monitoring, secure development practices, and incident response procedures. No method of transmission or storage is 100% secure, but we continuously improve our security posture.
9. International Data Transfers
Iteright may process information in the United States and other countries where we or our service providers operate. Cross-border transfers use safeguards like standard contractual clauses where required.
10. Your Rights and Choices
10.1 Marketing Communications
You can opt out of marketing emails using unsubscribe links or by contacting support@iteright.com. Non-marketing communications will continue.
10.2 GDPR / UK GDPR Rights (Where Applicable)
Where applicable, individuals may access, correct, or delete personal information, object to processing, request data portability, and withdraw consent.
10.3 U.S. State Privacy Rights (Including California)
Residents may know what information is collected, access or delete certain data, opt out of targeted advertising sharing, and avoid discrimination for exercising rights. We do not sell personal information and do not knowingly share data for cross-context behavioral advertising constituting a "sale."
10.4 Requests Related to Customer Workspaces
Privacy requests regarding Customer Content should be directed to workspace administrators, with Iteright assisting consistent with agreements and law.
10.5 How to Exercise Rights
Contact us at support@iteright.com. We may verify requests and require identity confirmation.
11. Children's Privacy
The Services are not directed to children under 13. We do not knowingly collect personal information from children and will take appropriate steps if contacted about child data.
12. Third-Party Services and Links
This Privacy Policy does not apply to third-party websites or services that may be linked or integrated. Please review third-party privacy policies independently.
13. Changes to This Privacy Policy
We may update this Privacy Policy and will revise the "Last Updated" date. Material changes will receive notice through the Services or email where required by law.
14. Contact Us
Email: support@iteright.com Mail: Iteright, Inc., 802 E Whiting St, Tampa, FL 33602, United States
If you have questions about this Privacy Policy, contact us at support@iteright.com.