Privacy at a Glance
Table of Contents
PearSign Global Inc (“PearSign,” “we,” “our,” or “us”) provides an electronic signature and document workflow platform (the “Service”). This policy explains how we collect, use, protect and otherwise handle your Personally Identifiable Information.
“Personally Identifiable Information” (PII), as the term is used in US privacy law and information security, is information that can be used on its own or together with other information to identify, contact or locate a single person, or to identify an individual in context. Please read this policy carefully to understand how we handle your PII.
1Information We Collect
We collect information you provide directly to us, as well as information collected automatically when you use our Service.
Information You Provide
- Account Information: When you create an account, we collect your name, email address, password, and organization details.
- Document Content: Documents you upload for signature, including any personal information contained within those documents.
- Signature Data: Electronic signatures you create, including signature images and related metadata.
- Payment Information: If you subscribe to a paid plan, we collect billing information through our payment processor.
- Communications: Information you provide when you contact us for support or feedback.
- Form and Application Data: When you complete a form or an application sent through the Service — including an application for financing — you may be asked for your name, email address, mailing address, phone number and details about you or your business, which can include a Social Security number, tax identification number, credit history and financial data. We collect this information as a processor on behalf of the business that sent you the document.
Information Collected Automatically
- Usage Data: Information about how you use the Service, including pages viewed, features used, and actions taken.
- Device Information: Information about your device, including browser type, operating system, and IP address.
- Audit Logs: Records of document-related activities for compliance and security purposes.
2How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Process and complete electronic signature transactions
- Send you technical notices, updates, and administrative messages
- Respond to your comments, questions, and support requests
- Monitor and analyze usage patterns and trends
- Detect, investigate, and prevent fraudulent or unauthorized activities
- Comply with legal obligations and enforce our terms
- Personalize your experience and provide recommendations
3Information Sharing
We do not sell your personal information. We may share your information in the following circumstances:
- With Your Consent: We may share information when you direct us to do so.
- Document Signers: When you send a document for signature, we share relevant information with the recipients.
- Service Providers: We work with third-party service providers who assist in operating our Service (e.g., hosting, payment processing, email delivery).
- Legal Requirements: We may disclose information if required by law, regulation, or legal process.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, your information may be transferred.
Third-Party Disclosure
We do not sell, trade or otherwise transfer your Personally Identifiable Information to outside parties without giving you advance notice. This does not include hosting partners and other providers who help us operate the Service, conduct our business or serve our users, provided they agree to keep the information confidential. We may also disclose information where doing so is appropriate to comply with the law, enforce our policies, or protect the rights, property or safety of PearSign or others.
PearSign works with selected service providers whose services complement and support our own. These include content delivery networks, data and cyber security services, billing and payment processing, domain registrars, fraud detection and prevention, web analytics, email distribution and monitoring, and performance measurement. Such providers may receive or have access to personal information in whole or in part, depending on their role, and may use it only for the purpose of providing their service to us.
Our Service may link to other websites or services. We are not responsible for their privacy practices, and we encourage you to read the privacy statement of every site you visit.
4Data Security
We implement comprehensive security measures to protect your information:
Encryption
256-bit AES encryption for data at rest and TLS 1.3 for data in transit
Security Best Practices
Regular security assessments verify our security controls
Secure Infrastructure
Enterprise-grade cloud infrastructure with redundancy
Access Controls
Role-based access and multi-factor authentication
While we implement these safeguards, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
In practice, that means:
- The Service is scanned regularly for security holes and known vulnerabilities.
- Personal information is held behind secured networks and is accessible only to a limited number of people who hold special access rights and are required to keep it confidential.
- Sensitive information you submit is encrypted in transit using TLS (Transport Layer Security).
- Card payments are processed by our payment gateway provider and are not stored or processed on our servers.
5Data Retention
We retain your information for as long as necessary to provide the Service and fulfill the purposes described in this policy. Specifically:
- Account Data: Retained while your account is active and for a reasonable period after closure.
- Signed Documents: Retained according to your retention settings and applicable legal requirements.
- Audit Logs: Retained for a minimum of 7 years for compliance purposes.
- Usage Data: Generally retained for up to 2 years for analytics purposes.
- Application Data: Typically retained for 7 years after account closure, to meet legal obligations, resolve disputes and enforce our agreements.
6Your Rights and Choices
Depending on your location, you may have the following rights regarding your personal information:
Right to Access
Request a copy of the personal information we hold about you
Right to Rectification
Request correction of inaccurate or incomplete information
Right to Erasure
Request deletion of your personal information, subject to legal obligations
Right to Data Portability
Receive your data in a structured, commonly used format
To exercise these rights, please contact us at info@pearsign.com. We will respond to your request within 30 days.
7Cookies and Tracking
We use cookies and similar tracking technologies to collect and track information and improve the Service. The types of cookies we use include:
- Essential Cookies: Required for the Service to function properly. These cannot be disabled.
- Analytics Cookies: Help us understand how you use the Service so we can improve it.
- Preference Cookies: Remember your settings and preferences for a better experience.
We use cookies to:
- Understand and save your preferences for future visits
- Keep you signed in and keep your session secure
- Compile aggregate data about site traffic and interaction so we can improve the Service. We may use trusted third-party services that collect this information on our behalf.
