Greetap

Privacy Policy

Last updated on 7/24/2026 ยท Version 1.0

Current product scope

This version covers Greetap individual accounts, digital profiles, links, QR sharing, NFC enabled Greetap devices and activation, profile customization, contact exchange and lead collection where available, analytics, subscriptions, wallet and related sharing features, support services, and the direct sale of Greetap branded physical devices. Greetap Teams, the future in platform Greetap Store feature, and Greetap Events are not launched and are intentionally excluded. Greetap may publish updated or supplemental terms before those services become available.

Contents

This contents page is provided to help readers navigate the document. Each section is written to stand on its own while also forming part of the complete agreement or notice.

  1. 1.Introduction and Purpose of This Privacy Policy
  2. 2.Who Greetap Is and When Greetap Acts as a Controller or Service Provider
  3. 3.Current Product Scope and Services Not Yet Launched
  4. 4.Personal Information We Collect Directly From You
  5. 5.Public Profile Information and Information You Choose to Share
  6. 6.Information From Profile Visitors and Contact Exchange Features
  7. 7.Information Collected Through NFC, QR, and Device Activation
  8. 8.Information Collected Automatically When You Use Greetap
  9. 9.Information From Connected Accounts and Third Party Integrations
  10. 10.Payment and Subscription Information
  11. 11.Orders, Shipping, and Physical Product Support
  12. 12.Business Card Scanning and Automated Extraction Where Available
  13. 13.Cookies and Similar Technologies
  14. 14.How We Use Personal Information
  15. 15.Legal Bases for Processing in the European Economic Area and United Kingdom
  16. 16.How We Share Personal Information
  17. 17.Information Shared at Your Direction
  18. 18.Public Information, Search Engines, and Independent Collection by Others
  19. 19.Sale, Sharing, Targeted Advertising, and Universal Opt Out Signals
  20. 20.Marketing Communications
  21. 21.Sensitive Personal Information
  22. 22.Children and Teen Privacy
  23. 23.Data Minimization and Purpose Limitation
  24. 24.Data Retention
  25. 25.Security
  26. 26.International Data Transfers
  27. 27.Your Privacy Rights
  28. 28.How to Exercise Privacy Rights and Verification
  29. 29.Connecticut Privacy Rights
  30. 30.Delaware Privacy Rights
  31. 31.California Privacy Notice
  32. 32.European Economic Area and United Kingdom Rights
  33. 33.Do Not Track and Browser Privacy Signals
  34. 34.Deidentified and Aggregated Information
  35. 35.Business Transfers and Corporate Changes
  36. 36.Legal Requests and Protection of Rights
  37. 37.Third Party Websites and Services
  38. 38.Changes to This Privacy Policy
  39. 39.Privacy Contact and Complaints
  40. 40.Future Teams, Store, and Events Privacy Updates

1.Introduction and Purpose of This Privacy Policy

This Privacy Policy explains how Greetap collects, uses, discloses, stores, and protects personal information when people use the Greetap website, account dashboard, digital profiles, QR sharing tools, NFC enabled Greetap products, device activation services, subscriptions, analytics, contact exchange tools, support services, and other individual user features that Greetap currently provides. It also explains the choices and legal rights that may be available to users and profile visitors depending on where they live.

Greetap is organized under Delaware law and registered to conduct business in Connecticut. The Services may be accessed by people in many countries, so this Policy is designed to describe Greetap's practices in a way that supports major privacy frameworks while recognizing that particular rights and obligations depend on applicable law. Where a local law provides a stronger right than this Policy, Greetap will honor the stronger right to the extent that the law applies.

This Policy should be read together with the Greetap Terms of Service. It is intended to be understandable to ordinary users while still providing the detail expected of a modern technology service. It does not apply to the privacy practices of third party websites, social networks, payment services, scheduling tools, or other external services that users choose to link from a Greetap profile.

2.Who Greetap Is and When Greetap Acts as a Controller or Service Provider

For most account, website, subscription, security, analytics, support, product purchase, and profile operation activities, Greetap decides why and how personal information is processed. In that role, Greetap acts as a controller, business, or similar responsible entity under applicable privacy law. This Policy primarily describes those activities.

