SMARTCERT
Privacy Policy
Last Updated: January 24, 2026
Aramid Technologies Inc., doing business as SmartCert (“we,” “us,” or “our”), is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website www.smartcert.tech (the “Site”), use our SaaS platform at www.getsmartcert.com, or use any related products, services, or mobile applications (collectively, the “Services”).
A Note on Our Role (Controller vs. Processor)
- Controller: We act as a data “Controller” for the personal information we collect about you directly (e.g., your account creation details, billing info, and marketing preferences).
- Processor: For data that you upload, store, or share via the SmartCert platform regarding your customers, suppliers, or certifications (“Customer Data”), we act as a data “Processor”. We process this data solely on your behalf and in accordance with your instructions.
1. Information We Collect
We collect information in three ways: (1) information you provide directly, (2) information collected automatically, and (3) information from third parties.
Information You Provide
- Account Registration: Name, email address, phone number, job title, company name, and password.
- Billing Information: Credit card details, ACH information, and billing address (processed by our third-party payment processors; we do not store full credit card numbers).
- Support & Communications: Content of messages sent to our support team (e.g., via the “Request Support” page) or feedback forms.
- Sales and Quotes: Name, phone number, email address, and project details provided when you contact us for a quote or pricing information.
- Job Applications: If you apply for a job via our careers page, we collect your resume, cover letter, employment history, and contact details.
Information Collected Automatically
- Usage Data: Log files, diagnostic, crash, and website performance logs.
- Device Data: IP address, browser type, operating system, device identifiers (e.g., MAC address), and mobile carrier.
- Cookies & Tracking: Information about your activity on our Services, such as pages visited, time spent on pages, and referring/exit pages.
Information from Third Parties
We may receive information about you from third-party partners, such as lead generation services, marketing partners, or public databases, to supplement the information we hold.
2. Legal Bases for Processing (EEA/UK Users)
If you are located in the European Economic Area (EEA) or the United Kingdom (UK), we process your personal data under the following legal bases:
- Contractual Necessity: To provide the Services, manage your account, and process payments.
- Legitimate Interests: To improve our platform, ensure security (fraud detection), and send B2B marketing communications (where permitted).
- Legal Obligation: To comply with tax, accounting, and other legal requirements.
- Consent: For tracking cookies or specific marketing opt-ins, which you may withdraw at any time.
3. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the SmartCert Services, process transactions, and manage your subscription.
- Send administrative information (e.g., security alerts, updates to terms) and respond to customer service requests and technical support needs.
- Detect, prevent, and address technical issues, security breaches, and fraudulent activity.
- Improve our Services and develop new features. This may include using de-identified or aggregated data to train our artificial intelligence (AI) and machine learning models to improve platform accuracy and efficiency.
- Analyze usage trends to improve user experience and functionality.
- Send marketing communications. You can opt-out at any time by clicking the “Unsubscribe” link included in these emails or by contacting us directly at legal@smartcert.tech.
4. Sharing of Information
We do not sell your personal information. We disclose information only as described below:
- Service Providers: We share data with trusted third-party vendors who assist us in operating our Services. These include:
- Cloud hosting and infrastructure providers.
- Payment processors (e.g., Stripe, Chargebee).
- CRM and customer support platforms (e.g., HubSpot).
- Marketing and advertising partners who assist us in reaching new customers.
- HR and recruiting service providers (for data related to job applicants).
- Data analytics providers who help us understand platform usage.
- These providers are contractually obligated to protect your data.
- Business Transfers: If SmartCert is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
- Legal Requirements: We may disclose information if required to do so by law or in the good faith belief that such action is necessary to comply with a legal obligation, protect and defend our rights or property, or protect the safety of users.
- With Your Consent: We may share information with third parties when we have your explicit instructions to do so (e.g., integrations you enable)
5. International Data Transfers
SmartCert is headquartered in the United States. Information we collect from you will be processed in the United States.
For Users in the European Economic Area (EEA), United Kingdom (UK), and Switzerland:
We adhere to applicable legal frameworks to ensure your data remains protected when transferred to the US.
