Privacy Policy

Effective date: August 24, 2026  ·  Updated September 28, 2026  ·  Siglio

This policy explains what Siglio collects, why, and what we do and don't do with it. Siglio is operated by a Florida limited liability company doing business as Siglio, based in Tampa, Florida. The service is offered from the United States and directed to users in the United States.

The short version

1.Who this policy covers

Two kinds of people interact with Siglio, and we treat them differently.

Customers are the developers and businesses who hold Siglio accounts. For customer information, we decide how and why data is processed, and this policy describes it.

Signers and recipients are the people our customers send documents to. We process their information on the instructions of the customer who created the envelope. If you received a document for signature, the organization that sent it decided to contact you, and questions about why you received it or what the document contains belong to that organization. Section 6 covers what we process about you and the choices you have.

2.What we collect

From customers

From signers and recipients, on a customer's instructions

From site visitors

3.How long we keep your documents

We keep the documents you send only as long as signing needs them. Signed documents, the original upload and any files signers upload are deleted automatically 30 days after the envelope is completed, voided or expires, and cannot be recovered after that. Download the signed PDF when it's ready and keep your own copy. We keep the signing record (who signed, when, contact details, IP address and device details, and certificate data) so the signature can be verified later. Envelopes nobody finishes expire 30 days after they are sent.

Documents are held in private storage that only our servers can read. Siglio is not an archive of your contracts: the copy you download is the one to keep.

Two things are stored because you ask us to: templates you save in the document studio (the PDF, so you can send it again), and files a signer uploads when you ask for them, such as a photo ID or proof of insurance. Signer files are kept with the envelope, are never sent by email, can be downloaded only by the account that sent the document, and are deleted with the envelope’s other files 30 days after it closes. You can ask us to delete a template or a signer file sooner through the contact form. Otherwise we avoid storing document contents except transiently where required to validate and process a file you submit.

4.How we use information

5.Sharing

We never sell your personal information, and we never share it with third parties for their marketing purposes. We do not provide data to brokers, list vendors, or advertisers, and we do not display third-party advertising in the service.

We share information only in these situations:

6.If you received a document to sign

A Siglio customer supplied your name and contact information to send you a document. We use that information to deliver the signing invitation, record the signing events that make the transaction auditable, and send you your signed copy, with a secure download link valid for 30 days after the envelope is completed. After that the document is deleted, so save your copy. If you have not signed yet, we send automatic reminders by text and email, the same way you were sent the document, until the document is signed or it expires 30 days after it was sent.

7.How long we keep it

RecordRetention
Billing, invoices, usage, and payment history7 years
Account and security audit events3 years
Support tickets and communications3 years
API request logs12 months
Webhook payloads and delivery responses6 months
Signed documents, the original upload and working copies30 days after the envelope is completed, voided or expires, then deleted and not recoverable
Studio templatesUntil you delete the template or close your account
Files uploaded by signers30 days after the envelope is completed, voided or expires, or sooner if the sender asks

We may retain records longer where required by law, to resolve disputes, or to enforce agreements, and we minimize diagnostic data containing unnecessary sensitive information as soon as practical.

8.Cookies and analytics

The portal uses essential cookies required for sign-in and security. Our marketing site may use analytics and advertising-measurement cookies to understand how visitors find us and whether our advertising works; these measure our own campaigns and are not used to build marketing lists or to share your information with third parties for their marketing. You can control cookies through your browser, and the service works with non-essential cookies disabled. We honor the Global Privacy Control signal where applicable law gives it effect.

9.Security

We use industry-standard safeguards appropriate to the data we hold: encryption in transit, access controls and least-privilege credentials, tenant isolation, audit logging, and monitoring. No service can promise perfect security, which is one more reason our design keeps your signed documents out of our systems. If a breach affecting your information occurs, we will notify you as required by applicable law.

10.Your rights and choices

Depending on your state, you may have rights to access, correct, delete, or receive a copy of personal information we hold about you. To exercise them, use the contact form; we will verify your identity against your account or the envelope records before acting, respond within the time applicable law allows, and will not discriminate against you for exercising your rights.

Because we do not sell personal information or share it for cross-context behavioral advertising, there is no sale or sharing to opt out of. Note that transaction records that make signatures auditable, and records we must keep by law (Section 7), may be exempt from deletion; where an exemption applies we will tell you.

11.Children

The service is for business use by adults. It is not directed to anyone under 18, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us information, contact us and we will delete it.

12.Where data is processed

Siglio operates from the United States and processes data in the United States. The service is directed to the United States market; if you use it from elsewhere, you do so on your own initiative and your information will be processed in the United States.

13.Changes and contact

We may update this policy, and material changes will be announced through the portal or your account email before they take effect, with the current version always at this page. Questions and privacy requests go through the contact form, or by mail to Siglio at the notice address listed in our Terms of Service.