Privacy Policy

This notice explains how Shift Relay handles personal data.

Who we are

The Shift Relay platform is provided by Shift Relay (“Shift Relay”, “we”, “us”). For account information about the people who use our website and product, Shift Relay acts as the data controller. For operational records that a customer organization stores in the product, Shift Relay acts as a processor on behalf of that organization, which remains the controller of those records.

Information we process

Account information: name, work email address, phone number where provided, organizational role, sign-in metadata and authentication identifiers, support messages, device identifiers, IP address, and usage and telemetry data. Operational records: shifts, briefings, log entries, tasks, handoffs, announcements, asset records, and training records that a customer organization chooses to store.

Why we process it, and our legal basis

We create and administer accounts, provide and support the service, and process subscriptions in order to perform our contract with you. We keep the service secure, prevent fraud and abuse, improve the product, and analyse aggregate usage on the basis of our legitimate interests in running a safe and reliable platform. We send marketing communications and use non-essential cookies only with your consent, which you can withdraw at any time. We retain certain records to comply with legal obligations, including tax and accounting requirements.

Customer data ownership

Operational records belong to the customer organization. We process them only to provide the service and on that organization's instructions. We do not sell customer data and we do not use customer operational records to train external models.

What we ask you not to store

Shift Relay is an operational continuity platform. Do not store criminal history data, protected health information, or evidence material in it. The personnel module is intentionally limited to operational profile fields rather than full human resources records.

Who we share data with

We share personal data with a limited set of recipients: service providers and subprocessors that host our infrastructure and database, deliver email, provide analytics, and support AI-assisted drafting features; Paddle.com, which acts as our Merchant of Record and reseller and processes payments, subscription management, invoicing, and tax compliance for our orders (Paddle collects and handles payment data directly under its own privacy notice); professional advisers such as legal and accounting firms; and public authorities where we are required to disclose by law. We do not sell personal data.

International transfers

Our providers may process data outside your country, including in the United States. Where data leaves the UK or EEA we rely on appropriate safeguards such as adequacy decisions or standard contractual clauses.

Isolation and access

Records are scoped to a single organization and access is enforced in the database with row-level security in addition to server-side role checks. Important actions are recorded in an append-only audit trail.

Security

We apply appropriate technical and organisational measures, including encryption in transit, encrypted storage, role-based access controls, and least-privilege access for staff.

Retention and deletion

We keep account information for as long as your account is active and for a limited period afterwards to handle disputes and meet legal obligations, after which it is deleted or anonymised. Administrators can archive closed shifts and completed handoffs, soft-delete normal records, and export data before deletion. Permanent deletion is restricted to authorized administrators, and audit and handoff history is preserved so accountability records cannot be erased by ordinary users. Billing records held by Paddle are retained under Paddle's own retention rules.

Your rights

Subject to applicable law you have the right to access the personal data we hold about you, to have inaccurate data corrected, to request deletion, to restrict or object to certain processing, to receive your data in a portable format, and to withdraw consent where processing is based on consent. To exercise these rights, contact us through the contact page; we respond within one month. If your data is held in a customer organization's workspace, we will direct your request to that organization. You also have the right to complain to your local data protection supervisory authority.

Cookies and analytics

We use essential cookies to keep you signed in and to keep the service secure. Website analytics, when enabled, are configured through environment variables, respect applicable consent requirements, and do not include session recording by default. You can manage non-essential cookies through your browser settings or any consent prompt shown on the site.

Contact

Questions about this policy can be sent through the contact page.