GreenChainz
GreenChainz Inc. ("Company," "we," "us," or "our") is committed to protecting your privacy and ensuring you have a positive experience on our platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services (collectively, the "Service").
Please read this Privacy Policy carefully. If you do not agree with our policies and practices, please do not use our Service. Your continued use of the Service following the posting of changes to this Privacy Policy means you accept those changes.
Account Registration: When you create an account, we collect your name, email address, phone number, company name, job title, and business address.
Profile Information: For Buyers, we may collect project details, location, material preferences, and procurement history. For Suppliers, we collect product catalogs, certifications, Environmental Product Declarations (EPDs), pricing, and supplier credentials.
RFQ and Messaging Data: When you submit a Request for Quotation (RFQ) or send messages through the Service, we collect the content of those communications, including material specifications, pricing inquiries, and negotiation details.
Payment Information: When you subscribe to a paid plan, we collect billing address and transaction history. Payment method details are processed securely through Microsoft's commercial marketplace. We do not store full credit card numbers on our servers.
Support Communications: When you contact our support team, we collect your inquiry, attachments, and correspondence history.
Device Information: We collect information about your device including device type, operating system, browser type, IP address, and unique device identifiers.
Usage Data: We track your interactions with the Service including pages visited, features used, search queries, materials viewed, RFQs submitted, and time spent on the platform. This data is collected via cookies and similar tracking technologies.
Log Data: Our servers automatically record information such as access times, pages accessed, referral URLs, and error messages.
Authentication Providers: If you use single sign-on (SSO) through Microsoft Entra ID, we receive your name, email address, and unique identifier from that provider.
Third-Party Data Sources: We integrate data from the Autodesk Sustainability Data API, Building Transparency EC3 database, and EPD International to populate material specifications and environmental product data.
Service Delivery: To create and maintain your account, process RFQs, facilitate messaging between Buyers and Suppliers, and deliver the core functionality of the Service.
Personalization: To customize your experience, show relevant material recommendations, and provide AI-powered swap suggestions based on your project requirements.
Communication: To send transactional emails (RFQ confirmations, bid notifications, subscription updates), marketing communications (with your consent), and support responses.
Analytics and Improvement: To analyze usage patterns, identify trends, and improve Service features.
Compliance and Legal: To comply with applicable laws, enforce our Terms of Service, prevent fraud, and protect the rights and safety of our users.
AI and Machine Learning: To train and improve our AI-powered features including supplier verification, material recommendations, and the SWAP Engine.
When you submit an RFQ as a Buyer, your company name, contact information, and material requirements are shared with Suppliers who respond. Supplier profiles including company name, certifications, and material offerings are visible to all Buyers on the platform.
We share your information with third-party service providers who assist us in operating the Service. All providers are contractually obligated to use your data only for the purpose of providing services to us.
We may disclose your information if required by law, court order, or government request, or to protect the safety, rights, and property of Company, our users, or the public.
If Company is involved in a merger, acquisition, or asset sale, your information may be transferred. We will provide notice before your information becomes subject to a different privacy policy.
| Data Type | Retention Period | Reason |
|---|---|---|
| Account Information | Less than 30 days after account termination | Deleted upon account closure request |
| RFQ and Messaging Data | 7 years | Legal compliance, audit trail |
| Payment Information | 7 years | Tax and accounting requirements |
| Usage Analytics | 13 months | Service improvement |
| Support Tickets | 3 years | Customer service, dispute resolution |
We implement comprehensive security measures including TLS encryption in transit, AES-256 encryption at rest, multi-factor authentication for employee access to production systems, and role-based access controls. We use Azure Key Vault for credential management and Sentry for real-time error and anomaly detection.
While we implement industry-standard security measures, no system is completely secure. You are responsible for maintaining the confidentiality of your account credentials.
You have the right to request access to, correction of, or deletion of your personal information. To exercise these rights, contact us at privacy@greenchainz.com. We will respond within 30 days.
You may opt out of marketing communications by clicking the "unsubscribe" link in any email or by contacting privacy@greenchainz.com. Transactional emails necessary to provide the Service cannot be opted out of.
California residents have the right to know, delete, opt-out of sale, correct, and limit use of their personal information, and to not be discriminated against for exercising these rights. Submit CCPA requests to privacy@greenchainz.com with "CCPA Request" in the subject line. We will respond within 45 days.
If you are located in the European Union or United Kingdom, you have the right of access, rectification, erasure, restriction of processing, data portability, and the right to object to processing. Contact our Data Protection Officer at dpo@greenchainz.com. You also have the right to lodge a complaint with your local data protection authority.
All personal data is processed and stored on Microsoft Azure servers in the East US region (United States). For users in the European Union, we rely on Standard Contractual Clauses (SCCs) approved by the European Commission for lawful data transfers. A Data Processing Agreement (DPA) is available upon request.
We use essential cookies for authentication and security, and performance cookies to analyze how you use the Service. You can control cookies through your browser settings; disabling certain cookies may limit your ability to use some features of the Service.
The Service is intended for business use and is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe we have done so, please contact us immediately.
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy and updating the "Last Updated" date. Continued use of the Service following notification constitutes acceptance of the updated policy.
GreenChainz Inc.
1842 Ferry Rd, Danville, Virginia 24540, United States
Privacy inquiries: privacy@greenchainz.com
Data Protection Officer: dpo@greenchainz.com
Website: greenchainz.com