Last updated: May 2026
Cuvion ERP is committed to protecting the privacy and security of your personal data. This policy explains what information we collect when you use our service, how we use it, and what rights you have.
We collect information necessary to deliver the service: name, email, company name, billing details, and usage data. Sensitive financial data (credit card numbers) is never stored on our systems; payments are processed by PCI-compliant providers (Stripe).
Your data is used to deliver the service, secure your account, improve the product, and meet legal obligations. We do not use your personal data for advertising or sell it to third parties.
All data is encrypted at rest with AES-256 and in transit with TLS 1.3. We apply industry-standard safeguards: multi-factor authentication (2FA), audit logging, session management, and tamper-evident hash-chained activity logs.
We retain your data for as long as your account is active. Upon account deletion, all personal data is permanently removed within 30 days; records required by law (invoicing, tax) are retained for the statutory period.
Under GDPR Articles 15-21 and Turkish KVKK Article 11 you have the right to access, rectify, erase, port, restrict processing of, and object to the processing of your personal data. You can act on these rights via account settings or by contacting us.
For privacy-related questions: privacy@cuvionerp.com