Skip to main content
Platform Review
PricingSign in
Keye assessment

Keye procurement policy evidence

Only topics backed by verified findings appear below. Each row preserves the platform's exact policy words and capture provenance.

Verified procurement policy findings for Keye
TopicPlan or tierRiskTheir wordsSource
DPA, audit rights & data residencyAll applicable tiersunknown Depending on location, individuals in the EEA, the UK, and across the globe may have certain statutory rights in relation to their Personal Information. For example, you may have the right to:Captured 2026-07-20Open source →Finding permalink →
DPA, audit rights & data residencyAll applicable tiersunknown •   Rectify or update your Personal Information.Captured 2026-07-20Open source →Finding permalink →
DPA, audit rights & data residencyAll applicable tiersunknown For the purposes of the UK and EU General Data Protection Regulation 2018, our data controller is Keye, INC at PO Box 77 Fulton Street, New York City, NY-10038.Captured 2026-07-20Open source →Finding permalink →
DPA, audit rights & data residencyAll applicable tiersunknown •   Access your Personal Information and information relating to how it is processed.Captured 2026-07-20Open source →Finding permalink →
DPA, audit rights & data residencyAll applicable tiersunknown •   Delete your Personal Information from our records.Captured 2026-07-20Open source →Finding permalink →
DPA, audit rights & data residencyAll applicable tiersunknown Where required, we will use appropriate safeguards for transferring Personal Information outside of the EEA, Switzerland, and the UK. We will only transfer Personal Information pursuant to a legally valid transfer mechanism. For more information on the appropriate safeguards in place and to obtain a copy of these safeguards, please contact us at contact@keye.co. ‍Captured 2026-07-20Open source →Finding permalink →
Data retentionAll applicable tiersunknown We implement commercially reasonable technical, administrative, and organizational measures to protect Personal Information both online and offline from loss, misuse, and unauthorized access, disclosure, alteration, or destruction. However, no Internet or email transmission is ever fully secure or error free. In particular, email sent to or from us may not be secure. Therefore, you should take special care in deciding what information you send to us via the Service or email. In addition, we are not responsible for circumvention of any privacy settings or security measures contained on the Service, or third-party websites. We’ll retain your Personal Information for only as long as we need in order to provide our Service to you, or for other legitimate business purposes such as resolving disputes, safety and security reasons, or complying with our legal obligations. How long we retain Personal Information will depend on a number of factors, such as the amount, nature, and sensitivity of the information, the potential risk of harm from unauthorized use or disclosure, our purpose for processing the information, and any legal requirements.Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown If we are involved in strategic transactions, reorganization, bankruptcy, receivership, or transition of service to another provider (collectively, a “Transaction”), your Personal Information and other information may be disclosed in the diligence process with counterparties and others assisting with the Transaction and transferred to a successor or affiliate as part of that Transaction along with other assets. ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown • Other Legitimate Business Interests: In certain cases, we may share personal informationCaptured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown • Publicly Available Information: We may share personal information that is publiclyCaptured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersmedium To assist us in meeting business operations needs and to perform certain services and functions, we may provide Personal Information to vendors and service providers, including providers of hosting services, cloud services, and other information technology services providers, email communication software, and web analytics services, among others. Pursuant to our instructions, these parties will access, process, or store Personal Information only in the course of performing their duties to us. ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersmedium • With Your Consent: We may share your personal information with third parties if youCaptured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown • Legal Authorities: We may be required to share personal information with legalCaptured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown The following table provides additional information about the categories of Personal Information we collect and how we disclose that information. You can read more about the Personal Information we collect in “Personal information we collect” above, how we use Personal Information in “How we use personal information” above, and how we retain Personal Information in “Security and Retention” below. ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown For the purposes of the UK and EU General Data Protection Regulation 2018, our data controller is Keye, INC at PO Box 77 Fulton Street, New York City, NY-10038.Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown     business, the sharing of personal information with the acquiring entity or parties involved in     the transaction may be based on legitimate interests, as it's necessary for the legitimate     interests pursued by us or the acquiring entity. We will ensure that your data remains     protected and used in accordance with this Privacy Policy.Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknownvendors and service providers, law enforcement, and parties involved in Transactions.Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown Where required, we will use appropriate safeguards for transferring Personal Information outside of the EEA, Switzerland, and the UK. We will only transfer Personal Information pursuant to a legally valid transfer mechanism. For more information on the appropriate safeguards in place and to obtain a copy of these safeguards, please contact us at contact@keye.co. ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersmedium We may disclose Personal Information to our affiliates, meaning an entity that controls, is controlled by, or is under common control with Keye. Our affiliates may use the Personal Information we share in a manner consistent with this Privacy Policy. ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersmedium • Business Partners and Affiliates: In some cases, we may share personal information withCaptured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown     available, such as information from public records or online sources. However, we will do     so only when it is relevant to the purposes for which your data was collected and used.     Sharing publicly available personal information is typically based on legitimate interests, as     it is in the legitimate interests of our business to use publicly available data for relevant     purposes.Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown Identifiers, such as your name,contact details, IP address, and otherdevice identifiersCaptured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown      with other parties for legitimate business interests. The sharing of this personal information      may be based on legitimate interests. We will always ensure that such sharing is conducted      in accordance with applicable data protection laws and respect your rights. ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersmedium We may share your Personal Information, including information about your interaction with our Services, with government authorities, industry peers, or other third parties (i) if required to do so by law or in the good faith belief that such action is necessary to comply with a legal obligation, (ii) to protect and defend our rights or property, (iii) if we determine, in our sole discretion, that there is a violation of our terms, policies, or the law; (iv) to detect or prevent fraud or other illegal activity; (v) to protect the safety, security, and integrity of our products, employees, or users, or the public, or (vi) to protect against legal liability. ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersmedium     our business partners and affiliates, but only when it is necessary for the performance of a     contract, the provision of services, or as part of a legitimate business interest. For example,     we may share data with a partner organization involved in co-branded events or services.     Sharing data with business partners and affiliates may be necessary for the performance of a     contract or based on legitimate interests, especially when these partnerships are essential for     delivering integrated or co-branded services.Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown Your account login credentials and payment card information (SensitivePersonal Information)Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersmedium In certain circumstances we may provide your Personal Information to third parties without further notice to you, unless required by the law: ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown By using our Service, you understand and acknowledge that your Personal Information will be processed and stored in our facilities and servers in the United States and may be disclosed to our service providers and affiliates in other jurisdictions. ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersmedium     have provided your explicit consent for such sharing. We will always request your consent     before sharing your data for specific purposes. If you have provided explicit consent for     sharing your personal information with specific third parties, the lawful basis for sharing is     your consent.Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknown     authorities, regulatory bodies, or law enforcement agencies when necessary to comply with     legal obligations or respond to valid requests for information, as permitted by the law. The     lawful basis for sharing with legal authorities is the necessity to comply with a legal     obligation.Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersmedium     We may share your personal information with third-party service providers who assist us in     delivering our products and services. These service providers may include [[service     providers (e.g., cloud hosting providers, payment processors, customer support tools,     customer relationship management systems, analytics providers, and security services)]].     We will only share the minimum necessary data required for them to perform their specific     tasks. All service providers are contractually obligated to: Process personal data only for the purpose of providing the agreed-upon services and not for their own benefit. Implement appropriate technical and organizational security measures to protect personal data. Comply with applicable data protection laws (e.g., GDPR, CCPA) and relevant security standards.     If we transfer personal data outside of legally recognized jurisdictions (e.g., the EU/EEA),     we ensure that appropriate safeguards, such as Standard Contractual Clauses (SCCs) or     Data Processing Agreements (DPAs), are in place.     The lawful basis for sharing data with service providers is typically the performance of a     contract or, in some cases, legitimate interests, provided that these interests do not     override your data protection rights. ‍Captured 2026-07-20Open source →Finding permalink →
Subprocessors & data sharingAll applicable tiersunknowncontact details, IP address, and other device identifiersCaptured 2026-07-20Open source →Finding permalink →

Informational only, not legal advice. Terms can change; verify every cited source and capture date during procurement review.

📢 POLICY UPDATES ALERT

AIRIN Brief

Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.