Privacy Policy

Last Updated: March 25, 2026

Introduction

TenderIQ ("we," "us," "our," or "Platform") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered tender intelligence platform, including our website, mobile applications, and related services (collectively, the "Service").

Please read this Privacy Policy carefully. If you do not agree with our policies and practices, please do not use our Service. By accessing or using TenderIQ, you acknowledge that you have read, understood, and agree to be bound by all the provisions of this Privacy Policy.

1. Information We Collect

We collect information in several ways to provide and improve our Service. Here's what we gather:

1.1 Account Information

When you create an account, we collect your email address, full name, password (securely hashed), organization name, phone number (optional), and any additional profile information you provide.

1.2 Uploaded Documents & Files

When you use TenderIQ, you may upload documents including tender documents, drawings, specifications, BOQs, schedules, and other project files. You retain full ownership of all uploaded documents. We store these files to provide the Service, process them with AI, and maintain them for your access.

1.3 Usage Data

We automatically collect information about how you interact with the Platform, including login activity, features used, time spent, actions taken, device information, IP address, and referral source.

1.4 Payment Information

Payment information is collected by Paddle, our payment processor. We do NOT store your full credit card number, CVV, or expiration date. Paddle handles all payment processing securely.

2. How We Use Your Information

We use the information we collect for specific, legitimate purposes:

2.1 Providing the Service

Processing requests, account management, access & authentication, and technical support.

2.2 Communication

Service updates, account alerts, support responses, and marketing (with consent only).

2.3 Improvement & Analytics

Usage analysis, performance optimization, product development, and research.

2.4 Legal & Security

Compliance, fraud prevention, security monitoring, and dispute resolution.

2.5 What We Do NOT Do

  • We do not sell your data
  • We do not use data for advertising
  • We do not combine data for profiling
  • We do not use data for unrelated purposes

3. Data Processing & AI Usage

3.1 How AI Processes Your Documents

When you upload documents to TenderIQ, our AI systems analyze content, identify items, generate outputs, and learn patterns to improve accuracy over time using anonymized data.

3.2 Data Used for AI Training

Your documents are NOT used to train our AI models without explicit permission. We may use aggregated, anonymized patterns to improve accuracy, and you can opt out of this.

3.3 AI Output Ownership

You own the outputs. Any BOQs, estimates, or analyses generated by AI belong to you. You can export, share, or use outputs however you wish. We keep copies for your account history and backup.

4. Data Sharing

4.1 Third-Party Service Providers

We share your information with trusted third parties only as necessary to provide the Service:

  • Paddle: Payment processing (email, billing address, transaction data)
  • Cloud hosting: Server infrastructure (encrypted documents, account data)
  • Analytics tools: Usage analysis (anonymized usage patterns)
  • Email service: Sending communications (email address, name)
  • Support platform: Customer support (support tickets, communication history)

4.2 Legal Requirements

We may disclose your information if required by law, including court orders, government requests, law enforcement inquiries, or to protect our legal rights. We will notify you when possible.

4.3 What We Do NOT Share

  • We do not share with competitors
  • We do not share with advertisers
  • We do not share with data brokers

5. Data Storage & Security

5.1 Where Your Data Is Stored

Data is stored on secure cloud servers with redundant backups for disaster recovery. All data is encrypted both in transit (HTTPS/TLS) and at rest.

5.2 Security Measures

  • Encryption using AES-256 or equivalent
  • Access controls for authorized employees only
  • Multi-factor authentication available
  • Regular security audits and penetration testing
  • 24/7 monitoring for suspicious activity
  • Rapid incident response procedures

5.3 Security Limitations

While we implement strong security measures, no system is 100% secure. We cannot guarantee absolute protection against sophisticated cyberattacks, zero-day vulnerabilities, insider threats, or force majeure events. You are responsible for keeping your password secure and reporting suspicious activity.

6. Data Retention

6.1 How Long We Keep Your Data

  • Account information: While account is active
  • Uploaded documents: While account is active
  • Usage logs: 12 months
  • Payment records: 7 years (legal/tax compliance)
  • Support tickets: 2 years
  • Backups: 90 days after deletion

6.2 After Account Deletion

When you delete your account, your account and personal information are deleted immediately. Your uploaded files are securely deleted within 30 days. Backup copies are deleted within 90 days. Anonymized usage data may be retained for analytics.

7. Your Privacy Rights

7.1 Access Your Data

You have the right to request a copy of your data, download your information, and review accuracy. Email [email protected] with "Data Access Request" in the subject line. We will respond within 30 days.

7.2 Correct Your Data

You can update your profile, edit account settings, and request corrections to inaccurate information.

7.3 Delete Your Data

You have the right to delete your account, remove specific files, and request data deletion. Deletion is permanent and cannot be undone.

7.4 Opt Out of Communications

You can unsubscribe from emails, disable notifications, and opt out of analytics.

7.5 Data Portability

You have the right to export your data, transfer to another service, and request assistance. Email [email protected] with "Data Portability Request" in the subject line.

8. Cookies & Tracking Technologies

8.1 Types of Cookies We Use

  • Session cookies: Keep you logged in (until you log out)
  • Preference cookies: Remember your settings (1 year)
  • Analytics cookies: Track usage patterns (2 years)
  • Security cookies: Prevent fraud (session)

8.2 Managing Cookies

You can control cookies through browser settings, cookie consent preferences, or "Do Not Track" signals. Note: Disabling cookies may limit Platform functionality.

9. International Data Transfers

9.1 Data Location

Your data is primarily stored in [Your Region/Country]. If you are located elsewhere, your data may be transferred internationally. We comply with applicable data protection laws.

9.2 GDPR Compliance (EU Users)

If you are in the European Union, we process your data based on contract performance and legitimate interests. You have rights under GDPR, including access, correction, and deletion. You can file a complaint with your local data protection authority.

9.3 CCPA Compliance (California Users)

If you are in California, you have rights under CCPA to know, delete, and opt out. We do not discriminate against you for exercising your rights.

10. Contact Information

10.1 Privacy Questions

If you have questions about this Privacy Policy or our privacy practices, please contact us:

Email: [email protected]

Website: https://tenderiq.one

Response time: We aim to respond within 5 business days

10.2 Data Protection Officer

For GDPR or data protection inquiries, email [email protected] with "Data Protection Request" in the subject line.

Acknowledgment

By using TenderIQ, you acknowledge that you have read and understood this Privacy Policy, consent to our collection and use of your information as described, understand the limitations of our security measures, accept responsibility for keeping your password secure, and will not hold us liable for unauthorized access due to your negligence.

End of Privacy Policy