Some Greetap features may allow a profile visitor to provide information directly to a Greetap user, such as through a contact exchange or lead form. In that situation, the Greetap user may decide why the visitor information will be used for follow up, sales, recruiting, networking, marketing, or another purpose. Greetap may process the information to provide the feature on the user's behalf. Depending on the law and the specific feature, Greetap may therefore act as a processor or service provider for certain user directed processing while remaining a controller for separate activities such as security, billing, abuse prevention, and platform analytics.

If you submit your information to a Greetap user and want to understand how that user will use it after collection, you should review any notice provided by that user or contact the user directly. Greetap's Privacy Policy does not replace a user's independent privacy obligations for information the user controls.

3.Current Product Scope and Services Not Yet Launched

This Policy covers the individual Greetap service and the direct sale and activation of Greetap branded physical devices. It includes current or generally available individual features such as profile creation, link sharing, QR codes, NFC activation, profile customization, analytics, contact exchange or lead collection where available, wallet related sharing, subscriptions, customer support, and product ordering.

As of the effective date, Greetap Teams, the future in platform Greetap Store feature, and Greetap Events have not launched and are intentionally outside the operational scope described here. Greetap will review and update its privacy disclosures before or when those products become available because they may involve organization administration, employee data, marketplace transactions, payouts, event registration, attendee data, or other processing not covered by the current individual service.

4.Personal Information We Collect Directly From You

When you create or manage a Greetap account, you may provide your name, email address, username, password or authentication information, profile photograph, biography, job title, company name, business information, phone number, social media handles, websites, payment handles, scheduling links, portfolio links, location information you choose to publish, and other profile fields. The information you provide depends on the features you choose to use, and many public profile fields are optional.

When you purchase a paid plan or Greetap physical product, you may provide billing name, billing address, shipping name and address, order information, tax related information, and other information needed to complete the transaction. Payment card details are generally collected and processed by a payment provider rather than stored by Greetap in full. Greetap may receive transaction identifiers, payment status, card brand, limited card details such as the last digits, billing country, fraud signals, and records needed for accounting, support, refunds, and subscription management.

When you contact support, report a problem, participate in a survey, enter a promotion, communicate with Greetap, or request a privacy right, we collect the information you choose to provide and information reasonably necessary to respond. This may include contact information, screenshots, device information, account identifiers, correspondence, order details, and verification information.

5.Public Profile Information and Information You Choose to Share

Greetap is designed to help users share information. Content you place on a public Greetap profile is public information by your direction. A profile may be viewed by anyone who receives the link, scans a QR code, taps an activated device, receives the profile through another sharing method, or discovers the page through a referral or search service. You should therefore treat a public profile as information you are intentionally making available to other people.

Public profile content can include personal information such as your name, photograph, employer, profession, email address, phone number, city, social accounts, websites, business address, and links to services controlled by third parties. Visitors may save, copy, screenshot, export, or redistribute public information. Search engines and other services may index public pages according to their own rules. Removing information from Greetap does not necessarily remove a copy that another person or service previously saved.

Greetap may provide controls that allow you to hide, remove, reorder, or restrict certain profile information. You are responsible for reviewing your profile and using available controls in a way that matches your intended audience.

6.Information From Profile Visitors and Contact Exchange Features

When a person visits a Greetap profile, Greetap may process technical and usage information necessary to load the page, protect the service, measure engagement, and provide analytics. If the visitor voluntarily submits information through a contact exchange or lead feature, Greetap may collect information such as name, email address, phone number, company, job title, message, social profile, or other fields made available through that feature.

The Greetap user who receives visitor information may use it for networking, relationship management, sales, recruiting, customer service, or another purpose that the user determines. Greetap may provide tools to organize, export, or delete such records. The receiving user is responsible for any independent use outside Greetap, including marketing communications and storage in another customer relationship management system.

Visitors should not submit sensitive information through a general contact or lead form unless the feature specifically requests it for a lawful purpose and appropriate protections are provided. Greetap does not intend ordinary contact forms to collect medical records, government identification numbers, passwords, full payment card data, biometric templates, or other highly sensitive information.

7.Information Collected Through NFC, QR, and Device Activation

When a Greetap product is activated or used, Greetap may process a device token, activation code, product identifier, profile association, account identifier, activation status, date and time, browser and device information, IP address, and security information. These data help Greetap associate a physical product with the correct profile, prevent duplicate or unauthorized claims, diagnose activation problems, and support ownership or transfer requests.

