Privacy Policy

Product: CertifyPlus
Company: Solara Group
Owner: Solara Group
Version: 1.0
Effective Date: May, 2026
Last Updated: July 2026

 

Purpose

At Solara Group, protecting customer information is a core part of how we design and operate CertifyPlus.

This Privacy Policy explains how CertifyPlus collects, uses, stores, protects, and processes personal information when customers use the platform, visit our website, or interact with our services.

CertifyPlus is built for organizations/teams/businesses that manage compliance records, operational workflows, approvals, electronic signatures, document management, and related business processes. We recognize that our customers trust us with sensitive operational information, and we are committed to protecting that trust through secure platform design, responsible data handling, and transparent privacy practices.

 

About CertifyPlus

CertifyPlus is a cloud-based compliance and operational workflow platform developed and operated by Solara Group.

The platform enables organizations to securely manage:

  • Certificates
  • Compliance Records
  • Cases
  • Requests
  • Approvals
  • Electronic Signatures
  • Invoices
  • Document Libraries
  • Operational Workflows
  • Reporting & Analytics

 

Each customer operates within a dedicated, isolated workspace to ensure organizational data remains secure and separated from every other customer.

 

Who We Are

Company: Solara Group

Product: CertifyPlus

Website: CertifyPlus – Intelligent Compliance Management

Privacy Contact: info@solaragroup.com

 

Our Privacy Principles

Everything we build within CertifyPlus is guided by the following principles:

  • Customer data belongs to the customer.
  • Security is built into the platform; not added later.
  • Every customer workspace is isolated from every other workspace.
  • Access is controlled using role-based permissions.
  • Every significant action is recorded through an auditable activity history.
  • We are transparent about how information is collected and used.
  • We never sell customer information.

 

Our Role

Because CertifyPlus is a Business-to-Business (B2B) platform, our responsibilities vary depending on the information involved.

 

When Solara Group is the Data Controller

We are responsible for information relating to:

  • Website visitors
  • Sales inquiries
  • Product demonstrations
  • Customer administrators
  • Billing contacts
  • Marketing subscriptions
  • Support requests

 

For this information, Solara Group determines how and why the information is processed.

 

When Solara Group is the Data Processor

Organizations using CertifyPlus upload and manage information within their own dedicated workspaces.

Examples include:

  • Certificates
  • Cases
  • Requests
  • Approvals
  • Electronic Signatures
  • Supporting Documents
  • Notes
  • Comments
  • Invoices
  • User Profiles
  • Audit Records

 

In these situations, the customer organization remains the owner and controller of its data.

Solara Group processes this information only to provide and support the services in accordance with our agreements with each customer.

 

Information We Collect

Account Information

When users are invited into CertifyPlus, we may collect:

  • Full Name
  • Business Email Address
  • Organization
  • Job Title
  • User Role
  • Profile ID
  • Assigned Locations (where applicable)

 

Workspace Information 

Authorized users may create or upload:

  • Certificates
  • Cases
  • Requests
  • Approvals
  • Electronic Signatures
  • Documents
  • Comments
  • Notes
  • Timeline Entries
  • Supporting Documents
  • Attachments

 

System Information 

To provide a secure and reliable platform, CertifyPlus automatically records technical information including:

  • Login Activity
  • Browser Type
  • Device Information
  • IP Address
  • Operating System
  • Session Information
  • Date and Time of Access

 

Audit Activity 

One of CertifyPlus core capabilities is comprehensive audit tracking.

The platform automatically records important actions including:

  • Record Creation
  • Record Updates
  • Status Changes
  • Approvals
  • Signature Requests
  • Electronic Signatures
  • Document Uploads
  • User Activity
  • Workflow Progress

 

These records help organizations maintain accountability, transparency, and compliance.

 

How We Use Information

We use information to:

  • Deliver the CertifyPlus platform
  • Authenticate users
  • Manage customer subscriptions
  • Secure customer workspaces
  • Maintain audit trails
  • Generate reports
  • Process invoices
  • Improve platform performance
  • Respond to support requests
  • Detect fraud and unauthorized access
  • Meet legal obligations
  • Communicate important product and security updates

 

We do not sell customer information.

 

Certi+ AI Assistant

CertifyPlus includes an optional AI assistant known as Certi+.

Certi+ is designed to help users:

  • Navigate the platform
  • Locate records
  • Answer questions
  • Improve productivity
  • Surface relevant information
  • Assist with operational workflows

 

Privacy remains central to how Certi+ operates.

Certi+:

  • Operates only within the customer’s workspace.
  • Respects all role-based permissions.
  • Cannot access records users are not authorized to view.
  • Does not make approval decisions.
  • Does not replace human judgment.
  • Does not use customer data to train foundation AI models.

 

Organizations may enable or disable Certi+ for their workspace.

 

Information Sharing

We share information only when necessary to operate the Services.

Examples include:

  • Secure cloud hosting providers
  • Identity and authentication providers
  • Payment and invoicing providers
  • Customer-authorized integrations
  • Legal authorities where required by law

 

We never sell customer data.

 

Data Security

Protecting customer information is fundamental to CertifyPlus.

Security measures include:

  • Encryption in Transit
  • Encryption at Rest
  • Role-Based Access Control
  • Secure Authentication
  • Workspace Isolation
  • Audit Logging
  • Continuous Monitoring
  • Secure Cloud Infrastructure
  • Secrets Management

 

More information is available in our Security documentation.

 

Data Retention

Information is retained only as long as necessary to:

  • Provide the Services
  • Meet contractual obligations
  • Maintain audit records
  • Comply with applicable laws
  • Resolve disputes

 

Customer workspace data is retained according to each customer’s agreement with Solara Group.

 

Your Privacy Rights

Depending on your organization and role, you may have the right to:

  • Access your information
  • Correct inaccurate information
  • Request deletion
  • Restrict processing
  • Object to processing
  • Receive a portable copy of your information
  • Withdraw consent where applicable

 

If your information exists within a customer’s workspace, requests should first be directed to that organization.

 

International Data Transfers

CertifyPlus is hosted on secure cloud infrastructure located in the United States.

Where required by applicable law, Solara Group implements appropriate safeguards for international transfers of personal information.

 

Children’s Privacy

CertifyPlus is designed exclusively for organizations and business users.

The platform is not intended for children under the age of 16, and we do not knowingly collect personal information from children.

 

Changes to this Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our Services, security practices, or legal obligations.

When significant changes are made, we will update the Last Updated date and provide appropriate notice where required.

 

Contact Us

Solara Group

Product: CertifyPlus

Website: CertifyPlus – Intelligent Compliance Management

Privacy Questions: info@solaragroup.com