Regulance (“we,” “us,” or “our”) is committed to protecting the privacy and security of personal data. This Privacy Policy explains how we collect, use, disclose, and protect personal data in accordance with the EU General Data Protection Regulation (GDPR) and other applicable data-protection laws.
This Policy applies to all personal data processed by Regulance in connection with our website, platform, products, and related business activities — including communications with clients, prospects, partners, suppliers, and users.
Regulance, operated by Continuum Solutions Limited, Nairobi, Kenya, acts as:
When acting as a processor, we process personal data only under the customer’s documented instructions and in accordance with our Data Processing Agreement (DPA).
Contact:
Privacy Officer - Regulance
Nairobi, Kenya
[email protected]
EU Representative:
To be appointed – EU Representative details will be published here once designated
We collect only the data necessary to deliver and improve our services.
Categories of data include:
We collect data through:
Purpose - Legal Basis
Where processing is based on consent, you may withdraw consent at any time without affecting the lawfulness of prior processing.
We use AI systems (e.g., OpenAI) to assist in analyzing compliance documents, policies, and screenshots to automate compliance checks.
We do not use profiling or automated decision-making that produces legal or similarly significant effects on individuals.
We may share data with the following categories of recipients:
All subprocessors are bound by strict data-processing and confidentiality agreements.
We engage the following subprocessors and infrastructure providers to deliver our services:
Subprocessor
Purpose
Location / Transfer Mechanism
DigitalOcean
Cloud hosting (Amsterdam region)
EEA
Cloudflare, Inc.
Content delivery, DDoS protection
US – SCCs / DPF
OpenAI, L.L.C.
AI document analysis and automation
US – SCCs / DPF
Pipedream, Inc.
Secure workflow integrations
US – SCCs / DPF
Google Workspace
Email and document management
EU/US – SCCs
Slack Technologies
Internal communications
US – SCCs / DPF
Stripe, Inc.
Payment processing
US – SCCs / DPF
GitHub, Inc.
Code and infrastructure management
US – SCCs / DPF
A full and current list of subprocessors is available at https://regulance.io/subprocessors.
Customers will be notified before any material changes to subprocessors.
Where personal data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards such as:
We retain personal data only as long as necessary for the purposes described in this Policy, or as required by law.
Data Category - Retention Period
After expiry of these periods, data is securely deleted or anonymized.
We implement organizational and technical measures to protect personal data, including:
We use cookies and similar technologies for authentication, analytics, and performance optimization.
Non-essential cookies (e.g., analytics or marketing) are only set with your consent. You can manage cookie preferences through your browser or via our Cookie Management Tool available on the website.
For more information, see our Cookie Policy.
Under GDPR and other applicable laws, you have the right to:
To exercise your rights, contact:
[email protected]
We will respond within one month, as required under GDPR.
If you are located in the EU, you may also contact our EU Representative (details to be added once appointed).
Our services are intended for business use and are not directed to children under 16.
Where our customers process personal data of minors (e.g., EdTech use cases), Regulance acts solely as a data processor and processes such data only under their documented instructions.
Our platform may contain links to third-party websites. We are not responsible for their privacy practices and encourage you to review their respective privacy policies.
We may update this Policy periodically. The “Last updated” date reflects the latest revision. Continued use of our services after changes take effect constitutes acceptance of the updated Policy.
If you have questions, concerns, or complaints about this Policy or our data-handling practices, please contact:
Regulance
Continuum Solutions Limited
Nairobi, Kenya
[email protected]
At Regulance, we recognize the challenges B2B SaaS startups face when navigating compliance regulations. Our AI-powered platform automates the process, ensuring you are audit-ready without the hassle. By simplifying data security measures, we empower you to focus on closing more deals while enjoying peace of mind regarding compliance. Let us help you turn compliance anxiety into confidence as you witness the positive impact on your business.