SafeHerit Privacy Policy

Last Updated: October 23, 2025

SafeHerit (“we,” “us,” or “our”) respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, store, and safeguard your data when you use our platform, website, and related services (collectively, the “Service”).

By creating an account or using SafeHerit, you agree to this Privacy Policy and our Terms of Service.

  1. INFORMATION WE COLLECT

We only collect the information necessary to provide our Service effectively and securely. SafeHerit distinguishes between two categories of information:

  1. Non-Sensitive Data (Collected and Accessible by SafeHerit)

This includes data required for account management and platform functionality:

  • Account information (name, email address, password hash)
  • Subscription and payment details (processed through Stripe or equivalent PCI DSS–compliant payment provider)
  • Contact information for Pulse Check, Validators, and Beneficiaries (email and optional phone numbers)
  • Public Key (used to encrypt data, and stored by SafeHerit to enable encryption only)
  • Activity logs for technical troubleshooting (limited to anonymized metadata)
  1. Sensitive Data (Encrypted and Inaccessible to SafeHerit)

This includes any information related to your assets, testament videos, and uploaded files. All such data is encrypted locally on your device before transmission to SafeHerit’s servers.

  • SafeHerit cannot decrypt or view this information.
  • The cryptographic key pair (Public and Private Keys) is generated client-side, directly on your device.
  • Your Private Key never leaves your device and is never known to SafeHerit.
  1. HOW WE USE YOUR INFORMATION

We use your data solely to provide and maintain the Service, including:

  • Managing user accounts and authentication
  • Processing payments and subscriptions
  • Operating Pulse Checks and notification workflows
  • Communicating with you about your account, billing, or service updates
  • Improving system reliability and user experience

SafeHerit does not sell or share your data with third parties for advertising purposes. If you choose to receive product updates or promotional information, we will only contact you if you have explicitly opted in, and you can opt out at any time by using the unsubscribe link in our emails.

  1. HOW WE PROTECT YOUR INFORMATION

SafeHerit is built around a zero-knowledge encryption model. This means:

  • All Sensitive Data is encrypted before it leaves your browser using AES-256 and RSA-4096 encryption standards.
  • Only you (and, upon Verified Passing or Permanent Unavailability as defined in the Terms of Service, your designated Beneficiaries) possess the keys required to decrypt that data. You are solely responsible for providing your designated Beneficiaries with their private keys if applicable.
  • Even SafeHerit administrators cannot view, modify, or recover encrypted content.

Other protective measures include:

  • HTTPS/TLS encryption for all data in transit
  • Periodic encrypted backups in secure cloud environments to prevent data loss
  • Strict access controls and authentication protocols for all operational systems
  • Regular security audits and vulnerability assessments
  1. DATA SHARING AND THIRD-PARTY SERVICES

We may share limited Non-Sensitive Data with trusted service providers to support essential operations, including:

  • Payment processing and billing
  • Email delivery and communication
  • Secure hosting and data storage
  • Technical support and analytics

All service providers are contractually bound to handle data in accordance with this Privacy Policy and applicable data protection laws (including GDPR and UAE Federal Decree-Law No. 45/2021).

  1. DATA RETENTION

SafeHerit retains your information only as long as necessary to provide the Service. When your account is deleted or becomes inactive under our Terms of Service, all associated data — including encrypted Sensitive Data and Non-Sensitive Data — is permanently deleted from our systems and backups within a commercially reasonable timeframe.

  1. INTERNATIONAL DATA TRANSFERS

SafeHerit stores encrypted data in secure cloud regions managed by globally compliant providers. Data may be transferred across jurisdictions but always under equivalent data protection guarantees consistent with GDPR and UAE data protection law.

  1. YOUR RIGHTS

Depending on your jurisdiction, you may have the following rights regarding your personal information:

  • The right to access and obtain a copy of your Non-Sensitive Data.
  • The right to correct or update inaccurate information.
  • The right to request deletion of your account and all associated data.
  • The right to data portability (for Non-Sensitive Data).
  • The right to withdraw consent at any time, subject to technical feasibility.

To exercise any of these rights, contact us at support@safeherit.com.

  1. COOKIES AND ANALYTICS

SafeHerit uses only essential cookies and limited analytics tools for system performance and user experience improvements. We do not use tracking or advertising cookies. Cookies may be used for:

  • Session authentication
  • Remembering language preferences
  • Maintaining website security

Users can disable cookies through their browser settings, though some features may not function properly.

  1. DATA ABOUT BENEFICIARIES AND VALIDATORS

SafeHerit stores limited personal information about Beneficiaries and Validators as provided by a registered user (the “Account Holder”). This information typically includes name, email address, and, in some cases, an optional phone number.

The purpose of processing this data is to fulfill the Account Holder’s configuration, specifically to deliver notifications or encrypted information in the event of the Account Holder’s Verified Passing or Permanent Unavailability (as defined in the Terms of Service).

The legal basis for this processing is the legitimate interest of the Account Holder and SafeHerit in

ensuring the secure and intended transfer of information after the Account Holder’s death or unavailability.

Beneficiaries and Validators may contact SafeHerit at support@safeherit.com to request information about what personal data is stored about them or to request deletion where feasible.

SafeHerit does not use this information for marketing or any purpose other than fulfilling the Account Holder’s configuration.

  1. CHILDRENS PRIVACY

SafeHerit is not intended for use by anyone under the age of 18. We do not knowingly collect or maintain data from minors.

  1. CHANGES TO THIS POLICY

We may update this Privacy Policy periodically. Any significant changes will be communicated by email or in app notification. The date at the top of this page indicates the latest version.

Continued use of SafeHerit after such changes constitutes your acceptance of the updated Privacy Policy.

  1. CONTACT US

If you have any questions about this Privacy Policy or how we handle your data, please contact:

ESAN DIGITAL SOLUTIONS FZCO

Email: support@safeherit.com