Privacy Policy

Updated: December 16th, 2025

Introduction

This Privacy Policy explains how Brella ("we," "us," or "our") collects, uses, and protects the personal information you provide while using our platform. By using Brella, you agree to the collection and use of information in accordance with this policy.

Data Collection

Brella is designed to help organizations collect and manage information through customizable forms. Data entered into the platform is stored on our secure systems as well as on your organization's devices. We collect and store the information you and your users submit through forms, including but not limited to responses, documents, and associated metadata.

Data Usage

The data collected by Brella is used for the purpose of providing you with form management capabilities, insights, document generation, and improving your experience within the platform. We use your data to deliver our services, provide customer support, improve our platform, and communicate with you about your account and our services.

Data Security

We prioritize the security of your personal data. We implement industry-standard security measures to protect data stored on our systems, including encryption, access controls, and regular security assessments. However, as data is also stored on your organization's devices, it is your responsibility to protect those devices against unauthorized access. We recommend setting up passwords, using encryption, and regularly updating your security settings.

Data Sharing

We do not sell your personal data to third parties. We may share data with service providers who assist us in operating our platform, conducting our business, or serving our users, provided those parties agree to keep this information confidential. We may also disclose information when required by law or to protect our rights, property, or safety.

Data Protection Compliance

While Brella implements security measures to protect your data, you are responsible for ensuring that your use of the platform complies with all applicable data protection laws and regulations in your industry and jurisdiction. This includes but is not limited to GDPR, CCPA, HIPAA (for healthcare organizations), and other relevant privacy laws. It is the user's responsibility to ensure that any collection, use, disclosure, or storage of data through our platform complies with all applicable legal requirements.

Data Retention

Data entered into Brella is retained on our systems for as long as your account remains active or as needed to provide you with our services. You may request deletion of your data at any time. Upon account termination or deletion request, we will delete your data from our systems within a reasonable timeframe, except where we are required to retain it by law or for legitimate business purposes.

Your Rights

You have the right to access, correct, or delete your personal data stored on our systems. You may also have the right to data portability, to restrict processing, and to object to certain uses of your data, depending on your jurisdiction. To exercise these rights, please contact us using the information provided below.

Liability

While we take reasonable measures to protect data stored on our systems, Brella assumes no responsibility for data stored on your organization's devices or for how you choose to use the data collected through our platform. By using Brella, you acknowledge that Brella is not liable for any misuse of data or failure to comply with applicable data protection laws and regulations.

Changes to This Policy

We may update our Privacy Policy from time to time. Any changes will be posted on our platform, and the "Updated" date will be updated accordingly. Please review this policy periodically to stay informed about how we protect your data.

If you have any questions or concerns about this Privacy Policy, please contact us