This Privacy Policy outlines how Paych FZ-LLC (“Paych,” “our,” “we,” or “us”) handles privacy across our websites paych.app (including all sub-domains, the “Sites”), our mobile applications (“Mobile App”), and our web-based business management tools for contractors (“Web App”). Collectively, these are known as our “Services.” This Policy explains our practices regarding the collection, use, and sharing of information from users of our Services, including those who visit the Sites and those who use our Services without payment. This Policy is an integral part of our Terms of Service.
By using our Services, you acknowledge and consent to the data handling practices and terms outlined in this Policy. If any aspect of this Policy is unacceptable to you, please refrain from using our Services. It’s important to note that this Privacy Policy does not extend to the privacy practices of third parties, including those with whom we share your information as detailed below. Before sharing your information with any third parties, we encourage you to review their privacy policies carefully.
We may update this Privacy Policy periodically and without prior notice. Changes may affect any personal information we currently hold about you, unless stated otherwise in this Policy, as well as any new personal information collected after the Policy is updated. If changes are made, we will notify you by updating the “Last Modified” date at the top of this Policy, which will always be available at www.paych.app/privacy. By continuing to use the Services after changes become effective, you agree to the revised Privacy Policy.
Moreover, we may provide additional disclosures or information about data handling practices specific to certain parts of our Services. These notices might supplement this Policy or give you additional choices regarding how we process your personal information.
To understand Paych’s data protection responsibilities and your rights regarding your personal information under this Policy, it is important to identify your relationship with Paych.
Contractors: This category includes registered users of Paych Services, both those with paid accounts and those using free or trial accounts, who rely on our business management tools. Authorized users of a Contractor’s account are collectively and individually known as “Contractor Users.” When Paych handles consumer data on behalf of the Contractor, it acts as a “data processor.” In relation to Contractor Users, Paych acts as a “data controller.”
End Customers: These are individuals who interact with a Contractor using Paych Services to receive estimates and manage their accounts. If you are an End Customer, Paych collects and processes your personal information according to the Contractor’s instructions. Your agreement with the Contractor should clarify how your information is shared with Paych and other third parties. Any questions regarding this should be directed to the Contractor.
Visitors: This group includes individuals who visit the Sites or submit personal information through the Sites for various reasons, such as filling out contact forms, subscribing to newsletters, registering for demos, or completing surveys. In relation to Visitors, Paych acts as a “data controller.”
For the purposes of this Policy, we may collectively refer to Contractors, End Customers, and Visitors as “you.”
In this policy, “Personal Information” refers to data about an identified or identifiable individual, including financial account details and any device information linked to an individual. Anonymized or aggregated information is no longer considered Personal Information and may be used and shared for any purpose.
We gather Personal Information from:
Parts of our Sites, such as our blog, are public. Information shared on these public areas may appear on search engines or other publicly accessible platforms and may be “crawled,” searched, and used by other Visitors, Contractors, Contractor Users, End Customers, or third parties. Please refrain from posting any information you do not wish to disclose publicly.
When sharing Personal Information with third parties, we adhere to a “minimum necessary” standard, disclosing only the information needed to fulfill the purpose or service for which it is shared.
For detailed information on how we share your Personal Information, please read the “How We Share Information with Third Parties” section of this Policy. We may share anonymized information with third parties for any purpose.
This revised structure provides a clear breakdown of the information collected from Contractors, Contractor Users, and through mobile interactions, ensuring clarity and compliance with data privacy standards.
Service Provision
We use your Personal Information to deliver and maintain our Services. This includes setting up user accounts, processing fees, configuring services, and generating estimates and invoices. We also handle customer data you enter or your End Customers provide, sharing it with service providers as needed to support the Services.
Payment Processing and Verification
When you register for paid services, we verify your identity, conduct credit checks, and ensure compliance with public authority sanctions lists. We share necessary information with service providers to facilitate payment processing and merchant account setup.
Billing and Financial Transactions
For paid accounts, we use your financial information to manage subscriptions and process transactions. Payment data, such as bank account or credit card details, is stored by third-party vendors who comply with PCI DSS and NACHA rules.
