Data retention policy
The time periods for which Dooly retains customer data depends on the purpose for which it is used. Dooly retains customer data for as long as an account is active, as needed to provide services to the customer, or in accordance with the agreement(s) between Dooly and the customer, unless Dooly is required by law to dispose of it earlier or keep it longer. Dooly may retain and use customer data to comply with its legal obligations, resolve disputes, and enforce agreements.
Data archiving and removal policy
Except as otherwise set forth in the Dooly policies, Dooly also disposes of customer data when requested by customers. Dooly maintains a sanitization process that is designed to prevent sensitive data from being exposed to unauthorized individuals. Dooly hosting and service providers are responsible for ensuring the removal of data from disks allocated to Dooly use before they are repurposed and the destruction of decommissioned hardware.
Data storage policy
Dooly stores and disposes of sensitive data, in a manner that; reasonably safeguards the confidentiality of the data; protects against the unauthorized use or disclosure of the data; and renders the data secure or appropriately destroyed. Data entered into Dooly applications must be validated where possible to ensure information quality and mitigate the impacts of web-based attacks on the systems.
App/service has sub-processors
yes
Guidelines for sub-processors