VCurl

Privacy policy

Effective on the date you accept our terms of service.

This policy explains what personal data VCurl (the "service") collects, why, how we use it, who we share it with, and the rights you have over it. It applies whenever you interact with the service.

The data controller for personal data collected through the service is ANYMO SOLUTIONS LIMITED (company number 17137827), registered at 1b George Street, Hull, United Kingdom, HU12 8JH. For privacy questions or to exercise your rights, contact us at team@anymosolutions.uk.

1. Data we collect

Account data you provide: name, email address, optional phone number, password (stored hashed), profile photo if you upload one, timezone, notification preferences, and your acceptance timestamps for our terms and marketing communications.

Authentication data: hashed multi-factor authentication secrets and recovery codes, OAuth provider links (e.g. Google, GitHub) if you connect them, and personal access tokens you issue.

Usage data: activity within the service (records you create, settings you change), sign-in events, device and IP metadata for session activity, and timestamps for actions needed for audit.

Tenant data: any team workspaces you create or join, the membership relationships between users and teams, and team-level resources (domains, webhooks, API tokens) you configure.

Communications: emails and in-app notifications we send you and any replies or support correspondence you send us.

Technical data: cookies (session, CSRF, preferences), application logs for security and debugging, and error reports.

2. How we use it

We don't use your data to train external advertising or sell it to data brokers. Marketing emails go out only if you've opted in (you can toggle this any time from your profile).

3. Legal bases (UK/EU users)

Where UK GDPR or EU GDPR applies, we rely on these legal bases:

4. Sharing

We don't sell your personal data. We share it only with:

5. Cookies and similar technologies

We use a small number of cookies to keep you signed in (session cookie), prevent cross-site request forgery (CSRF token), and remember your preferences. We don't use third-party advertising or cross-site tracking cookies. Your browser lets you reject or delete cookies; doing so may disable parts of the service.

6. Data retention

We keep your data while your account is active and as needed to provide the service. When you delete your account, we hold it in a recovery window (currently 90 days) so you can restore it if you change your mind, then permanently delete it. Backups containing your data are overwritten on a rolling cycle, normally within 35 days of deletion. We may retain limited data longer where required by law (e.g. invoices for tax purposes) or for legitimate dispute resolution.

7. Your rights

Depending on where you live, you have the right to:

For account deletion and data export, no written request is needed. Both are self-service in your profile and take effect immediately. For other rights, write to team@anymosolutions.uk; we respond within one calendar month under UK/EU GDPR (with a possible extension for complex requests, and we'll tell you if so).

8. International transfers

We may transfer and process personal data in countries other than the one you live in, including countries that aren't recognised as having "adequate" data protection. Where we do, we use appropriate safeguards (such as Standard Contractual Clauses) so your data is afforded an equivalent level of protection.

9. Children

The service isn't directed to people under 16, and we don't knowingly collect data from them. If you believe a minor has provided us with personal data, contact us and we'll delete it.

10. Security

We protect your data with industry-standard administrative, technical, and physical safeguards (encrypted transport, encrypted-at-rest secrets, hashed passwords, multi-factor authentication, access controls, audit logs, and routine review). No system is perfectly secure; if we become aware of a security incident affecting your personal data, we'll notify you and any regulator as required by law. For the operational detail behind these safeguards (encryption specifics, backup cadence, access provisioning, vulnerability management), see our trust & security FAQ.

11. Changes to this policy

We may update this policy from time to time. When we make material changes, we'll notify you in-app and by email. The "last updated" date at the top tells you when the policy was last revised.

12. Contact

Questions about this policy or your data? Email us at team@anymosolutions.uk, or write to ANYMO SOLUTIONS LIMITED, 1b George Street, Hull, United Kingdom, HU12 8JH.

If you're in the UK and we don't resolve your complaint to your satisfaction, you can lodge it with the Information Commissioner's Office (ico.org.uk). If you're in the EU, contact your local supervisory authority.

See our terms of service for the rules of using the platform.