When a person taps an NFC product or scans a QR code and the action opens a Greetap URL, Greetap may receive the same types of web request information that a website normally receives, including IP address, browser type, device category, approximate location derived from IP address, referral information, date and time, and the profile or link requested. Greetap generally does not receive a person's name or phone contacts merely because the person taps an NFC tag or scans a QR code.

Greetap does not represent that NFC provides strong identity verification. The NFC component generally transmits or opens a web destination. Greetap may use token security and server controls to reduce unauthorized changes, but people should not use ordinary Greetap NFC products as a substitute for secure identity, payment, or access credentials unless Greetap expressly offers a separate product for that purpose.

8.Information Collected Automatically When You Use Greetap

Greetap may automatically collect technical and usage information such as IP address, browser type, operating system, device category, language, time zone, approximate location based on IP address, pages viewed, profile visits, links clicked, referring pages, session information, error logs, diagnostic events, crash information, feature usage, subscription status, and security events. Greetap may also collect identifiers stored in cookies, local storage, or similar technologies where permitted.

Automatic information helps Greetap deliver pages efficiently, remember preferences, prevent abuse, understand feature performance, produce profile analytics, troubleshoot errors, secure accounts, plan capacity, and improve the Services. Some information may be aggregated or deidentified so that it is no longer reasonably linked to a particular person.

9.Information From Connected Accounts and Third Party Integrations

If you choose to connect a social network, sign in provider, scheduling service, payment link, wallet service, or other external account, Greetap may receive information that the provider makes available under your authorization. The exact information depends on the provider and permissions. It can include account identifier, display name, profile image, email address, public content, link information, or access tokens needed to maintain the integration.

Greetap uses connected account information to provide the feature you requested, such as authentication, displaying a link or profile element, refreshing connected content, or creating a wallet pass. You can often manage or revoke a connection through Greetap or the third party provider. Revoking access may stop the feature and does not necessarily require the third party to delete information that it independently collected.

Third party services have their own privacy practices. Greetap is not responsible for how an external service uses information after you leave Greetap or authorize a direct relationship with that service.

10.Payment and Subscription Information

Greetap uses payment providers to process subscriptions and product purchases. A payment provider may collect your card number, bank or wallet information, billing address, authentication information, and fraud prevention data under its own privacy terms. Greetap generally receives the information needed to confirm payment, manage subscription status, handle refunds or disputes, reconcile transactions, and comply with accounting or tax obligations.

Greetap may keep transaction records even after an account is closed when retention is necessary for tax, accounting, fraud prevention, chargeback management, legal claims, or other lawful purposes. Payment providers may retain transaction information under their own legal obligations independently of Greetap.

11.Orders, Shipping, and Physical Product Support

When you buy a physical Greetap product, Greetap may process your name, email address, shipping address, billing information, order contents, shipment status, carrier tracking information, support communications, return information, and product identifiers. This information is used to fulfill the order, communicate about delivery, address product issues, prevent fraud, process returns, and keep required business records.

Greetap may share the information necessary for fulfillment with payment processors, shipping carriers, fulfillment providers, manufacturers, customs intermediaries, or other providers involved in the order. A carrier may independently process delivery information according to its own privacy policy.

12.Business Card Scanning and Automated Extraction Where Available

If Greetap makes an individual feature available that allows you to photograph, upload, or scan a business card or similar professional contact document, Greetap may process the image and information extracted from it, such as a person's name, company, title, phone number, email address, website, address, or social information. The purpose is to create a contact record or help you organize information that you obtained through a professional interaction.

Automated extraction may use optical character recognition, machine learning, or a specialized service provider. Greetap may transmit the image or relevant data to a provider acting on Greetap's behalf when needed to perform the extraction. Greetap will require providers to process information under appropriate contractual restrictions. Greetap will not use private uploaded business card images to train a general public model unless it provides a separate disclosure and obtains any consent required by law.

You are responsible for having a lawful basis to upload information about another person and for using the extracted contact information lawfully. Automated extraction can make mistakes, so you should review a contact record before relying on it.