You can set your browser to warn you each time a cookie is sent, or to turn cookies off entirely. Every browser is a little different, so check your browser’s Help menu for the correct way to change your cookie settings. If you turn cookies off, some features of the Service will not work properly — in particular, staying signed in.
Do Not Track
We honour Do Not Track (DNT) browser signals. When a DNT signal is present we do not enable third-party behavioural advertising or cross-site tracking for that visit.
This is distinct from the service providers described in section 3, who process data on our behalf to deliver the Service itself — hosting, security, payments, fraud prevention, email delivery and analytics. Those providers act on our instructions and may use the information only to provide their service to us; they do not build advertising profiles from it. We do not currently use Google AdSense. If that changes, this policy will be updated first.
8California Privacy Notice
The California Online Privacy Protection Act (CalOPPA) requires commercial websites and online services that collect Personally Identifiable Information from California consumers to post a conspicuous privacy policy stating exactly what is collected and who it is shared with. In accordance with CalOPPA:
- You can visit our website anonymously.
- A link to this policy appears on our home page and, at minimum, on the first significant page after entering the site. The link includes the word “Privacy” so it is easy to find.
- You will be notified of any changes to this policy on this page.
- You can review and change your personal information by logging in to your account.
If you are a California resident, you also have rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information we collect, the right to request deletion, and the right not to be discriminated against for exercising those rights. See section 6 for how to exercise them.
9Children's Privacy
The Service is not intended for use by children under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information.
The Children’s Online Privacy Protection Act (COPPA) puts parents in control of the collection of personal information from children under 13, and is enforced by the Federal Trade Commission. We do not market to children under 13 and do not knowingly collect their personal information.
10Fair Information Practices
The Fair Information Practice Principles form the backbone of privacy law in the United States. To remain in line with them, if a data breach occurs we will notify affected users by email within 7 business days.
We also agree to the Individual Redress Principle: individuals have the right to pursue enforceable rights against data collectors and processors who fail to adhere to the law, and to have recourse to courts or government agencies to investigate or prosecute non-compliance.
11Email Communications
The CAN-SPAM Act sets the rules for commercial email, establishes requirements for commercial messages, gives recipients the right to stop those messages, and sets penalties for violations.
We collect your email address in order to:
- Send documents, signature requests, reminders and completion notices through the Service
- Send technical notices, security alerts and administrative messages about your account
- Respond to your enquiries, support requests and other questions
- Send product updates and marketing, which you can opt out of at any time
To be in accordance with CAN-SPAM, we agree to the following:
- We do not use false or misleading subjects, sender names or email addresses.
- We identify commercial messages as advertising where required.
- We include a way to unsubscribe from marketing email in every such message.
- We honour opt-out and unsubscribe requests promptly.
If at any time you would like to stop receiving marketing email, use the unsubscribe link in any message or contact us at info@pearsign.com, and we will remove you from all marketing correspondence. Transactional messages about documents you are a party to, and messages about your account, are not marketing and may continue.
12Internal Do Not Call (DNC) Policy
PearSign respects the privacy of individuals and is committed to complying with all applicable laws and regulations governing telephone communications. This policy sets out how we manage and honour Do Not Call requests.
Policy Overview
We maintain an internal Do Not Call list in accordance with federal and state law. Anyone who asks not to receive telephone solicitations from us is added to that list.
How to Request DNC Status
You can ask to be placed on our internal Do Not Call list by telling us during a call that you do not wish to be contacted again, or by writing to info@pearsign.com. So that we can record the request accurately, please give us the telephone number or numbers it applies to.
Timeframe for Processing
We process Do Not Call requests as quickly as possible, and no later than 30 days from the date of the request, as required by law.
Duration
Once added, a number stays on our internal Do Not Call list indefinitely, unless you give written or verbal authorisation to resume communications, or you contact us again.
Limited Exceptions
This policy applies to telemarketing communications only. It does not apply to:
- Calls made in response to an enquiry or application you initiated
- Non-marketing communications, such as account updates or servicing information
- Existing business relationships, where contact is permitted by law
Legal Compliance
We make reasonable efforts to comply with all applicable federal and state law, including the Telephone Consumer Protection Act (TCPA) and the Do Not Call Implementation Act, and to train our staff accordingly.
13International Transfers
Your information may be transferred to and processed in countries other than your country of residence. We take steps to ensure that your information receives adequate protection in accordance with this policy and applicable law.
For transfers from the European Economic Area (EEA), we rely on:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions where applicable
- Your explicit consent where appropriate
14Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will:
- Update the "Last updated" date at the top of this policy
- Notify you via email or through the Service
- Where required by law, obtain your consent before making changes
We encourage you to review this policy periodically to stay informed about how we protect your information.
15Contact Us
If you have any questions about this Privacy Policy or our privacy practices, please contact us:
PearSign Global Inc — Privacy Team
Email: info@pearsign.com
Data Protection Officer: info@pearsign.com
PearSign Global Inc
44 Wall Street, Suite 905
New York, NY 10038
For California Residents
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA). Please see our California Privacy Notice for more information.
Your privacy is our priority. We are committed to protecting your personal information.