Personalized User Experience
Your personal data helps us customize and enhance your experience on our platform. We track preferences, monitor usage to fix bugs, analyze patterns, and optimize performance to ensure a seamless experience.
Compliance and Fraud Prevention
We process your information to comply with legal obligations, such as PCI-DSS, tax laws, and anti-spam regulations. This also includes fraud prevention, risk management, and ensuring adherence to our terms and policies.
Service-Related Communication
We use your contact details to provide updates about your account and our Services. This includes technical support, system notifications, report emails, policy changes, security updates, and other service-related communications.
Security Enhancements
To maintain the security of our Services, we monitor activities, verify identities, and combat security risks such as spam and malware.
Customer Support
When you reach out with requests, questions, feedback, or concerns, we use your Personal Information to respond effectively and provide the necessary support.
Marketing and Promotions
We share your information with our affiliates to streamline operations, develop better products and services, and inform you about relevant offerings. This includes sending marketing communications, conducting surveys, promoting events and webinars, and updating you about products and services. You can opt out of these activities anytime.
Research and Development
Your information is used to develop new features and improve our Services. We analyze how users interact with our platform, using data collected via Automated Data Collection Technologies to enhance performance and usability. We may also create anonymous records from Personal Information for reporting, development, and usage analysis.
Refer to the “How We Share Information with Third Parties” section of this privacy policy for comprehensive details on how we handle your Personal Information. Anonymized data may be shared with third parties for any purpose.
Typically, we share Personal Information from Contractors and Users in the following ways:
With Your Approval
We will share your Personal Information as you have authorized when you give us your approval.
Third-Party Service Providers
We engage trusted service providers to carry out various tasks on our behalf, including fraud detection, business analytics, customer relationship management, billing, payment processing, marketing, hosting, and other standard technology services. These providers are required by contract to use your information solely for the services they perform for us and in line with this Privacy Policy.
Affiliates
We may share your Personal Information with our business affiliates as permitted by law. These affiliates must adhere to this Privacy Policy.
Referral Partners
We might provide your information, including Personal Information, to third-party referral partners who help us deliver certain aspects of our services, assist in our communications with you, or offer related services. We may also receive your information from these referral partners. However, these partners do not have the right to independently disclose your information except as we are permitted to do under this Privacy Policy.
Business Transactions
If we undergo a merger, acquisition, or sale of assets, your Personal Information may be part of the transferred assets. The acquiring entity will have the same rights to your information as we do under this Privacy Policy, and we will ensure its continued protection.
Legal Compliance and Protection
We may share your Personal Information with law enforcement, public authorities, or other third parties for reasons such as legal compliance, cooperation with law enforcement or national security requirements, responding to subpoenas or legal requests, adhering to credit card regulations, participating in lawful government investigations, protecting the rights of Paych, our users, or others, and enforcing our Terms of Service and other policies.
When collecting Personal Information from consumers, it’s done on behalf of the Contractor you’re working with via our Services. Here’s how and when we gather this information:
Transaction and Order Details
When you use our Services for estimates, invoices, payments, recurring payment plans, or any other transactions with a Contractor, we collect the necessary information to process these transactions. This may include your name, address, postal code, email, phone number, credit card or financial account number, IP address, project details, and other relevant information. Note: Paych doesn’t store bank account or credit card information; this data is stored by our third-party vendors who comply with PCI DSS and NACHA rules for ACH payments.
Location Data
With your consent, we may collect precise location data about your computer or device when you access our Services through a web browser on any device.
Information You Share with Us
While your primary relationship is with the Contractor, if you contact Paych directly, we collect the information you provide. This could be during an online chat, an email, a phone call with our sales or service team, a blog comment, or any other direct contact. We record your contact details (name, address, phone number, email, account name and number, User ID, etc.) in our CRM and support ticket system.
Performance and Log Information
Our servers, potentially managed by third-party providers, automatically log data created by your use of our Sites and Services. This can include your IP address, browser type, operating system, command line details, diagnostic data (such as crash reports), the referring web page, pages visited, location, your mobile carrier, device and application IDs, and search terms. More information can be found in the “Automated Data Collection Technologies” section of this Policy.