13.Cookies and Similar Technologies

Greetap may use cookies, local storage, pixels, software development kits, and similar technologies to keep users signed in, remember settings, protect accounts, understand site performance, measure profile engagement, diagnose errors, and support marketing where permitted. Some technologies are strictly necessary for the service to function, while others are optional and may require consent depending on your location.

Where required by law, Greetap will provide a cookie preference tool that allows users to make choices before optional analytics or advertising technologies are activated. A browser setting that blocks all cookies may interfere with login, preferences, or other features. Greetap will also honor legally required universal opt out preference signals, such as Global Privacy Control, when they apply to the relevant processing.

14.How We Use Personal Information

Greetap uses personal information only for purposes that are reasonably connected to operating the Services, fulfilling user requests, protecting users and the platform, communicating with customers, improving products, complying with law, and carrying out legitimate business operations. The particular information used depends on the feature and context.

The main purposes include creating and maintaining accounts; displaying profiles; activating and managing physical devices; providing QR and NFC sharing; enabling contact exchange; producing analytics; processing subscriptions and orders; providing support; sending service communications; securing accounts; detecting fraud and abuse; enforcing the Terms of Service; fixing technical problems; improving usability and performance; administering promotions; measuring marketing; complying with tax and accounting rules; responding to lawful requests; protecting legal rights; and completing corporate transactions when appropriate.

Greetap will not use personal information for a materially different purpose that is incompatible with the purpose disclosed at collection unless Greetap provides additional notice and obtains consent when required by law.

14.1 Processing overview

Account and profile deliveryTypical information: Account details, profile content, settings.Why Greetap uses this information: To create accounts, display profiles, save preferences, and provide requested sharing features.
Device activationTypical information: Device token, product identifier, account association, technical logs.Why Greetap uses this information: To associate Greetap products with profiles, prevent unauthorized claims, and troubleshoot activation.
Subscriptions and ordersTypical information: Billing details, transaction records, shipping information.Why Greetap uses this information: To charge subscriptions, fulfill product orders, process refunds, and maintain financial records.
AnalyticsTypical information: Usage events, profile views, link clicks, browser and approximate location information.Why Greetap uses this information: To provide profile metrics, understand feature performance, and improve the Services.
Security and integrityTypical information: Authentication events, IP address, device and log information.Why Greetap uses this information: To prevent fraud, detect abuse, secure accounts, and enforce platform rules.
Support and communicationsTypical information: Contact information, messages, screenshots, account and order context.Why Greetap uses this information: To respond to questions, solve problems, send service notices, and maintain support records.

15.Legal Bases for Processing in the European Economic Area and United Kingdom

When European Union, European Economic Area, or United Kingdom law requires a legal basis for processing, Greetap relies on the basis that fits the activity. Processing may be necessary to perform a contract with you, such as creating your account, displaying your profile, activating a device, providing a paid plan, or delivering a purchased product. Processing may also be necessary to comply with legal obligations, such as tax records, fraud prevention requirements, or valid legal process.

Greetap may rely on legitimate interests for activities such as securing the Services, preventing abuse, improving product performance, understanding general usage, providing ordinary business analytics, maintaining records, and protecting legal rights, provided that Greetap evaluates the impact on individuals and does not rely on legitimate interests where a person's rights and freedoms override the business interest.

Greetap relies on consent where the law requires it, which may include optional cookies, certain marketing communications, processing of sensitive information, precise location where applicable, or another optional feature. When processing is based on consent, you may withdraw consent at any time, although withdrawal does not make prior lawful processing unlawful.

16.How We Share Personal Information

Greetap does not disclose personal information indiscriminately. Information may be shared when necessary to operate the Services, when you direct the disclosure, when a provider performs work for Greetap, when a transaction requires disclosure, when Greetap must comply with law, or when another legitimate basis applies.

Recipients may include hosting and infrastructure providers, database and storage providers, authentication providers, payment processors, shipping and fulfillment providers, email and communications vendors, customer support systems, analytics providers, fraud and security vendors, professional advisers, insurance providers, auditors, and vendors that support optional automated extraction or similar features. Greetap contracts with service providers where appropriate and requires them to process information for authorized purposes.

