Privacy Policy
This Privacy Policy explains how Qore LLC("Qore," "we," "us") collects, uses, shares, and protects personal data when you visit our websites, request a demo or quote, or use the Qore Safety platform (together, the "Service"). It also explains the choices and rights you have.
1. Two Roles: Controller and Processor
We handle personal data in two distinct capacities, and different sections of this Policy apply to each:
- Qore as controller. For our websites, marketing, sales, and account administration — for example when you fill in a demo or quote form — we decide how and why the data is processed.
- Qore as processor.For data your organization's users submit into the platform (form submissions, photos, signatures, location stamps, and similar "Customer Data"), our customer is the controller and we process that data on their instructions under our agreement with them. If you are a worker whose data appears in a customer's records, please direct requests to that organization first; we will support them in responding.
2. Data We Collect
Website and sales (Qore as controller)
- Contact and company details you submit through our demo, contact, quote, or newsletter forms — such as name, work email, company name, phone number (with country code), industry, region, estimated seats, rollout timeline, and any notes you include.
- Preferences stored in your browser, such as your light/dark theme choice (see the Cookie Policy).
- Technical data generated when you visit the site, such as IP address, browser type, and pages requested, as recorded in standard hosting logs.
Platform (Qore as processor)
- Account data for platform users: name, email, role, department, authentication identifiers (including Microsoft Entra ID identifiers where SSO is used), and device/session records.
- Customer Data captured in the field: form answers, photos and video, on-screen signatures, and — where the customer enables it — location and time stamps and attribution details (who captured what, on which device, and when).
3. How We Use Personal Data
- To respond to demo, quote, and contact requests, and to communicate with you about the Service;
- To provide, secure, maintain, and improve the Service, including tenant isolation, session and device control, and abuse prevention;
- To send service communications (such as invitations, password resets, and magic sign-in links) via our email delivery provider;
- To send marketing communications you have requested, which you can opt out of at any time;
- To comply with legal obligations and enforce our agreements.
Where EU/UK data protection law applies, our legal bases are: performance of a contract (providing the Service), legitimate interests (securing and improving the Service, business-to-business marketing), consent (where required, e.g. certain communications), and legal obligation.
4. AI Features and Your Data
The platform's AI features (conversational analytics, AI-assisted setup, automated form translation) operate on the relevant customer's own data to produce outputs for that customer. The AI analytics feature generates validated, typed queries against the customer's data rather than giving a model free-form access to raw records. We do not use one customer's data to provide another customer's results.
5. How We Share Personal Data
We do not sell personal data. We share it only with:
- Service providers that host and support the Service — including Microsoft Azure (cloud hosting: compute, database, and file storage) and our transactional email provider — under contracts that restrict their use of the data;
- Professional advisors (lawyers, accountants, insurers) where reasonably necessary;
- Authorities where required by law, after reviewing the request and, where lawful, notifying the affected customer;
- A successor entity in connection with a merger, acquisition, or sale of assets, subject to this Policy.
6. International Transfers
We are based in the United States and process data there and in the regions where our cloud provider operates. Where personal data subject to EU/UK law is transferred internationally, we rely on appropriate safeguards such as standard contractual clauses.
7. Security
We apply safeguards appropriate to the risk, including multi-tenant data isolation, encryption of data at rest on managed mobile devices (with keys held in the platform secure enclave), hashed credentials and tokens, per-session device binding with instant revocation, and write-once, attributed records. More detail is on our Security Overview. No system is perfectly secure; we encourage you to use SSO and to report concerns to legal@qoresafety.com.
8. Retention
- Sales and marketing data is kept while we have an active relationship or a legitimate interest in contacting you, and then deleted or anonymized.
- Customer Data is retained for as long as the customer's subscription directs. After termination, customers can export their data for thirty (30) days, after which we may delete it, subject to legal obligations and backup cycles.
- Logs and backups are retained on rolling schedules and then overwritten or deleted.
9. Your Rights
Depending on where you live, you may have rights to access, correct, delete, restrict, or object to the processing of your personal data, to data portability, and to withdraw consent. You can exercise these by emailing legal@qoresafety.com. You may also lodge a complaint with your local supervisory authority.
For data inside a customer's records, the platform includes a PII erasure workflowthat anonymizes an individual on request while preserving the integrity of the surrounding business records — designed to support the GDPR "right to be forgotten." Because the customer controls that data, such requests are actioned by or with the customer.
10. Children
The Service is intended for business use and not directed to children under 16. We do not knowingly collect personal data from children.
11. Changes to This Policy
We may update this Policy from time to time. We will post the updated version with a new effective date and, for material changes, provide additional notice through the Service or by email.
12. Contact
Qore LLC, Kansas City, Missouri, USA · legal@qoresafety.com
