Privacy Policy

Legal Document Hub | Privacy Policy & Data Protection

Privacy Policy

Your privacy and data security are our top priority. This policy explains how we collect, use, protect, and manage your personal information when you use our services.

Last Updated: March 15, 2024
GDPR Compliant

Table of Contents

1. Information We Collect

We collect information necessary to provide our document services effectively while maintaining legal compliance. The types of information we collect include:

Personal Information You Provide

  • Identification Data: Name, date of birth, gender, photograph for identification purposes
  • Contact Information: Email address, phone number, residential address, shipping address
  • Documentation: Scanned copies of identification documents, existing licenses, proof of address
  • Payment Information: Billing address, payment method details (processed through secure third-party gateways)
  • Service-Specific Data: Driving history, license details, specific requirements for document processing

Automatically Collected Information

  • Technical Data: IP address, browser type, device information, operating system
  • Usage Data: Pages visited, time spent on site, navigation patterns, referral sources
  • Cookies & Tracking: Session cookies, authentication tokens, analytics data (see Section 7)

Information from Third Parties

We may receive information about you from third-party services, including:

  • Payment processors (transaction status, billing information)
  • Shipping and delivery services
  • Verification services (where legally permitted)

2. How We Use Your Information

Your information is used exclusively for legitimate business purposes related to providing our services. We never sell your personal data to third parties.

Primary Uses

  • Service Delivery: Processing your document requests, preparing legal documents, managing orders
  • Communication: Sending order confirmations, status updates, delivery notifications, and customer support responses
  • Verification: Confirming your identity and eligibility for requested services
  • Payment Processing: Completing transactions, fraud prevention, billing management
  • Document Preparation: Creating and customizing requested legal documents and licenses

Legitimate Business Interests

  • Service Improvement: Analyzing usage patterns to enhance our platform and services
  • Security: Protecting our systems, preventing fraud, and ensuring service integrity
  • Legal Compliance: Meeting regulatory requirements and legal obligations
  • Marketing (with consent): Sending relevant service updates and promotional offers

Legal Basis for Processing (GDPR)

For EU/EEA residents, we process your data based on:

  • Contract Performance: Processing necessary to fulfill our service agreement with you
  • Legal Obligation: Processing required to comply with legal requirements
  • Legitimate Interests: Processing for our legitimate business interests, balanced with your rights
  • Consent: Where you have given explicit consent for specific processing activities

3. Information Sharing & Disclosure

We maintain strict confidentiality of your information and only share data under specific circumstances:

Service Providers

  • Document Preparation: Specialized contractors who assist with document creation (under strict NDAs)
  • Shipping Partners: Delivery services requiring address information for document shipment
  • Payment Processors: Secure payment gateways that handle transaction processing
  • IT Services: Hosting providers, security services, and technical support

All service providers are contractually obligated to protect your data and may only use it for specific service delivery purposes.

Legal Requirements

We may disclose your information when required by law or in response to:

  • Valid legal requests (court orders, subpoenas, warrants)
  • Government investigations or regulatory requirements
  • Legal proceedings where disclosure is necessary
  • Protection of rights, property, or safety of our company, users, or others

Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction. You will be notified of any such change and your rights regarding your data.

4. Data Security & Protection

We implement comprehensive security measures to protect your personal information from unauthorized access, alteration, disclosure, or destruction.

Technical Security Measures

  • Encryption: All sensitive data is encrypted in transit (TLS 1.2+) and at rest (AES-256)
  • Access Controls: Strict role-based access controls and authentication protocols
  • Network Security: Firewalls, intrusion detection systems, and regular security audits
  • Secure Development: Regular security testing and code reviews

Organizational Security Measures

  • Employee Training: Comprehensive privacy and security training for all staff
  • Data Minimization: Collecting only necessary data and limiting access
  • Incident Response: Established procedures for security incident management
  • Third-Party Audits: Regular security assessments of all service providers

Your Role in Security

While we implement robust security measures, you also play a crucial role in protecting your information:

  • Keep your account credentials confidential
  • Use strong, unique passwords
  • Enable two-factor authentication where available
  • Be cautious of phishing attempts and suspicious communications
  • Notify us immediately of any unauthorized access

5. Data Retention Periods

We retain your personal information only for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required or permitted by law.

Retention Schedule

  • Active Accounts: Data retained while your account remains active and for 3 years after last activity
  • Completed Orders: Order information retained for 7 years for legal and tax compliance
  • Financial Records: Payment and transaction data retained for 7 years as required by law
  • Communications: Customer support communications retained for 5 years
  • Marketing Data: Contact information retained until consent is withdrawn

Data Deletion

Upon expiration of retention periods, or upon your request (where applicable), we securely delete or anonymize your personal data using industry-standard methods that prevent recovery.

Some data may be retained in backup systems for disaster recovery purposes, but is not accessible for regular processing and is deleted according to backup retention policies.

6. Your Rights & Choices

Depending on your location and applicable laws, you may have certain rights regarding your personal information.