Cookies and Tracking Technologies
We use cookies, web beacons, pixel tags, and similar technologies to gather information on your interactions with our Sites and Services. This can include identifying your IP address, browser type, and referring page. EU users have the option to opt-out of non-essential cookies.
We collect and use information from End Customers primarily to support our Contractors and enhance our Services. Here are some specific ways we might use your Personal Information:
Delivering Services
We process your Personal Information when you interact with our Services as part of a business relationship with a Paych Contractor. For instance, we facilitate payments via our system, enable online invoice payments, and send emailed invoices and estimates, all on behalf of the Contractor.
Sending Receipts and Notifications
Using the email address you provide during transactions, we send payment receipts, payment schedule confirmations, invoices, estimate acceptances, password resets, and
Improving Our Services
We use insights from your interactions with our Services to optimize performance and user experience. This includes analyzing usage patterns to identify and fix bugs, and to enhance overall functionality.
Customer Communications
To keep you informed about your transactions and account activity, we use your contact information for service-related communications. This might include updates on system changes, security alerts, or other important information related to your use of our Services.
Supporting Business Operations
In some cases, we might share your Personal Information with our affiliates or third-party service providers to streamline business operations, enhance service delivery, and support marketing efforts. These partners are contractually obligated to protect your information in accordance with this Privacy Policy.
Ensuring a Personalized Experience
We customize your experience on our platform based on the preferences and information you provide. This personalization helps us deliver a more user-friendly and efficient service.
By collecting and using your Personal Information in these ways, we aim to provide you with a seamless and secure experience on our platform while supporting the needs and operations of our Contractors.
Research and Development
To offer new, customized, or improved features on our Services, we use your Personal Information for research and development. Your data helps us understand how Contractors and End Customers use and interact with our Services. Information collected via Automated Data Collection Technologies is also used for functional purposes, enhancing the performance and usability of our Sites and Services. We may create anonymous records from Personal Information for certain business purposes of Paych or its affiliates, including reporting, directing future development efforts, and analyzing usage patterns to enhance our Sites and Services.
For detailed information on sharing your Personal Information, please refer to the “How We Share Information with Third Parties” section of our privacy policy. We may share anonymized information with third parties for any reason.
Here’s an overview of how we share End Customer Personal Information:
When you visit our Site or use our Services, or open one of our HTML emails, we may automatically gather certain information from your system using cookies and other click-stream tracking technologies. This “automatically collected” data may include your Internet Protocol address (IP Address), a unique user ID, device type, device identifiers, browser types and language, referring and exit pages, platform type, software version, system type, the content and pages you access on the Site and Services, the number of clicks, the time spent on pages, the dates and times of your visits, and other similar details. Depending on your country’s laws, your IP address may be considered personally identifiable information.
We generally use these automated data collection technologies for essential and functional reasons (e.g., to keep a session active), to enhance the performance and usability of our Sites, and to analyze user interactions with the Services (e.g., understanding how long users stay on a page, how frequently they return, and how they arrived at our Site). On certain sections of our Sites, we may use these technologies to gather data for advertising, remarketing, or similar purposes. Click-stream and related data are typically used for system administration, improving our Services, marketing, advertising, and other similar purposes.
Some parts of our Services may gather information through cookies, web beacons, pixel tags, and other digital tracking technologies. These tools help operate, secure, and provide our Services by collecting and analyzing data about your usage.
Typically, this information is collected when you request pages from our Services. It includes details such as the page served, the time of the request, the source and type of browser, the last page viewed, how you arrived at our Services, the content you viewed, and other similar data. Sometimes, we may use cookies and similar technologies to collect personal information or data that becomes personal when combined with other information.
Paych uses only essential and functional cookies for its application Services. On our public websites, we use additional cookies for analytics and marketing. Users from the EU or UK can opt out of these analytics and marketing cookies.
Paych allows integration with certain third-party systems for payment processing (“Payments Service”). When a Contractor opts to set up a Paych integration with a Payments Service, all data in the Contractor’s account may be shared with the Payments Service, and vice versa. This includes personally identifiable information about the Contractor’s customers and prospects. Paych does not control the policies or procedures of these Payments Services and is not responsible for how they operate.
