Updated to May 15, 2018
This statement applies to User Data collected through www.crmdialer.com and or www.iriscrm.com (collectively with other IRIS sites, the “Site”)
2. User Data Collected and Stored
The information that IRIS collects concerning each User is called User Data. In general terms, IRIS will collect most of the information relevant to the operation of a businesses using our CRM (“Client”), such as your: name, address, company name, credit card information, bank account information, DBAs, logos, email addresses, telephone numbers, recordings of telephone calls, User IP addresses, platform passwords and other credentials, Client portfolio reporting, agent names, agent addresses, agent telephone numbers, agent email addresses, agent pricing, agent IRIS preferences, applications, forms, pricing, client names, client addresses, client phone numbers, client email addresses, client telephone numbers, client reporting preferences, User patterns of activity and such other information that Users may elect to input into IRIS.
3. Use of User Data
User instructions to IRIS will be generally followed, which instructions may include explicit or implicit consent to distribute User Data to third parties.
IRIS will also use aggregated, anonymized User Data to compile statistics and may distribute those anonymized statistics to third parties. IRIS will also use User Data to offer you additional features within the Services or services of third parties that IRIS believes are compatible User interests.
IRIS will use User payment account information to either take payment of its fees or relay such information to processors or other third parties as per User instructions.
Google & Microsoft User Data Policy
IRIS uses Client data which originates or is derived from a User’s Google or Microsoft account, solely for the purpose of providing and improving the User’s expected experience of using an email and calendar system through IRIS’ CRM services. CRM services are integrated independently with these providers in order to sync User data between the CRM and a User’s Google or Microsoft’s authenticated User accounts which Users permit IRIS to access through an email or calendar sync with their Google and Microsoft services. The Client data which is collected from these services is solely used for the purpose of delivering our Clients a superior and productive CRM experience and is not used for any other purpose. A User or Client is able to revoke syncing of services between the CRM and Google and Microsoft at any time without prior notice to IRIS through User Account settings within the CRM.
IRIS only transfers Client data to other services if it is necessary to provide access to IRIS for email features that are prominent for general CRM usage by Users. IRIS may also transfer data as necessary to comply with applicable law or as part of a merger, acquisition, or sale of assets with notice to users. All other transfers or sales of Client data are prohibited within IRIS. IRIS does not use or transfer Client data for serving ads, including retargeting, personalized, or interest-based advertising; and IRIS services do not allow humans to read the data received from Google and Outlook unless IRIS has first obtained the Client’s affirmative agreement for specific message types.
IRIS does not permit emails or calendar events to be accessed by humans. Accessing emails by a human is necessary for investigating a bug, monitoring abuse through the CRM to send emails or security purposes. IRIS complies with applicable laws. IRIS’s use of Google and Microsoft data is limited to internal operations and the data (including derivations) have not been aggregated and have not been anonymized. These internal prohibitions of IRIS apply to the raw data obtained from data aggregated, anonymized, or derived from Google and Outlook. IRIS ensures that employees, agents, contractors, and successors comply with the IRIS’s Google & Microsoft User Data Policy and enforces strict internal security guidelines as a QSA Validated PCI Level 1 Service Provider Version 3.2.
5. Solicitation for Additional Services
IRIS reserves the right to use User Data to solicit Users for additional services or to allow third parties to use such User Data to do the same, provide that IRIS will not share pricing or Client portfolio information with third parties.
6. Public Content / Blogs
IRIS may publish notices, blogs, forums or chats that allow Users to post questions or communicate with each other through the Service. Any information a Users submit in such a forum may be read, collected, or used by others who visit these forums, and may be used to send you unsolicited messages. IRIS is not responsible for the personal information a User chooses to post in such forums.
7. Compelled Disclosure
IRIS reserves the right to use or disclose User Data if required by law or if IRIS reasonably believes that use or disclosure is necessary to protect the IRIS’ rights and/or to comply with a judicial proceeding, court order, or legal process.
8. Communication Preferences
9. Correcting Information
IRIS has security measures in place in its physical facilities and in its computer systems, databases, and communications networks located in the United States that are designed to reasonably protect information contained within our facilities or systems from loss, misuse or alteration appropriate to the sensitivity of the information. Transmission of information to and from this Site is not secured by encryption except as otherwise required by law or payment card industry data security standards applicable to the storage, processing and transmission of credit card data. By providing your information to IRIS, User expressly agrees to the above-described cross border transmission of information and manner of transmission. User email transmissions and/or other communications containing information may be unlawfully intercepted or accessed by third parties and/or the Site and the Services may be subject to hostile network attacks or administrative errors. IRIS cannot and do not guarantee the security of any information transmitted over the internet. Once IRIS receives User Data, it takes steps that IRIS believes are commercially reasonable to limit access to User Data to only those employees, business partners and service providers whom IRIS determines need access to the information to provide the requested services, products, offers or opportunities that may be of interest to Users. However, even after IRIS receives User Data, it cannot guarantee that it will not be accessed, disclosed, altered, or destroyed as a result of a breach of our commercially reasonable efforts or as a result of any other event beyond IRIS’ reasonable control. FOR THE AVOIDANCE OF DOUBT, IRIS EXPRESSLY DISCLAIMS ANY REPRESENTATION OR WARRANTY, WHETHER EXPRESS OR IMPLIED, WITH RESPECT TO ENSURING, GUARANTEEING OR OTHERWISE OFFERING ANY DEFINITIVE PROMISE OF SECURITY IN CONNECTION WITH USER DATA, INCLUDING PERSONAL INFORMATION OR USAGE INFORMATION, THROUGH THE SITE.
11. Contacting Us