GDPR Rights (EU/EEA Residents)

  • Right to Access: Obtain confirmation of whether we process your data and access to that data
  • Right to Rectification: Request correction of inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data under certain circumstances
  • Right to Restriction: Request limitation of processing in specific situations
  • Right to Data Portability: Receive your data in a structured, commonly used format
  • Right to Object: Object to processing based on legitimate interests or for direct marketing
  • Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent

California Consumer Rights (CCPA/CPRA)

  • Right to Know: Know what personal information is collected, used, shared, or sold
  • Right to Delete: Request deletion of personal information collected from you
  • Right to Opt-Out: Opt-out of the sale or sharing of personal information
  • Right to Non-Discrimination: Not receive discriminatory treatment for exercising your rights
  • Right to Correct: Request correction of inaccurate personal information
  • Right to Limit: Limit use and disclosure of sensitive personal information

Exercising Your Rights

To exercise any of these rights, please contact us using the information in Section 12. We will respond to your request within 30 days, as required by applicable laws. We may need to verify your identity before processing certain requests.

Questions About Your Privacy?

If you have questions about this privacy policy, wish to exercise your privacy rights, or need to report a privacy concern, our dedicated privacy team is here to help.

Contact Privacy Team

For urgent privacy matters, please include “Privacy Request” in your subject line.

7. Cookies & Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience, analyze site usage, and support our marketing efforts.

Types of Cookies We Use

  • Essential Cookies: Required for basic site functionality and security
  • Performance Cookies: Collect anonymous data about site usage to improve performance
  • Functionality Cookies: Remember your preferences and settings
  • Marketing Cookies: Track advertising effectiveness and deliver relevant content

Cookie Management

You can control cookie settings through your browser preferences. Most browsers allow you to:

  • View and delete existing cookies
  • Block cookies from specific sites
  • Block all cookies or set cookie preferences
  • Get notified when cookies are set

Note that disabling cookies may affect the functionality of our website and services.

8. Third-Party Services

Our services may include links to or integration with third-party websites, applications, and services. This privacy policy does not apply to those third-party services.

Integrated Services

  • Payment Processing: Stripe, PayPal, and other payment gateways
  • Communication Tools: Email service providers and customer support platforms
  • Analytics Services: Google Analytics for website traffic analysis
  • Shipping Providers: DHL, FedEx, UPS, and local postal services

Important Notes

When you interact with third-party services through our platform:

  • Their own privacy policies and terms govern their collection and use of your information
  • We encourage you to review their privacy policies before providing information
  • We are not responsible for the privacy practices of third-party services
  • We only share information with third parties as described in this policy

9. International Data Transfers

As a global service provider, we may transfer, store, and process your personal information in countries other than your country of residence.

Transfer Locations

Your information may be transferred to and processed in:

  • The United States (where our primary servers are located)
  • European Union countries (for EU customer data processing)
  • Other countries where our service providers operate

Transfer Safeguards

We implement appropriate safeguards for international data transfers, including:

  • Standard Contractual Clauses: EU-approved data transfer mechanisms
  • Adequacy Decisions: Transfer to countries with adequate data protection laws
  • Binding Corporate Rules: Internal policies for intra-group transfers
  • Additional Safeguards: Technical and organizational measures to protect transferred data

Your Rights Regarding International Transfers

If you are located in the EU/EEA, UK, Switzerland, or other jurisdictions with data transfer restrictions, you have the right to be informed about international data transfers and the safeguards in place. Contact us for more information about specific transfer mechanisms applicable to your data.

10. Children’s Privacy

Our services are not directed to individuals under the age of 18 (or the age of majority in your jurisdiction). We do not knowingly collect personal information from children.

Age Restrictions

  • You must be at least 18 years old to use our services
  • For driver’s license services, you must meet the minimum driving age in the relevant jurisdiction
  • We verify age as part of our identity verification process

If We Discover Child Data

If we become aware that we have collected personal information from a child without parental consent, we will:

  • Immediately delete the information from our servers
  • Terminate any associated accounts
  • Notify parents or guardians if contact information is available
  • Take steps to prevent future collection

Parents or guardians who believe their child may have provided us with personal information should contact us immediately using the information in Section 12.

11. Policy Changes & Updates

We may update this privacy policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors.

Update Notification

  • We will post the updated policy on this page with a new “Last Updated” date
  • For significant changes, we may provide additional notice through email or website announcements
  • We encourage you to periodically review this policy for any changes

Your Continued Use

By continuing to use our services after changes to this policy become effective, you acknowledge and agree to the updated policy. If you do not agree with the changes, you should discontinue use of our services.

Policy Update History

Recent
  • March 15, 2024 Updated data retention periods and international transfer mechanisms
  • December 1, 2023 Added California consumer rights (CCPA/CPRA) and expanded GDPR rights section
  • August 22, 2023 Clarified data sharing practices with service providers
  • May 10, 2023 Initial comprehensive privacy policy implementation