This Policy does not cover the collection or use of information by Payments Services, including consumer End Customer data. Contractors use these Payments Services at their own risk and should review the Terms and Privacy Policy of any Payments Service accessed through a Paych account to understand how they handle personally identifiable information.
Third-party vendors selected for Payments Service integration with Paych must comply with PCI DSS and adhere to NACHA rules for ACH payment processing. However, Paych Contractors are responsible for ensuring their chosen Payments Service complies with relevant privacy and data protection requirements. A list of all Payment Service providers and their privacy policies is available at Paych may share the Personal Information collected from Contractors with Payments Services providers to allow them to market their products or services to you, provided you have not opted out of these disclosures.
Except as detailed in this Privacy Policy or in accordance with any request or consent you provide, Paych does not sell, share, or otherwise transmit Personal Information (such as names, addresses, phone numbers, financial account information, etc.) submitted by End Customers to any persons or companies other than the Contractor for whom the data was collected. However, we reserve the right to use and disclose anonymous information to third parties at our discretion. Third parties may use information we share with them for any purpose for which we may use such information, except as limited below.
Personal Information collected from Visitors, Contractors, Contractor Users, and End Customers may be shared with service providers who offer services on our behalf. These services include, but are not limited to, identity verification, fraud prevention, business intelligence, customer relationship management, bill collection, payment processing, marketing, hosting, and other common technology services. Our contracts require these service providers to use your information only in connection with the services they perform for us and in accordance with this Privacy Policy. By using our Sites and Services and accepting the terms of this Privacy Policy, you consent to our sharing your information with these parties.
We may share information, including Personal Information of Contractors and Contractor Users, with third-party service providers and referral partners that work on our behalf to provide aspects of our services, communicate with you, or offer ancillary services to Contractors. We may also receive information about you from these third-party service providers and referral partners. However, these providers and partners do not have any independent right to disclose this information, except as we would be able to under this Privacy Policy.
If you make a payment or otherwise interact with a Contractor using our Services, we may share any and all information collected during that transaction with the Contractor, including credit card and other financial account information, unless prohibited by law, regulation, or other obligations.
You agree that we may share some or all of your Personal Information with our Affiliates. We will require our Affiliates to comply with this Privacy Policy. If our company or assets are acquired by another company, any information we possess, including Personal Information, may be part of the transferred assets, and the acquiring company will inherit the rights granted to us under this Privacy Policy.
In exceptional circumstances, we may share any personal or other information we possess, including credit card and financial account information, when necessary or appropriate to comply with the law; cooperate with law enforcement or national security requirements; respond to subpoenas or lawful requests; comply with legal or credit card rules; participate in lawful government investigations; protect the rights of Paych, other Paych Contractors, Contractor Users, and End Customers, and third parties; or investigate violations or enforce our Terms of Service. In such cases, we may dispute demands for release if we believe they are unwarranted, illegitimate, or overbroad, and will notify you of any requests for release when appropriate.
When sharing Personal Information with third parties, we adhere to a “minimum necessary” standard, disclosing only the information required to perform the service for which the information is shared.
We will keep Personal Information for Contractors and Contractor Users as long as you actively use our Services and for a reasonable period afterward. This is to fulfill the purpose(s) for which your Personal Information was processed or as needed to comply with legal obligations, resolve disputes, or enforce our agreements, as permitted by law. Although retention requirements may vary by country, we generally adhere to the retention periods specified below.
Paych has put in place measures to protect your Personal Information from accidental loss, unauthorized access, use, alteration, and disclosure. All data you provide is stored on our third-party vendor’s servers, which follow industry-standard security protocols.
The Paych Sites utilize secure SSL for all form data submissions, employing a 256-bit Sectigo RSA certificate that supports 128-bit encryption for most browsers.
Paych does not handle direct storage, processing, or transmission of bank account and credit card information. All payment processing and collection of payment account data occur through integration with third-party Payment Services providers. These providers are contractually obligated to adhere to PCI DSS and all NACHA rules for ACH transaction processing. This ensures secure transmission and encrypted storage of all payment account information.
