Privacy Policy
Last updated: April 15, 2026
1. Introduction
At ezCRM ("we," "our," or "us"), we are committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our client relationship management service ("Service").
Please read this Privacy Policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, do not use the Service.
2. Information We Collect
2.1 Information You Provide
We collect information that you provide directly to us:
- Account Information: Name, email address, password, and other registration details
- Profile Information: Business name, logo, and other profile details you choose to provide
- Client and Contact Data: Information about your clients, contacts, and business relationships that you enter into the Service
- Session and Event Data: Details about photography sessions, events, and related information
- Task and Calendar Data: Tasks, appointments, and calendar entries you create
- Document Data: Documents, files, and other content you upload to the Service
- Payment Information: Billing address and payment details (processed securely through Stripe; we do not store full credit card numbers)
- Communication Data: Information you provide when contacting us for support or other inquiries
2.2 Automatically Collected Information
When you use the Service, we automatically collect certain information:
- Usage Data: Information about how you interact with the Service, including pages visited, features used, and time spent
- Device Information: IP address, browser type, operating system, device identifiers, and other technical information
- Log Data: Server logs, error reports, and diagnostic information
- Cookies and Tracking Technologies: We use cookies and similar technologies to enhance your experience, analyze usage, and assist with authentication
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Process transactions and manage your subscription
- Authenticate your identity and secure your account
- Send you service-related communications, including updates, security alerts, and support messages
- Respond to your inquiries, comments, and requests
- Monitor and analyze usage patterns to improve functionality and user experience
- Detect, prevent, and address technical issues, fraud, or security threats
- Comply with legal obligations and enforce our Terms of Service
- Send you marketing communications (only with your consent, and you can opt out at any time)
We do not sell, rent, or trade your personal information to third parties for their marketing purposes.
4. How We Share Your Information
We may share your information in the following circumstances:
- Service Providers: We share information with trusted third-party service providers who assist us in operating the Service, such as:
- Hosting and cloud infrastructure providers (e.g., Supabase)
- Payment processors (e.g., Stripe) for subscription billing
- Email service providers for transactional and marketing emails
- Analytics providers to help us understand usage patterns
- Legal Requirements: We may disclose information if required by law, court order, or government regulation, or to protect our rights, property, or safety, or that of our users or others
- Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity
- With Your Consent: We may share information with your explicit consent or at your direction
We do not share your client data, contact information, or other business data with third parties except as necessary to provide the Service or as required by law.
5. Data Storage and Security
We implement appropriate technical and organizational measures to protect your information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit using TLS/SSL
- Encryption of sensitive data at rest
- Regular security assessments and updates
- Access controls and authentication mechanisms
- Secure data centers and infrastructure
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.
Your data is stored on secure servers. We retain your information for as long as your account is active or as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce our agreements.
6. Your Rights and Choices
Depending on your location, you may have certain rights regarding your personal information:
- Access: Request access to the personal information we hold about you
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information (subject to legal obligations)
- Data Portability: Request a copy of your data in a structured, machine-readable format
- Objection: Object to processing of your personal information for certain purposes
- Restriction: Request restriction of processing in certain circumstances
- Withdraw Consent: Withdraw consent where processing is based on consent
- Opt-Out: Unsubscribe from marketing communications at any time
To exercise these rights, please contact us at hello@ezcrm.com. We will respond to your request within a reasonable timeframe and in accordance with applicable law.
You can also manage many aspects of your information directly through your account settings, including updating your profile, exporting your data, and deleting your account.
7. GDPR and International Users
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR) and similar laws:
- Right to access, rectify, erase, and restrict processing of your personal data
- Right to data portability
- Right to object to processing based on legitimate interests
- Right to lodge a complaint with a supervisory authority
Legal Basis for Processing: We process your personal data based on:
- Performance of a contract (providing the Service)
- Your consent (for marketing communications)
- Legitimate interests (improving the Service, security, fraud prevention)
- Legal obligations (compliance with applicable laws)
If you are located outside the EEA, please note that we may transfer your information to countries that may not have the same data protection laws as your country. We ensure appropriate safeguards are in place for such transfers.
8. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to collect and use information about you. Cookies are small data files stored on your device that help us:
- Remember your preferences and settings
- Authenticate your identity and maintain your session
- Analyze how you use the Service
- Improve functionality and user experience
You can control cookies through your browser settings. However, disabling cookies may limit your ability to use certain features of the Service.
We use both session cookies (which expire when you close your browser) and persistent cookies (which remain until deleted or expired).
9. Children's Privacy
The Service is not intended for individuals under the age of 18 (or the age of majority in your jurisdiction). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately, and we will take steps to delete such information.
10. Data Retention
We retain your information for as long as necessary to:
- Provide the Service to you
- Comply with legal obligations
- Resolve disputes and enforce our agreements
- Maintain security and prevent fraud
When you delete your account, we will delete or anonymize your personal information within a reasonable timeframe, except where we are required to retain it for legal or legitimate business purposes. Some information may remain in backup systems for a limited period.
11. Third-Party Links and Services
The Service may contain links to third-party websites or integrate with third-party services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing any information to them.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Posting the updated Privacy Policy on this page
- Updating the "Last updated" date at the top of this page
- Sending an email notification to the address associated with your account (for material changes)
- Displaying a prominent notice within the Service
Your continued use of the Service after any changes constitutes your acceptance of the updated Privacy Policy. We encourage you to review this Privacy Policy periodically.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Email: hello@ezcrm.com
For users in the EEA, you also have the right to lodge a complaint with your local data protection authority if you believe we have not addressed your concerns adequately.