Privacy Policy
Last updated: July 12, 2026
1. Overview
This policy describes what zSign ("we", "us") collects, why, and how it is handled — whether you hold an account (a "sender") or were asked to sign a document (a "signer"). Questions: support@razscaler.com.
2. What we collect
From senders (account holders):
- account details: name, email address, and authentication credentials;
- the documents you upload and the recipient names and email addresses you provide.
From signers:
- the name and email address you enter or that the sender provided;
- your signature and the field values you fill in (for example, dates and text fields);
- signing-event metadata recorded in the document's audit trail: IP address, browser (user agent), document view and signature timestamps, and your consent to sign electronically.
From everyone:
- basic technical logs (requests, errors) needed to operate and secure the Service.
3. How we use it
- to provide the Service: render documents, collect signatures, assemble completed documents, and deliver copies to the parties;
- to build the audit trail that supports the legal validity of signed documents;
- to send transactional email — signing invitations and completion notifications (we do not send marketing email);
- to secure, debug, and improve the Service.
We do not sell personal information or share it for advertising.
4. Service providers
We use a small number of infrastructure providers to run the Service. They process data only on our behalf:
- Render — application hosting;
- Neon — database and account authentication;
- Google Cloud Storage — encrypted document storage;
- Resend — transactional email delivery.
5. Retention
Completed documents and their audit trails are retained for as long as needed to preserve the validity and evidentiary value of the signed document — this can extend past account closure, because other parties rely on the completed record. Uploaded documents that never complete signing expire and are removed. Account data is deleted or anonymized on verified request, except where retention is required as above.
6. Security
Data is encrypted in transit (TLS). Signing links use signed, per-recipient tokens; stored tokens are hashed. Documents are stored in access-controlled cloud storage. No system is perfectly secure — report suspected vulnerabilities to support@razscaler.com.
7. Your rights
You can request access to, correction of, or deletion of your personal information by emailing support@razscaler.com. Note that signer data embedded in a completed document's audit trail may be retained despite a deletion request, to the extent needed to preserve the integrity of documents other parties rely on or to comply with legal obligations. Depending on where you live (for example, the EU/EEA, UK, or California), you may have additional statutory rights; we honor verified requests consistent with applicable law.
8. Cookies and local storage
The Service uses browser local storage to keep you signed in. We do not use advertising cookies or cross-site trackers.
9. Children
The Service is not directed to children and may not be used by anyone under 18 (or the age of legal majority in their jurisdiction).
10. Changes
We may update this policy from time to time; material changes will be reflected by the "Last updated" date above.