Privacy Policy
Last updated: 14 August 2026
Draft. This is a plain-English starting point, not legal advice.
It must be reviewed by a lawyer before Filcerne processes anyone’s personal information.
Who we are
Filcerne is operated from Ontario, Canada. For questions about this policy or about data we hold,
contact contact@filcerne.com.
What this website collects
This site sets no cookies, runs no analytics or advertising trackers, and contacts no third party at all. Fonts are served from our own domain rather than a font CDN, so visiting this page sends your IP address to nobody but us. If you email us, we hold that correspondence so we can reply to it.
Two different roles
It matters which one applies:
- Our own data — enquiries you send us. We are the controller.
- Customer data passing through Filcerne — we act as a service provider (processor)
on the customer’s instructions. They decide what is collected and why; we act on their configuration.
The specifics are set out in the agreement with that customer, not here.
What Filcerne does with data it processes
- Only fields an administrator has explicitly approved are passed to downstream systems. Everything else is withheld.
- Fields flagged as sensitive are encrypted with a key belonging to that customer alone.
- Audit logs record field names and salted hashes — never the values — so the log is not a second copy of the data.
- Reject, delivery and reconciliation records are retained for 30 days by default, then archived.
Your rights under PIPEDA
You may ask what personal information we hold about you, ask for corrections, and withdraw consent.
Where the information sits inside a customer’s Filcerne deployment, we will refer the request to that
customer, who is the organisation that decides how it is used.
Breach notification
If a breach creates a real risk of significant harm, we will notify affected customers and the Office
of the Privacy Commissioner of Canada as required by law.
Changes
Material changes will be posted here with a revised date.