Last updated: July 19, 2026
This policy explains how OnSync, Inc. collects, uses and shares personal information when you visit our website, create an account or use the OnSync messaging platform.
OnSync generally acts as a controller for website, account, billing and direct communication data. For customer contacts, conversations and workspace content processed on behalf of an organization, the organization is the controller and OnSync acts as its processor or service provider.
We disclose information only as needed to operate OnSync, follow your instructions, complete a transaction, protect the service or comply with law. Depending on the features and deployment configuration in use, providers may include Vercel, MongoDB, Firebase, Pusher, Brevo, OpenAI, Stripe, Meta and connected messaging channels.
When you grant optional consent, analytics, advertising and referral information may also be processed by Google, Meta, Snapchat and Rewardful. We may also disclose information to professional advisers, authorities where legally required, or a successor in a corporate transaction subject to appropriate safeguards.
Essential storage supports security, authentication, language, privacy preferences and billing. Analytics, advertising and affiliate tools remain off until the related consent is granted.
When consent is granted, we may send signup, checkout, trial or purchase events to selected measurement providers from the browser or server. Checkout carries the applicable consent version and choices so conversion webhooks fail closed when valid evidence is absent or expired.
You can review your choices in the Cookie Notice, reject optional processing or withdraw consent at any time. If Global Privacy Control is enabled, advertising and affiliate measurement remain off. See the Cookie Notice for the current inventory and controls. Cookie Notice
We keep personal information only as long as needed for the purpose collected, to provide the service, meet legal or accounting requirements, resolve disputes and protect the service. Retention depends on the type of record, account status and applicable law.
When deletion is required, we delete or de-identify information from active systems and allow protected backups to age out under their normal schedules, unless a legal or security reason requires limited retention.
We use administrative and technical safeguards designed to protect information, including access controls, authentication, encryption in transit, logging and service monitoring. No online system is completely secure, so we review and improve safeguards based on risk.
OnSync and its providers may process information in the United States and other countries where they operate. Where applicable law restricts international transfers, we use the transfer mechanism and safeguards required for the relevant data and destination.
Depending on where you live, you may request access, correction, deletion, restriction or portability, object to certain processing, withdraw consent, or opt out of targeted advertising or the sale or sharing of personal information. Saudi residents may also exercise rights available under the Personal Data Protection Law.
To submit a request, email privacy@onsync.com. We may need to verify your identity and authority. If OnSync processes workspace data for your organization, contact that organization first so we can assist it with the request.
OnSync is a business service and is not directed to children. If you believe a child provided personal information directly to OnSync without appropriate authorization, contact us so we can review and remove it where required.
We may update this policy when our services, providers or legal requirements change. We will publish the revised date and provide additional notice where required.
Privacy questions and requests: privacy@onsync.com. Mail: OnSync, Inc., 30 N Gould St, STE R, Sheridan, WY 82801, USA.