Privacy Policy

Last updated: August 2026

Overview

Governly provides automated vendor risk assessments for IT and SaaS procurement. This Privacy Policy describes how we collect, use and protect information when you use the service.

Information we process

We process account information (name, email) and the vendor documentation you choose to upload for assessment. Documents are processed solely to produce the assessment report you request.

Data storage and residency

Data is stored and processed within approved environments designed to support European regulatory requirements.

AI model training

Customer documents and uploaded information are never used to train AI models.

Security measures

We apply technical and organisational measures to protect personal data, including encryption in transit and at rest, access controls, audit logging and least-privilege processing. Customer documents are processed only to deliver the requested assessment.

Retention and deletion

Documents are retained for the duration required to complete the assessment and any agreed retention period, after which they are deleted.

Your rights

You may request access, correction or deletion of your personal data by contacting info@governly.se.

Contact

For privacy questions, please see our contact page or email info@governly.se.