Greetap may also disclose information to law enforcement, courts, regulators, or other authorities when Greetap reasonably believes disclosure is required by valid law or necessary to protect rights, safety, or security. Greetap may disclose information in connection with a merger, acquisition, financing, reorganization, bankruptcy, sale of assets, or similar corporate transaction, subject to applicable confidentiality and notice requirements.

17.Information Shared at Your Direction

Many disclosures on Greetap occur because a user chooses to share information. Publishing a public profile directs Greetap to make the selected information available to visitors. Enabling a link directs Greetap to send visitors to the selected destination. Connecting an external account directs Greetap to exchange the information needed for the integration. Sharing a digital profile through QR, NFC, wallet, email, text, or another method directs Greetap to make the profile accessible to the recipient.

When you submit your details to another Greetap user through a connection or lead form, you direct Greetap to provide that information to the receiving user. That user may then store or use the information independently, and Greetap may no longer control what happens to copies exported or transferred outside the platform.

18.Public Information, Search Engines, and Independent Collection by Others

A public Greetap profile may be indexed, cached, summarized, or referenced by search engines, browsers, social platforms, artificial intelligence services, web archives, or other services that independently crawl public web pages. Greetap can control access to its own systems but cannot guarantee removal from a third party's previously collected index or cache.

If you remove public information, Greetap will update the active profile according to normal processing and caching cycles. You may need to contact an independent search engine or other third party to request removal from its systems. Greetap may provide information that helps identify the original profile URL but cannot require an unrelated service to honor a request except where law provides a mechanism.

19.Sale, Sharing, Targeted Advertising, and Universal Opt Out Signals

Greetap does not sell personal information in exchange for money as part of the ordinary individual Greetap service. Some privacy laws define sale or sharing more broadly and can treat certain advertising or analytics disclosures as regulated sharing even when no money is exchanged. If Greetap uses technology that is considered sale, sharing, or targeted advertising under an applicable law, Greetap will provide the legally required opt out method and will honor applicable universal opt out signals.

Greetap will not knowingly sell personal information of children. For minors, Greetap will apply additional restrictions required by Connecticut law and other applicable laws, including restrictions on targeted advertising, sale, profiling, and precise location processing where those rules apply.

A user's decision to publish information on a public profile is a user directed public disclosure and is different from Greetap selling that information. Greetap nevertheless takes reasonable steps to prevent unauthorized scraping and misuse as described in the Terms of Service.

20.Marketing Communications

Greetap may use account and contact information to send product news, offers, educational material, or other marketing where permitted by law. You can opt out of promotional email using the unsubscribe method in the message or available account preferences. Greetap may keep a limited suppression record to remember that you opted out so that the company does not accidentally readd the same address to routine marketing.

Service messages such as password resets, security alerts, receipts, subscription renewal notices, product delivery updates, policy changes, and support responses are not marketing and may continue while you use the Services or while Greetap must maintain a business relationship with you.

21.Sensitive Personal Information

Greetap is not designed to require sensitive personal information for ordinary digital business card use. Users should avoid placing highly sensitive information on public profiles unless they have a clear reason and understand that the information may become public. Sensitive information can include government identification numbers, financial account credentials, health information, genetic or biometric information, precise geolocation, information about children, and information revealing certain protected personal characteristics depending on applicable law.

If Greetap introduces a feature that requires sensitive information, Greetap will limit collection to what is reasonably necessary, apply appropriate safeguards, and obtain consent when required. Greetap may remove or restrict sensitive content from a public profile when necessary to prevent harm, comply with law, or enforce the Terms of Service.

22.Children and Teen Privacy

Greetap is not directed to children under thirteen and does not permit children under thirteen to create accounts. If Greetap learns that it collected personal information from a child under thirteen in circumstances requiring parental consent and such consent was not obtained, Greetap will take reasonable steps to delete or otherwise address the information as required by the Children's Online Privacy Protection Act and other applicable law.

Users who are permitted to use Greetap while under eighteen may receive additional protections based on location. In Connecticut, current law provides enhanced protections for minors interacting with covered online services. Greetap will use reasonable care to avoid heightened risks of harm to minors and, where the law applies, will not use a minor's personal information for targeted advertising or sale, will obtain required consent before profiling, will limit precise geolocation processing, and will provide appropriate safeguards for any direct messaging feature offered to minors.

