1. Introduction
This Privacy Policy describes how Serenity Software Solutions (“Company,” “we,” “us,” or “our”) collects, uses, discloses, and protects information in connection with the S3 Business Intelligence Vendor Platform, offered under the doing-business-as name S3 Business Intelligence. S3 Business Intelligence Vendor Platform is an offering of Serenity Software Solutions, doing business as S3 Business Intelligence.
By using the Service, you agree to this Policy together with our Terms of Service and Cookie Policy. If you do not agree, do not use the Service.
2. Scope; Roles
This Policy applies to websites, member portals, applications, and related communications operated by the Company for this offering. For personal data we decide the purposes and means of processing, we act as a business / controller. Processors (such as Stripe for payments) process data on our behalf or as independent controllers under their own policies.
3. Information We Collect
Account & identity data: name, email, password hash, and session/authentication identifiers.
Business application data: legal business name, DBA, entity type, phone, address, optional EIN last-four or D-U-N-S, website, years in business, employees, revenue, requested Net terms, and related underwriting fields you submit.
Billing & transaction data: Stripe customer and subscription identifiers, invoice amounts, statuses, due dates, hosted invoice URLs, payment timestamps, and membership tier metadata. Full card numbers are handled by Stripe; we do not store them on our application servers.
Usage & device data: IP address, browser type, pages viewed, approximate timestamps, diagnostics, and similar log data.
Cookies and similar technologies: as described in our Cookie Policy, including session cookies required for authenticated access.
Communications: messages you send to support or legal contacts, and records of transactional notices we send to you.
4. Sources of Information
We collect information directly from you, automatically from your devices when you use the Service, from payment processors (e.g., Stripe webhooks), and—where permitted—from verification or reporting partners needed to operate vendor membership and commercial reporting.
5. How We Use Information
- create and secure member accounts;
- evaluate vendor applications and assign Net-term tiers;
- issue, track, and collect invoices and subscriptions;
- operate dashboards, payment reminders, and customer portal access;
- furnish eligible payment/account history to commercial credit bureaus or reporting partners;
- detect fraud, abuse, and security incidents;
- comply with law, enforce Agreements, and protect rights;
- improve the Service and communicate product or policy updates;
- send marketing only where permitted—you may opt out of marketing without opting out of required billing notices.
6. Legal Bases (EEA/UK Users)
Where GDPR/UK GDPR applies, we rely on: performance of a contract (providing the Service you request); legitimate interests (security, product improvement, fraud prevention—balanced against your rights); legal obligations; and consent where required (certain cookies or marketing).
8. Retention
We retain account, application, billing, and reporting-related records for as long as your account is active and thereafter as needed to collect amounts owed, maintain accurate bureau records, resolve disputes, and meet legal, tax, and audit requirements. Usage logs are typically kept for shorter periods unless needed for security or compliance.
9. Security
We use commercially reasonable administrative, technical, and organizational safeguards, including encrypted transport (HTTPS), hashed passwords, and restricted access. No method of transmission or storage is 100% secure; you use the Service at your own risk regarding residual security risk.
10. Your Privacy Rights
Depending on your location, you may have rights to access, correct, delete, or export personal information, or to object to / restrict certain processing. California residents may have CCPA/CPRA rights including know, delete, correct, and non-discrimination. To exercise rights, email privacy@serenitysoftwaresolutions.com. We may need to verify your identity. Some records cannot be deleted while needed for billing, fraud prevention, legal holds, or credit furnishing integrity.
11. Children
The Service is not directed to individuals under 18. We do not knowingly collect personal information from children. If you believe a minor provided data, contact us to request deletion.
12. International Transfers
We operate primarily in the United States. If you access the Service from elsewhere, you understand information may be processed in the U.S., where laws may differ from those in your country.
13. Changes
We may update this Policy by posting a revised version with a new effective date. Material changes may be highlighted by notice in the Service or by email. Continued use after the effective date means you accept the updated Policy.
14. Contact
Serenity Software Solutions
DBA S3 Business Intelligence
Privacy inquiries: privacy@serenitysoftwaresolutions.com
General support: support@serenitysoftwaresolutions.com