- Standard Contractual Clauses (SCCs): We rely on the European Commission’s Standard Contractual Clauses (SCCs) and the UK’s International Data Transfer Addendum to safeguard the transfer of personal data to the United States. These clauses impose obligations on us to protect your data in accordance with European standards.
6. Your Rights (GDPR & European Users)
If you are located in the EEA, UK, or Switzerland, you have specific rights regarding your personal data. We act as a Data Controller for your account and billing information. For data you upload about your customers (certification data), we act as a Data Processor, and you should direct data subject requests to the relevant controller (usually your employer or the company using our platform).
Your Rights as a Data Subject:
- Right to Access: You may request confirmation of whether we process your personal data and, if so, receive a copy of that data.
- Right to Rectification: You may request correction of inaccurate or incomplete data.
- Right to Erasure (“Right to be Forgotten”): You may request that we delete your personal data, subject to certain legal retention obligations (e.g., tax records).
- Right to Restriction: You may ask us to suspend processing of your data in specific scenarios (e.g., while you contest the accuracy of data).
- Right to Portability: You may request your data in a structured, commonly used, and machine-readable format to transfer to another service.
- Right to Object: You may object to processing based on “legitimate interests” or direct marketing. You may opt-out of direct marketing at any time.
- Right to Withdraw Consent: If we process data based on your consent (e.g., tracking cookies), you may withdraw it at any time.
Exercising Your Rights:
To exercise these rights, contact us at legal@smartcert.tech. We will respond within 30 days.
Complaints:
You have the right to lodge a complaint with a supervisory authority in your country of residence (e.g., the ICO in the UK, the CNIL in France, or the DPC in Ireland).
7. US State Privacy Rights (California, Virginia, etc.)
This section applies to residents of California (CCPA/CPRA) and other states with comprehensive privacy laws.
- Right to Know: You may request the categories of personal information we collected, the sources, the business purpose, and the specific pieces of information.
- Right to Delete: You may request that we delete your personal information.
- Right to Opt-Out of Sale/Sharing: SmartCert does not “sell” personal information for money. However, we may use third-party analytics cookies that constitute “sharing” under California law. You may opt-out of these cookies via our Cookie Preferences tool or by contacting us.
- Non-Discrimination: We will not discriminate against you for exercising your privacy rights.
Categories Collected (Last 12 Months): Identifiers (name, email); Commercial Info (transaction history); Internet Activity (usage logs); Professional Data (job title).
8. Cookies and Tracking Technologies
We use cookies to enable platform functionality, analyze performance, and support marketing.
Cookie Consent Manager
When you visit our Site, you will be presented with a cookie banner.
- For visitors in the EEA/UK: We will only place non-essential cookies (such as analytics and marketing cookies) on your device if you click “Accept” or explicitly opt-in via the banner.
- For visitors in the US: Cookies may be placed automatically, but you may opt-out of non-essential cookies via the banner settings or the “Do Not Sell/Share My Personal Information” link.
Types of Cookies We Use:
- Strictly Necessary: Required for the website to function (e.g., login sessions).
- Performance/Analytics: Help us understand how the site is used.
- Functional: Remember your preferences.
- Marketing: Track usage to deliver relevant ads (you may opt-out).
Managing Cookies:
Most browsers allow you to block cookies. You can also use the Digital Advertising Alliance’s tool at optout.aboutads.info to opt-out of interest-based advertising.
9. Data Retention
We retain personal information only for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements. When we no longer need your data, we will securely delete or anonymize it.
10. Security
We implement industry-standard physical, technical, and administrative security measures to protect your data. This includes encryption of data in transit and at rest, access controls, and regular security assessments. However, no method of transmission over the Internet is 100% secure.
11. Children’s Privacy
Our Services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that a child has provided us with personal information, we will take steps to delete such information.
12. Updates to this Policy
We may update this Privacy Policy from time to time. The updated version will be indicated by the “Last Updated” date. For material changes, we will notify you via email or a prominent notice on our Service.
13. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us at:
Aramid Technologies Inc.
Attn: Privacy Officer 1025 Lombardi Ave, Green Bay WI, 54304 Email: legal@smartcert.tech