Parents and legal guardians may contact Greetap if they believe a child has created an account or submitted information contrary to these rules. Greetap may request information necessary to verify the requester's authority before disclosing or deleting information.

23.Data Minimization and Purpose Limitation

Greetap seeks to collect information that is adequate, relevant, and reasonably necessary for the purpose for which it is processed. The company does not need every possible profile field from every user. Optional profile information is chosen by the user, and product development should favor collecting less information where the same function can be provided without additional personal data.

Greetap also evaluates whether information collected for one purpose should be reused for another. When a new use is materially different from what a reasonable user would expect based on this Policy or the collection interface, Greetap will provide additional notice and obtain consent when required by law.

24.Data Retention

Greetap retains personal information for as long as reasonably necessary to provide the Services, maintain account and device functionality, satisfy the purpose for which the information was collected, comply with legal and accounting obligations, resolve disputes, enforce agreements, prevent fraud, protect security, and maintain appropriate business records. Retention periods differ because an account profile, a security log, a tax invoice, a support ticket, and a deleted image serve different purposes and may be subject to different legal requirements.

When an account is active, Greetap generally keeps account and profile information needed to provide the service. After deletion, information may remain for a limited period in backups, fraud prevention records, security logs, legal archives, transaction records, or systems that are not designed for immediate item by item deletion. Greetap will restrict use of retained information to the reason for retention and will delete or deidentify it when that reason no longer applies.

25.Security

Greetap uses administrative, technical, and organizational measures intended to protect personal information against unauthorized access, alteration, disclosure, loss, or destruction. Measures may include access controls, authentication, encryption in transit, secure infrastructure configurations, logging, monitoring, backups, vulnerability management, vendor review, employee access restrictions, and incident response procedures appropriate to the nature of the information and size of the service.

No internet service can promise absolute security. Users also play an important role by protecting passwords, email accounts, devices, and recovery methods. If you believe your Greetap account has been compromised or you identify a security issue, contact Greetap promptly through the official support or security channel.

Greetap will respond to confirmed security incidents in accordance with applicable law and will provide notices to affected individuals or authorities when legally required.

26.International Data Transfers

Greetap is based in the United States and may use service providers or infrastructure located in the United States and other countries. If you access Greetap from another country, your information may be processed in a country whose privacy laws differ from the laws where you live.

When European Union, European Economic Area, United Kingdom, or other law restricts international transfers, Greetap will use a lawful transfer mechanism where required. Depending on the circumstances, this may include an adequacy decision, contractual safeguards such as approved standard contractual clauses, the United Kingdom international data transfer agreement or addendum, another recognized certification or framework, or a legally permitted exception.

Greetap will evaluate its providers and transfer arrangements in light of applicable law and will implement supplementary safeguards where reasonably required. A user may contact Greetap for information about the transfer mechanism that applies to the user's information, subject to limits necessary to protect security and confidential business information.

27.Your Privacy Rights

Depending on where you live and which law applies, you may have the right to know whether Greetap processes your personal information, access information Greetap holds about you, correct inaccurate information, request deletion, receive a portable copy, restrict certain processing, object to processing, withdraw consent, opt out of targeted advertising, opt out of a regulated sale or sharing of personal information, and opt out of certain profiling that produces legal or similarly significant effects.

Some laws also allow you to obtain information about categories of third parties that receive personal information, appeal a denial of a privacy request, limit certain uses of sensitive information, or request information about automated decision making. Greetap will not unlawfully discriminate against you because you exercise an applicable privacy right.

These rights are not absolute. Greetap may need to retain or continue processing information for reasons such as security, fraud prevention, completing a transaction, complying with law, exercising free expression rights, maintaining legal claims, or another exception recognized by applicable law.

27.1 Common rights by legal framework

AccessAsk whether Greetap processes information about you and receive a copy where required.Verification and legal exceptions may apply.
CorrectionAsk Greetap to correct inaccurate personal information.Some public profile fields can be edited directly in your account.
DeletionAsk Greetap to delete personal information.Greetap may retain information when law permits or requires retention.
PortabilityReceive certain information in a usable format.Usually applies to information covered by the relevant law and technically feasible exports.
Opt outOpt out of regulated sale, sharing, targeted advertising, or certain profiling.The exact scope differs by state or country.
Objection or restrictionObject to or restrict certain processing under applicable law.Greetap may continue processing when a lawful overriding reason applies.
AppealAppeal certain denied privacy requests in jurisdictions that provide an appeal right.Greetap will explain the available process when required.

