Privacy Policy

Last updated: 14/09/2026

1. WHO WE ARE

GuardiaCRM is a portfolio management app for independent insurance intermediaries and their clients.

Provider: Panayiotis Eleftheriou (sole trader), Nicosia, Cyprus.

Contact: info@guardiacrm.eu

For the client data that each agent enters, the agent is the Data Controller; GuardiaCRM acts as the Data Processor.

2. WHAT DATA WE COLLECT

3. WHY WE PROCESS IT (LEGAL BASIS)

4. WHERE IT IS STORED

Data is hosted on servers within the European Union (Supabase, EU region). Each agent sees ONLY their own data and each client ONLY their own — the isolation is enforced at database level (Row Level Security).

5. WHO HAS ACCESS

We do not sell or rent personal data to third parties.

6. HOW LONG WE KEEP IT

For as long as the account is active. After a subscription is cancelled, the agent's data is kept in read-only mode for up to 2 months and then deleted. If the account is deleted, the data is erased immediately and permanently. Documents belonging to archived policies are deleted automatically after 10 years; the policy record itself (number, amounts, dates) remains. Records of emails sent to clients (recipient, type, date, status) are kept for 12 months and then deleted automatically.

7. SECURITY

Encryption in transit (TLS) and at rest, private file storage with temporary access links, optional biometric app lock, per-user access control.

8. YOUR RIGHTS

See the section "GDPR — Your rights".

9. CONTACT

For any privacy matter: info@guardiacrm.eu. You have the right to lodge a complaint with the data protection supervisory authority of your country of residence, or with the authority where we are established, the Office of the Commissioner for Personal Data Protection of Cyprus (dataprotection.gov.cy).