Version: 2026-06-19 · Effective date: June 19, 2026
1. Scope
This Privacy Policy explains how Dirigex collects, uses, and protects personal data in connection with the Dirigex platform. For personal data Dirigex processes on a customer's behalf as a processor, the Data Processing Addendum governs.
2. Data we collect
- Account & profile: name, work email, company, role, country, and the sign-up profile fields you provide.
- Authentication: identifiers from our identity provider (e.g. subject id, MFA status) and, for SSO, attributes asserted by your IdP.
- Agreement acceptance: the agreement version, timestamp, accepting user, and source IP recorded when you accept our terms.
- Usage & operational: API requests, routing decisions, audit/route-trace records, and logs generated as you use the Service.
3. How we use data
To provide, secure, and improve the Service; to authenticate and authorize access; to maintain audit and compliance records; to communicate with you; and to comply with legal obligations.
4. Sharing
We share data with sub-processors that help operate the Service (e.g. cloud infrastructure) and as required by law. We do not sell personal data.
5. International transfers
Data may be processed in the United States and other locations under appropriate transfer mechanisms.
6. Retention
We retain personal data for as long as needed to provide the Service and meet legal/audit obligations. Audit and route-trace records may be retained per your configured retention horizon.
7. Your rights
Subject to applicable law, you may request access, correction, deletion, or export of your personal data. Tenant owners can export tenant data via the in-product data export.
8. Security
We use technical and organizational measures including encryption in transit, access controls, MFA support, and tamper-evident audit.