28.How to Exercise Privacy Rights and Verification

You may exercise available privacy rights through account controls or the privacy request method published on Greetap's official Legal or Privacy page. Greetap will ask for information reasonably necessary to verify that the request relates to you. Verification may include confirming access to the email associated with the account, providing transaction details, authenticating into the account, or another method proportionate to the sensitivity of the requested information.

Greetap will respond within the period required by applicable law. Some laws allow an extension when a request is complex or numerous, and Greetap will provide notice of an extension where required. If Greetap denies a request, it will provide the reason and information about any available appeal process when the law requires it.

You may use an authorized agent where applicable law permits. Greetap may require proof that the agent has authority to act and may still need to verify the consumer directly unless the law provides otherwise.

29.Connecticut Privacy Rights

Connecticut residents may have rights under the Connecticut Data Privacy Act when the law applies to Greetap's processing. These rights include confirming whether personal data is processed, accessing personal data, correcting inaccuracies, deleting personal data, obtaining a portable copy, receiving information about profiling, and opting out of sale, targeted advertising, and certain profiling. Connecticut law also provides an appeal process when a covered controller denies a request.

Greetap will honor applicable universal opt out preference signals for processing that is subject to the Connecticut opt out requirements. Greetap will obtain consent before processing sensitive data when Connecticut law requires it and will apply the state's additional protections for minors where applicable. Connecticut rights are subject to statutory exceptions and verification requirements.

30.Delaware Privacy Rights

Delaware residents may have rights under the Delaware Personal Data Privacy Act when the law applies. These rights can include access, correction, deletion, obtaining a copy of personal data, opting out of targeted advertising or sale, obtaining information about processing and sharing, and exercising rights relating to sensitive information. Greetap will provide clear methods for applicable Delaware residents to submit requests and will not unlawfully discriminate against a person for exercising a protected right.

Greetap's organization under Delaware law does not by itself determine every privacy obligation. Privacy rights generally depend on the residence of the consumer, the nature and scale of processing, and statutory coverage requirements. Greetap nevertheless uses the Delaware framework as part of its broader United States privacy program.

31.California Privacy Notice

This section supplements the rest of the Policy for California residents where the California Consumer Privacy Act, as amended, applies. The categories of personal information Greetap may collect include identifiers; customer record information; commercial information relating to subscriptions and product purchases; internet or electronic network activity; approximate geolocation derived from IP address; professional or employment related information that a user chooses to place on a profile; audio, electronic, visual, or similar information such as profile photographs and support attachments; and inferences or analytics derived from interaction with the Services.

Greetap collects these categories from users, profile visitors, connected services, payment and fulfillment providers, and automatic website technologies. The business purposes include providing accounts and profiles, activating devices, completing transactions, shipping products, analytics, security, fraud prevention, support, communications, service improvement, legal compliance, and other purposes described in this Policy.

California residents may have rights to know, access, correct, delete, and obtain information about sale or sharing, and to opt out of regulated sale or sharing and certain uses of sensitive personal information. Greetap will honor Global Privacy Control where required. Greetap does not sell personal information for money as part of the ordinary individual service. If advertising technology constitutes regulated sharing, Greetap will provide the required choice. Greetap will not unlawfully discriminate against a person for exercising California privacy rights.

32.European Economic Area and United Kingdom Rights

If European Union, European Economic Area, or United Kingdom data protection law applies to Greetap's processing of your information, you may have rights of access, rectification, erasure, restriction, portability, and objection. You may also withdraw consent where consent is the legal basis. You have an unconditional right to object to direct marketing. Where processing is based on legitimate interests, you may object based on your particular situation and Greetap will evaluate the request under applicable law.

You may have the right to complain to the data protection authority in the country or region where you live, work, or believe a violation occurred. Greetap encourages users to contact the company first so it can try to address the concern, but contacting Greetap does not remove your right to complain to an authority.

If Greetap engages in automated decision making that produces legal or similarly significant effects and the law grants additional rights, Greetap will provide the required information and safeguards. Ordinary analytics, security filtering, spam detection, or feature recommendations do not necessarily constitute a legally significant automated decision.

