1. Scope
This Privacy Policy applies to information collected through the EverRise Systems Inc. website, business communications, platform assessments, design partner discussions, implementation activities, support interactions, and related services involving ACE Platform.
This Privacy Policy does not replace any signed data protection agreement, business agreement, security addendum, statement of work, customer contract, or other written agreement between EverRise and a customer. If a signed written agreement contains different data-handling terms, that agreement controls for the applicable engagement.
2. Information We Collect
We collect information that you provide directly, information collected automatically through use of our website, and information processed in connection with business assessments, implementation, support, and approved customer engagements.
3. How We Use Information
EverRise may use information to:
- Respond to inquiries, assessment requests, and business communications.
- Evaluate whether ACE is appropriate for a customer’s workflows and environment.
- Plan, configure, deploy, support, and improve ACE Platform and related services.
- Provide operator-led implementation, admin training, workflow configuration, and support.
- Maintain security, monitor abuse, troubleshoot technical issues, and protect our systems.
- Manage customer relationships, subscriptions, billing, legal obligations, and contract administration.
- Improve website functionality, product materials, documentation, and customer experience.
- Comply with applicable laws, regulations, legal processes, and enforceable governmental requests.
4. BYOC and Customer Data
ACE currently supports Bring Your Own Cloud deployment. Under the BYOC model, ACE is deployed inside the customer’s cloud or approved infrastructure so the customer can retain control over data, identity provider, users, roles, database, secrets, logs, monitoring, backups, retention, network policies, security configuration, and production approval.
In a BYOC deployment, EverRise may access customer environments, configuration information, logs, metadata, workflow information, or related materials only as necessary to provide agreed implementation, support, troubleshooting, security review, or other services authorized by the customer or applicable agreement.
As between EverRise and the customer, the customer retains ownership of customer data. EverRise does not claim ownership of customer data, customer systems, customer identity infrastructure, customer cloud accounts, customer logs, or customer operational records.
5. Sharing and Disclosure
We do not sell personal information. We may disclose information only as described in this Privacy Policy, as authorized by the customer, or as required by an applicable agreement or law.
- Service providers: We may share information with vendors that help us operate our website, communications, infrastructure, support, security, analytics, payment processing, documentation, and business systems.
- Customer-approved providers: In connection with ACE deployments, customer-approved cloud platforms, identity providers, monitoring tools, ticketing systems, repositories, communication tools, AI providers, or other third-party services may process information according to customer configuration and approval.
- Legal and compliance: We may disclose information if required to comply with law, legal process, court order, governmental request, or to protect rights, safety, security, and integrity.
- Business transactions: Information may be disclosed in connection with a merger, acquisition, financing, corporate reorganization, sale of assets, or similar business transaction.
6. Cookies and Analytics
Our website may use cookies, logs, pixels, analytics tools, or similar technologies to understand website usage, improve performance, remember preferences, secure the website, and measure basic engagement.
You may control cookies through your browser settings. Disabling cookies may affect certain website functionality.
7. Data Retention
We retain information for as long as reasonably necessary to provide services, respond to inquiries, maintain business records, comply with legal obligations, resolve disputes, enforce agreements, protect security, and support legitimate business purposes.
Customer data retention in a BYOC deployment may be controlled by the customer’s environment, retention settings, backup configuration, logging policies, and applicable agreement.
8. Security
We use reasonable administrative, technical, and organizational safeguards designed to protect information against unauthorized access, loss, misuse, disclosure, alteration, and destruction. However, no system, network, cloud environment, transmission method, or storage mechanism can be guaranteed to be completely secure.
ACE is designed around security and governance principles, including role-based access, tenant separation, audit logging, evidence tracking, BYOC deployment, and customer-controlled identity. Production use requires customer-specific configuration, validation, security review, risk acceptance, and approval.
9. Sensitive Information
Do not submit classified information, Controlled Unclassified Information, protected health information, credentials, secrets, sensitive procurement data, or confidential third-party information through public website forms, ordinary email, or other unauthorized channels.
ACE is not currently advertised as FedRAMP-authorized, CMMC-certified, SOC 2-certified, or approved for classified information. If a customer’s use case involves regulated or sensitive data, appropriate controls, approvals, validations, contractual terms, and security review must be completed before use.
10. Automation and AI Providers
ACE is expanding toward governed automation capabilities and optional AI Assist functionality. AI Assist, where offered, is intended to be optional, governed, tenant-scoped, logged, permission-controlled, and subject to customer approval.
If AI or third-party automation providers are used in a customer deployment, such use will be subject to customer approval, customer configuration, applicable agreements, and the privacy and security terms of those providers. AI-generated or automation-generated outputs may be incomplete or inaccurate and should be reviewed by authorized humans before use.
11. Privacy Rights and Choices
Depending on your location and applicable law, you may have the right to request access to, correction of, deletion of, or a copy of personal information we maintain about you. You may also have the right to object to or restrict certain processing.
You may opt out of marketing communications by following unsubscribe instructions where available or by contacting us directly. Transactional, security, legal, and service-related communications may still be sent when necessary.
To submit a privacy request, contact us at contact@everrisesystems.com. We may need to verify your identity or authority before responding.
12. U.S. State Privacy Rights
Residents of certain U.S. states, including California, may have additional rights under applicable privacy laws. These rights may include access, deletion, correction, portability, and the right to opt out of certain data sharing or targeted advertising.
EverRise does not sell personal information. If our practices change in a way that requires additional disclosures or opt-out mechanisms, we will update this Privacy Policy accordingly.
13. Children’s Privacy
Our website, platform, and services are intended for business and enterprise use and are not directed to children under 13. We do not knowingly collect personal information from children. If you believe a child has provided personal information to us, contact us so we can take appropriate action.
14. International Users
EverRise Systems Inc. is based in the United States. If you access our website or services from outside the United States, your information may be processed in the United States or other jurisdictions where we or our service providers operate.
Where required by law, international transfers will be handled using appropriate contractual, technical, and organizational measures.
15. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. The updated version will be posted on this page with a revised “Last Updated” date. Continued use of our website, platform, or services after an updated Privacy Policy is posted means you acknowledge the updated policy.
16. Contact Information
Questions about this Privacy Policy or privacy-related requests may be directed to EverRise Systems Inc. using the contact information below.
EverRise Systems Inc.
16192 Coastal Highway
Lewes, Delaware 19958
Sussex County
United States
Email: contact@everrisesystems.com
Do not send classified information, Controlled Unclassified Information, protected health information, credentials, secrets, sensitive procurement data, or confidential third-party information through public website forms or ordinary email.