Privacy / effective 2026-08-30

Data handling, without euphemisms.

What TierSure processes, where it goes, and how deletion and recovery retention work.

01

Data we process

Account details, facility contacts, inventories, SDS files, filing records, billing identifiers and audit events needed to provide the service. Stripe handles payment card details, which TierSure does not store.

02

Storage and processing

Customer files are stored privately in the US-East service stack, hashed and malware-scanned before processing. Customer document content is not sent to product analytics.

03

Workspace separation and demos

Customer workspaces are logically separated by organization. The public demo contains fictional records and may be reset at any time. Never place real facility data in the demo.

04

Service providers

Hosting, off-host backup storage, email delivery, malware screening, product analytics and payment providers process limited data to operate TierSure. TierSure does not sell personal information. Business customers may request the current subprocessor list and applicable data terms.

05

Retention and deletion

Primary workspace data is deleted after an owner completes password and typed-name confirmation and billing cleanup succeeds. Recovery archives follow the documented rotation of 14 daily, 4 weekly and 6 monthly recovery points, so deleted records may remain in access-restricted backups for up to approximately 186 days before automatic expiry. Billing, dispute or legal-hold records may be retained where required.

06

Requests and incidents

Request access, correction or deletion at [email protected]. Report suspected security issues at [email protected]. The applicable order form identifies the contracting party and any additional privacy terms.