However, while we take extensive measures to safeguard your Personal Information, please note that transmitting information over the internet carries inherent risks. We cannot guarantee the complete security of your Personal Information transmitted through our Sites or Services. Your transmission of Personal Information is done at your own risk, and we do not accept responsibility for any circumvention of privacy settings or security measures on our Sites or Services.
The security of your information also relies on your actions. If we’ve provided you with a password or you’ve chosen one for accessing specific parts of our Sites or Services, it’s crucial to keep this password confidential. Please refrain from sharing your password with anyone and ensure your device remains locked to prevent unauthorized access to your device or account. Paych does not oversee your wireless connection or the devices you use to access our Services, so it’s essential to trust the devices and connections you employ for accessing our Services.
If you suspect unauthorized access or use of your account, please contact us promptly at privacy@paych.app.
You have the option to unsubscribe from receiving marketing communications by following the instructions provided in such communications. Non-service-related or transactional messages from us will include an “unsubscribe” option for opting out of receiving these communications.
If you wish to stop all information collection from your mobile device, you can uninstall the Mobile App using the standard uninstall processes available through your mobile device or via the mobile application marketplace or network.
Where required by law, you have the right to opt out of sharing your personal information with any third parties we may share it with; however, this may limit your ability to use the Services or certain features.
For individuals in the European Economic Area, United Kingdom, and/or Switzerland, please refer to the “Privacy Rights in Designated Countries” section below.
Paych respects your right to access your Personal Information. Please note that we require verification of your identity before releasing any Personal Information.
Here’s how you can access, correct, and/or delete your Personal Information:
Please note that using the system delete function by Contractors restricts data visibility but does not permanently delete data from Paych systems. To permanently delete data, a written request is required, and identity verification is necessary.
For individuals in the European Economic Area, United Kingdom, and/or Switzerland, please refer to the “Privacy Rights in Designated Countries” section below.
If you have any queries about your Personal Information or wish to lodge a complaint about how Paych processes your data, please contact us at privacy@paych.app or using the contact details provided below.
If you are a resident of California, you have the right to request and obtain from us a list of any personal information we disclosed to third parties for direct marketing purposes during the previous calendar year, including the categories of information disclosed and the names and addresses of these third parties. California law allows you to receive the following details upon request: (a) the categories of personal information we shared with third parties for their direct marketing purposes in the preceding calendar year; and (b) the names and addresses of those third parties, or examples of the types of products or services they market if their business nature is unclear from the name.
You may request a standardized format copy of this information, which will not be specific to you individually. Please email your request to privacy@paych.app.
We do not knowingly collect information from individuals under the age of 18 or the age of majority in their country of residence. If you are under the age of 18 or the age of majority, please do not use our Services. If a Contractor, Contractor User, or End Customer provides personal information indicating they are under 18 years of age or the age of majority, we will require them to close their account and cease using our Services. We will also promptly delete this information, unless an exception applies. If you are aware of any individuals under the age of 18 or the age of majority using our Services, please notify us so we can take appropriate action.
This section applies solely to users of our Services located in the European Economic Area, United Kingdom, and/or Switzerland (collectively, the “Designated Countries”) at the time personal data is collected.
We may request you to specify your country of residence when using certain Services, or we may determine your location based on your IP address. If we rely on your IP address, these terms do not apply if you intentionally mask or conceal your location to avoid being identified as being in the Designated Countries. In case of any conflict between the terms in this section and other parts of this Policy, the terms of this section shall prevail for users in the Designated Countries.
Paych acts as a data controller concerning personal information directly collected from Visitors, Contractors, or Contractor Users of its Sites and Services. A “data controller” determines the purposes and means of processing personal information. Third parties handling your personal information under our instructions are considered our service providers and act as “data processors.”
Paych serves as a service provider to Contractors and operates as a “data processor” regarding consumer Personal Information imported into our systems by Contractors or Contractor Users via our Services. This includes information entered directly by consumers, imported by authorized Contractor Users, or integrated by authorized third-party Contractors. As a “data processor,” Paych does not control how End Customer or potential End Customer personal information is processed; such processing is governed by data processing agreements between Paych and our Contractors.