33.Do Not Track and Browser Privacy Signals

Some browsers provide a Do Not Track setting, but there is no single universally accepted standard that requires all services to respond in the same way. Greetap may not respond to a generic Do Not Track signal unless applicable law requires a response.

Global Privacy Control and other legally recognized universal opt out mechanisms are different. Where Greetap is legally required to treat such a signal as a request to opt out of sale, sharing, or targeted advertising, Greetap will honor the signal for the browser or device from which it is received and will take reasonable steps to associate the choice with an account when the law requires and the user is known.

34.Deidentified and Aggregated Information

Greetap may create aggregated statistics or deidentified information from personal information, such as overall feature adoption, general profile engagement trends, device compatibility rates, or service performance metrics. When information has been reasonably deidentified so that it cannot be linked to an identifiable person, Greetap may use it for product development, analytics, research, security, business planning, and other lawful purposes.

Where a privacy law imposes requirements on deidentified data, Greetap will maintain appropriate measures intended to prevent reidentification and will not attempt to reidentify data except where law allows testing of deidentification or another legitimate purpose.

35.Business Transfers and Corporate Changes

If Greetap is involved in a merger, acquisition, financing, reorganization, bankruptcy, sale of assets, or similar transaction, personal information may be disclosed to prospective or actual buyers, investors, advisers, lenders, and other participants under appropriate confidentiality arrangements. Information may then be transferred to a successor that continues operating the Services.

Greetap will require the recipient to handle personal information consistently with applicable law and will provide any notice or choice required if the transaction results in a materially different privacy practice.

36.Legal Requests and Protection of Rights

Greetap may preserve, use, or disclose personal information when it reasonably believes doing so is necessary to comply with valid legal process, enforce the Terms of Service, investigate fraud or abuse, protect the security of the Services, protect the rights or safety of users or the public, establish or defend legal claims, or comply with a legal obligation.

Greetap reviews legal requests for appropriate authority and scope. Where legally permitted and appropriate, Greetap may seek clarification, narrow an overbroad request, or notify the affected user. Greetap may be prohibited from providing notice in some cases.

37.Third Party Websites and Services

A Greetap profile can contain links to services that Greetap does not control. Clicking an external link may allow the destination to receive information such as your IP address, browser information, referral URL, and any information you choose to provide there. The destination's privacy policy, not this Policy, governs its independent processing.

Users should carefully consider the privacy practices of payment links, social networks, scheduling tools, portfolio services, review platforms, stores, and other destinations before entering personal or financial information. Greetap does not control changes made by those services.

38.Changes to This Privacy Policy

Greetap may update this Policy when the Services, legal requirements, vendors, or processing practices change. The current version will display the effective date. If an update materially changes how Greetap uses personal information or materially reduces a right, Greetap will provide additional notice or obtain consent where required by law.

Users should review the Policy periodically. Continued use of the Services after an update may acknowledge the revised notice, but Greetap will not treat continued use as consent where applicable law requires an affirmative choice.

39.Privacy Contact and Complaints

Questions, privacy requests, complaints, and concerns about this Policy should be submitted through the privacy contact method published on the official Greetap website. Greetap may route a request to the team responsible for privacy, security, billing, or support depending on the subject.

40.Future Teams, Store, and Events Privacy Updates

This version intentionally does not describe unlaunched Greetap Teams, the future in platform Greetap Store feature, or Greetap Events. Those products may create new privacy roles and data flows, such as organization administrators controlling employee profiles, shared team analytics, marketplace payment and payout information, seller verification, buyer records, event registration, attendee lists, ticketing information, check in data, and event communications.

Before those services are made generally available, Greetap will review the privacy implications, determine any additional contractual, assessment, or notice requirements that apply, update user disclosures as needed, and publish a revised Privacy Policy or supplemental notice. Users should not interpret the current Policy as covering data processing that is specific to an unlaunched product.

Final Transparency Statement

Greetap's goal is to make professional sharing simple without making privacy confusing. Users should be able to understand what information is public, what Greetap collects to operate the service, why information is used, who may receive it, and what choices are available. Greetap will continue reviewing this Policy as the platform grows and will publish additional disclosures before launching products that materially change these data practices.