Legal

Privacy Policy

This policy explains how EirVerify collects, uses, stores, and shares personal data when you use the platform.

Introduction

Your privacy is important to EirVerify and maintaining your trust matters to us. We are committed to handling personal information carefully, transparently, and in line with applicable data-protection law. This privacy policy explains what personal information we collect when you access EirVerify, run a free check, create an account, use watchlists, submit Neighborhood Pulse information, or otherwise interact with our website, products, and services.

This policy is intended to help you understand how and why we use personal data, the legal bases we rely on, when information may be shared, how long data may be retained, and the rights available to you. It should be read together with any more specific privacy notice that we may provide for a particular feature, form, event, promotion, or service flow.

Changes To This Privacy Policy

We may update this privacy policy from time to time. If we make material changes, we will update the effective date on this page and, where appropriate, provide additional notice within the product or by email. Effective date: March 17, 2026.

Who We Are And How To Contact Us

Throughout this privacy policy, "we", "us", and "our" refer to EirVerify. EirVerify provides location risk checks, hosted report access, compare unlocks, watchlists, reward-gated downloads, and related product features for Irish locations. For privacy-related enquiries, data-rights requests, or questions about how we process personal data, you can contact us at hello@eirverify.ie.

For the purposes of the General Data Protection Regulation and applicable Irish data-protection law, EirVerify acts as the controller of the personal data described in this policy, except where a separate notice states otherwise.

Categories Of Personal Data We Collect

We collect and use personal information for service delivery, security, operational management, legal compliance, and support. The exact information depends on how you interact with EirVerify.

The categories of personal data we may collect include account and identity data such as your name, email address, encrypted password, account-verification status, and sign-in details where you create or access an account.

We may collect service-use data such as searched Eircodes, report history, hosted report access records, watchlist entries, alert settings, alert history, and related account activity needed to provide the service.

We may collect payment and transaction-related data if we ever activate an optional contribution flow. Payment processing is handled by Stripe. We may receive billing and transaction metadata such as customer identifiers, checkout identifiers, payment identifiers, status information, and limited associated account details. We do not store full payment card numbers ourselves.

If you submit Neighborhood Pulse information, we collect the information you choose to provide in that form, including county, local area, area type, ratings, responses, and any optional free-text note, together with the account association needed to administer the feature and prevent misuse.

We may collect communications data such as support requests, contact messages, complaints, data-rights requests, and other correspondence you send to us, including any personal data contained in those messages.

We also collect technical, device, and security data such as IP address, authentication events, browser and device information, cookie identifiers used for essential service functions, server logs, application logs, audit records, and fraud or abuse-prevention data.

How We Use Personal Data

We use account and identity data to create and manage accounts, authenticate users, verify email addresses, secure access to the platform, send service notices, and provide the account features you request.

We use service-use data to generate and host reports, support search and watchlist functionality, deliver alerts, maintain account state, enforce plan limits, and operate the product reliably.

We use payment and transaction data to activate any optional contribution flow, confirm purchases where relevant, prevent duplicate or fraudulent transactions, reconcile payments, and send receipts or purchase-related notices.

We use Neighborhood Pulse submissions to administer that feature, apply any associated reward or entitlement, maintain a record of submissions linked to the relevant account, and help detect abuse or manipulation.

We use communications data to respond to enquiries, provide support, investigate problems, handle complaints, and maintain an appropriate record of service interactions.

We use technical and security data to secure the service, detect misuse, investigate suspicious activity, enforce platform rules, monitor reliability, diagnose technical issues, and maintain internal audit and access records.

Legal Bases For Processing Under GDPR

Under GDPR, we rely on different legal bases depending on the processing involved. A significant portion of our processing is necessary to take steps at your request or to perform a contract with you. This includes creating and managing your account, authenticating you, providing free checks, hosting reports where applicable, activating paid access, processing purchases, operating watchlists and alerts, and responding to support requests connected with the service.

We also process personal data where necessary to comply with legal obligations, including accounting, tax, consumer-protection, fraud-prevention, and record-retention obligations, and where we are required to respond to lawful requests.

In other cases, we rely on our legitimate interests in operating, securing, supporting, and improving EirVerify, provided those interests are not overridden by your rights and freedoms. This includes protecting the platform against misuse, maintaining service reliability, diagnosing technical issues, preserving internal business records, defending legal claims, and administering the product responsibly.

Where consent is required for a particular activity, such as any future use of non-essential analytics, advertising, personalization, or marketing cookies, or any optional direct marketing communications that rely on consent, we will ask for that consent before processing and provide a way to withdraw it.

When And How Personal Data Is Shared

We do not sell your personal information, and we do not disclose it to third parties for their own targeted advertising purposes. We may share personal data with service providers who help us deliver or support the service, including Stripe for payment processing and related transaction handling, Resend for transactional email delivery, hosting and infrastructure providers, and security or operational service providers.

These providers may process personal data on our behalf where relevant to provide their services. We may also disclose personal data where necessary to comply with legal obligations, respond to lawful requests, enforce our terms, investigate abuse or fraud, collect debts, or protect the rights, safety, property, or security of EirVerify, our users, or others.

If EirVerify is involved in a merger, acquisition, financing, reorganisation, asset sale, or similar transaction, personal data may be disclosed to relevant advisers and counterparties subject to appropriate confidentiality and legal safeguards.

International Transfers

Some service providers used by EirVerify may process personal data outside Ireland or the European Economic Area. Where this occurs, we seek to use an appropriate transfer mechanism and safeguards recognised under GDPR, which may include adequacy decisions, contractual safeguards such as the European Commission's Standard Contractual Clauses, or other legally recognised mechanisms, together with supplementary measures where appropriate.

Data Storage And Retention

We retain personal information only for as long as reasonably necessary for the purposes for which it was collected, including service delivery, account administration, security, support, fraud prevention, and legal, accounting, tax, and dispute-handling obligations. Different categories of information are retained for different periods.

Account records, purchased entitlements, report history, watchlist records, and related service data may be retained while your account remains active and for a reasonable period afterwards to support reactivation, dispute handling, fraud prevention, legal compliance, and service continuity where justified.

Payment and transaction records may be retained for as long as necessary to comply with legal, tax, accounting, audit, and chargeback-related obligations. Support correspondence, complaints, and data-rights requests may be retained for as long as necessary to manage the matter and maintain an appropriate business record. Security logs, access logs, and audit records may be retained for a shorter period where suitable for security monitoring and incident investigation, unless a longer retention period is justified by a specific legal or security need.

When personal data is no longer required, we aim to delete, anonymise, or securely isolate it in line with our retention and deletion practices, subject to any legal obligation or legitimate need to retain it longer.

Your GDPR Rights

Subject to applicable law, you may have the right to request access to the personal data we hold about you, ask us to correct inaccurate data, request deletion, request restriction of processing, object to certain processing, and request data portability where those rights apply. Where consent is the legal basis, you may also withdraw that consent at any time, without affecting the lawfulness of processing carried out before the withdrawal.

You may contact us at hello@eirverify.ie to exercise your rights. We may need to verify your identity before acting on a request. You also have the right to lodge a complaint with the Irish Data Protection Commission or another competent supervisory authority if you believe your personal data has been handled unlawfully.

Consequences Of Not Providing Information

Where personal data is required for account creation, purchase processing, authentication, or the delivery of a requested service, we may not be able to provide that service if the necessary information is not supplied.

Cookies And Similar Technologies

EirVerify uses essential cookies and similar technologies for authentication, session continuity, security, and core platform functionality. We also use browser storage for certain product features such as theme preference or preserving parts of the user flow. At present, we do not use non-essential analytics, advertising, or marketing cookies in the frontend codebase reviewed for this policy. If non-essential cookies or similar trackers are introduced in future, we will update the relevant policy documentation and implement any consent mechanism required under applicable law before activating those technologies.

Security

We take reasonable technical and organisational measures to protect personal data against unauthorised access, loss, misuse, or disclosure. However, no internet-based service can guarantee absolute security, and you should also take care to protect your account credentials and devices.

Children

EirVerify is not intended for children, and we do not knowingly collect personal data from children. If we become aware that we have collected personal data from a child in circumstances where consent or another valid legal basis is not in place, we will take steps to delete that information as appropriate.

Last updated: March 17, 2026