Below is an outline of the legal bases we rely on as a data controller for processing personal information of Visitors, Contractors, and Contractor Users:
We will only communicate with individuals in the Designated Countries via electronic means (such as email or SMS) based on our legitimate interests, as permitted by applicable law, or with the individual’s consent. When relying on legitimate interests, we will only send you information about our Services that are similar to those previously of interest to you, or as otherwise allowed by law.
If you prefer that we do not use your personal information in this manner, or disclose it to third parties for marketing purposes, please adjust your email settings in your account to opt out, use the unsubscribe link in our emails, or contact us at privacy@paych.app. You have the right to object to direct marketing at any time and at no cost.
When using our Services, you have the following rights. We may limit your requests (a) where access is required or permitted by law, (b) when granting access would affect others’ privacy, (c) to protect our rights and properties, or (d) if the request is frivolous or burdensome.
To exercise your rights under applicable law, please contact us at privacy@paych.app. For your security, we may verify your identity before processing your request.
Right to Withdraw Consent: If we process your personal information based on your consent, you have the right to withdraw that consent at any time. Withdrawal of consent will not affect the lawfulness of processing based on consent before its withdrawal.
Right of Access: Upon your request, we will provide you with a copy of your personal information held in our files promptly and at no cost, unless permitted by law to charge a fee. Access may be restricted if it would adversely affect the rights and freedoms of others.
Right to Rectification (or “Correction”): You may request to correct or update any of your personal information in our files. Depending on the Services, you may also have the ability to update some or all of your personal information directly.
Right to Erasure (or the “Right to be Forgotten”): Upon your request, we will erase any of your personal information in our files that is no longer necessary for the purposes for which it was collected, that you previously consented to but have since withdrawn consent, or that you have objected to and there are no overriding legitimate grounds for our continued processing.
Right to Restriction: You have the right to restrict our processing of your personal information in certain circumstances:
During the period of restricted processing, we will only process your restricted personal information with your consent, or for the establishment, exercise, or defense of legal claims, or for the protection of the rights of another natural or legal person, or for reasons of important public interest. We will notify you when the restriction is lifted.
Objection to Processing of Personal Information: You have the right to object to our processing of your personal information at any time, as permitted by applicable law, if we process your personal information based on consent, contract, or legitimate interests. We may continue processing your personal information if necessary for legal defense or other exceptions permitted by law.
Data Portability Rights: If we process your personal information based on a contract with you, based on your consent, or through automated means, you may request to receive your personal information in a structured, commonly used, and machine-readable format, and have us transfer it directly to another controller, where technically feasible. This right applies only to personal information provided by you to us and does not adversely affect the rights and freedoms of others.
Notification to Third Parties: When we fulfill your requests for correction, erasure, or restriction of processing, we will notify third parties also handling the relevant personal information, unless this proves impossible or involves disproportionate effort. Upon your request, we will identify such third parties.
Right to Lodge a Complaint: We are committed to resolving complaints about our collection or use of your personal information. If you have inquiries or complaints regarding our Policy, please contact us at privacy@paych.app. You also have the right to lodge a complaint with a competent supervisory authority in a Member State of your habitual residence, place of work, or place of alleged infringement. A list of Supervisory Authorities is available here: http://ec.europa.eu/justice/data-protection/bodies/authorities/index_en.html
If you access our Services from outside the countries where our servers may be located e.g. United Arab Emirates, your information may be transferred to us or our service providers in the United States and other locations outside of your country or jurisdiction. These countries or jurisdictions may have data protection laws that are not as protective as those in your jurisdiction. Some information may also be stored locally on devices you use to interact with our Services. By using our Services, you consent to such transfers. If you do not wish for your information to be transferred, processed, or stored outside your country or jurisdiction, please refrain from using our Services.
Please be aware that Paych processes information on behalf of its Contractors. Contractors may be responsible for obtaining your consent, providing additional notices, and imposing additional limitations or permissions on our processing of your information to comply with applicable law.
Paych FZ-LLC
Dubai Internet City
United Arab Emirates
privacy@paych.app