Last updated: January 1, 2025
1. Introduction
BLUEPRAME ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you use our platform, website (blueprame.com), and associated services (collectively, "Services").
By using our Services, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use our Services.
2. Information We Collect
2.1 Information You Provide
- Account registration data: name, email address, company name, password
- Billing information: payment method details (processed securely through our payment partners)
- Profile information: job title, company size, country
- Communications: messages, support requests, feedback you send us
- Social media credentials when you connect third-party accounts to our platform
2.2 Information Collected Automatically
- Usage data: pages visited, features used, session duration, click patterns
- Device information: IP address, browser type, operating system
- Cookies and similar tracking technologies (see Section 7)
- Log files: access times, error reports, referral URLs
3. How We Use Your Information
We use collected information for the following purposes:
- Providing, maintaining, and improving our Services
- Processing transactions and sending billing notifications
- Communicating with you about your account, updates, and support
- Sending marketing communications (only with your explicit consent)
- Analysing usage patterns to improve platform performance
- Detecting, preventing, and addressing fraud or security issues
- Complying with legal obligations
4. Legal Basis for Processing (GDPR)
For users in the European Economic Area (EEA), we process your personal data under the following legal bases:
- Contract performance: Processing necessary to provide the Services you have subscribed to
- Legitimate interests: Improving our Services, security, fraud prevention
- Consent: Marketing communications (which you can withdraw at any time)
- Legal obligation: Compliance with applicable laws and regulations
5. Data Sharing and Disclosure
We do not sell your personal data. We may share information only in the following circumstances:
- Service providers: Trusted third parties who assist in operating our platform (payment processors, hosting, email delivery) under strict data processing agreements
- Business transfers: In connection with a merger, acquisition, or sale of assets, with appropriate confidentiality protections
- Legal requirements: When required by law, court order, or governmental authority
- With your consent: In any other circumstances with your explicit consent
6. Data Security
We implement industry-standard security measures to protect your personal data, including:
- AES-256 encryption for data at rest and in transit (TLS 1.2+)
- Regular third-party security audits and penetration testing
- Role-based access controls and multi-factor authentication for internal systems
- ISO 27001-aligned information security management practices
No method of transmission over the internet is 100% secure. While we strive to use commercially acceptable means to protect your personal data, we cannot guarantee its absolute security.
7. Cookies
We use cookies and similar technologies to enhance your experience on our platform. Types of cookies we use:
- Essential cookies: Required for the platform to function (authentication, security)
- Analytics cookies: Help us understand how users interact with our Services
- Preference cookies: Remember your settings and preferences
- Marketing cookies: Used only with your explicit consent
You can control cookie preferences through your browser settings or our cookie consent banner.
8. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you
- Rectification: Request correction of inaccurate or incomplete data
- Erasure: Request deletion of your personal data ("right to be forgotten")
- Portability: Receive your data in a structured, machine-readable format
- Objection: Object to processing based on legitimate interests
- Restriction: Request restriction of processing in certain circumstances
- Withdraw consent: Withdraw consent for marketing at any time
To exercise any of these rights, contact us at privacy@blueprame.com. We will respond within 30 days.
9. Data Retention
We retain your personal data for as long as your account is active or as needed to provide Services. Upon account termination, we delete or anonymise personal data within 90 days, except where retention is required by law (e.g., financial records retained for 7 years).
10. International Transfers
BLUEPRAME operates globally. Your data may be transferred to and processed in countries outside your country of residence. We ensure adequate protections are in place, including Standard Contractual Clauses approved by the European Commission.
11. Children's Privacy
Our Services are not directed to individuals under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal information, please contact us immediately.
12. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or a prominent notice on our website. Continued use of our Services after changes take effect constitutes acceptance of the updated policy.
13. Contact Us
For privacy-related questions or to exercise your rights: