Privacy policy

Last updated: September 11, 2026 · Product: IT by WeServeAI · Contact: info@weserveai.com

What this product is

IT is a cloud application for managed IT providers and their client organizations — including asset tracking and issue management — operated by WeServeAI.

Who this policy covers

  • Provider users — staff of the managed IT organization using Assets
  • Client users — staff of customer organizations invited into an estate
  • Platform operators — WeServeAI personnel who administer the deployment

Data we obtain

  • Account & identity — email and profile name from Microsoft Entra ID and/or Google when you sign in; invite emails when an admin invites you
  • Organization & estate data — client companies, sites, assets, identifiers (serials, barcodes, system ids), custody assignments, attachments you upload, and related status/history
  • Discovery / agents (when enabled) — inventory facts sent by enrolled devices or collectors using machine credentials (hostname, hardware/software facts as configured)
  • Usage & security logs — sign-in and operational logs needed to run and secure the service (including audit events of changes to assets and memberships)
  • Optional outbound email — if your organization configures its own mail credentials, we use them only to send product messages (invites, alerts) on that org’s behalf

How we use data

  • Provide the Assets product (register, search, QR, access control, audit)
  • Authenticate users and enforce permissions and site scope
  • Send invites and subscribed notifications when delivery is configured
  • Operate, secure, troubleshoot, and improve the service
  • Comply with law and legitimate operational requests

We do not sell estate or account data. We do not use customer asset registers for advertising.

Who can see what

Access is limited by organization membership and role/permission (provider vs client, site scope). Client users do not see other clients. Platform operators may access deployments they administer for support and operations.

Retention

Asset and audit records are retained while the customer relationship and product data remain active. Assets marked inactive stay in the system for history unless purged under product rules. Backups and logs follow operational retention windows.

Account deletion & data requests

  • Ask a provider admin (or WeServeAI support) to deactivate or remove your user membership if you no longer need access.
  • Org-level deletion or export of estate data is handled by the provider admin / WeServeAI operators — email info@weserveai.com.
  • Self-serve “delete my account” in-product will be expanded as the product matures; until then, use the contact above.

Security

We use industry-standard practices for hosting, encryption in transit, and access control. Org mail secrets (when configured) are stored encrypted and are not shown in full after save.

Changes

We may update this policy as the product evolves. Material changes will be reflected on this page with an updated date.

Related: Terms of use · About Assets