SunServa

SUNSERVA · SERVICE & AMC

Privacy Policy

Version 1.0 · Effective 29 September 2026

This Privacy Policy explains how SunServa processes information in connection with Service & AMC.

Information processed

Depending on use of the service, information may include EPC company details; authorized-user names, email addresses, mobile/contact details and account information; customer contact and business information entered by an EPC; solar-plant and equipment information; AMC, complaint, ticket, technician, visit and service-report information; uploaded documents and file metadata; subscription information; support communications; and security, audit and application logs.

Why information is processed

SunServa processes information to create and administer accounts, provide Service & AMC workflows, enforce tenant and subscription controls, operate customer support, secure and troubleshoot the service, maintain audit records, improve reliability and comply with applicable obligations.

EPC customer data

For information an EPC company enters about its own customers, plants and service activities, the EPC company determines what business information it places in SunServa and remains responsible for having appropriate authority or lawful basis to do so. SunServa processes that hosted information as a SaaS/service provider as necessary to provide, secure, maintain and support the service, subject to applicable terms and law. SunServa does not claim ownership of the EPC company's business or customer data.

Service providers

Information may be processed by infrastructure, hosting, database, email-delivery or other service providers used to operate SunServa, subject to their role in delivering the service and appropriate contractual or security controls. SunServa does not represent that information is never processed by service providers.

Security

SunServa uses measures such as authenticated access, tenant-scoped application controls, password hashing, CSRF protection, secure production cookies, rate limiting and audit/security logging where implemented. No system can guarantee absolute security.

Retention

Information may be retained while an account or commercial relationship is active and for a reasonable period afterward where needed for service continuity, security, backup, dispute resolution or legal obligations. Owner/legal review required: precise production retention and deletion periods should be finalized before promising fixed periods.

Cookies and local storage

SunServa currently uses cookies needed for application sessions and authentication. The application may use browser local storage for interface preferences such as light/dark theme. At the date of this version, the inspected SunServa application does not include non-essential advertising pixels or public-site analytics trackers requiring a marketing-cookie banner. This policy should be updated if such technologies are introduced.

Requests and contact

Authorized users can contact sunserva@gmail.com regarding privacy or data requests. SunServa may need to verify the requester and the relevant EPC company's authority before acting on hosted business data.

Policy updates

This policy may be updated as the product, providers or legal requirements change. Material revisions may be communicated through the service or appropriate business channels and may require renewed acknowledgement.