M&E Plus is committed to protecting the privacy, confidentiality, and security of personal and organizational information processed through the M&E Plus platform.
This Privacy Policy describes how information is collected, used, stored, processed, protected, and disclosed when organizations and authorized users access or use M&E Plus and related services.
By using M&E Plus, you acknowledge and agree to the practices described in this Privacy Policy.
This Privacy Policy applies to:
In most deployments:
The Customer determines:
M&E Plus processes information solely to provide, maintain, secure, and support the platform.
Depending on how M&E Plus is configured and used, information processed may include:
Where applicable:
Information may be processed for the following purposes:
Information is not sold, rented, or used for advertising purposes.
M&E Plus may provide AI-assisted features to support analysis, reporting, data management, and decision-support activities.
AI-generated outputs:
Customer information is not used to train public artificial intelligence models without explicit authorization from the Customer.
We implement technical and organizational measures designed to protect information from unauthorized access, disclosure, alteration, or destruction.
Measures may include:
No system can guarantee absolute security; however, we continuously improve our safeguards.
Information is retained according to:
Customers may define project-specific retention periods where applicable.
Information may only be disclosed:
We do not sell customer information.
Information may be processed using cloud infrastructure and authorized service providers located in different jurisdictions.
Appropriate safeguards are applied to support secure processing and transfer of information.
Subject to applicable laws, individuals may have rights, including:
Requests should generally be directed to the Customer acting as Data Controller.
M&E Plus may use cookies and similar technologies to:
Additional details may be provided through the Cookie Policy.
We may update this Privacy Policy periodically.
Updated versions will be published through the M&E Plus website and Trust Center.
Questions regarding privacy or data protection may be directed to:
privacy@mandeplus.com
M&E Plus recognizes that responsible information management includes not only secure storage but also appropriate retention and deletion practices.
This policy explains how information is retained, archived, exported, and deleted throughout the lifecycle of customer subscriptions and projects.
Customers retain primary responsibility for determining:
Where available, customers may configure retention periods according to their organizational policies and project requirements.
Information may be retained for:
Retention periods may vary depending on:
Customers may archive projects that are no longer active.
Archived information remains protected by the same security controls applied to active information.
Customers may request or perform exports of their information at any time during the subscription period.
Supported export formats may include:
Upon termination or expiration of a subscription:
Following completion of the offboarding process and subject to applicable contractual or legal requirements:
Information contained within encrypted backup systems may remain temporarily available until backup retention periods expire.
Upon expiration of backup retention periods, such information is automatically removed through standard backup lifecycle procedures.
Where required by law, regulation, court order, investigation, or contractual obligation, deletion may be delayed until applicable requirements have been satisfied.
This policy may be reviewed and updated periodically to reflect operational improvements, regulatory requirements, and customer needs.
M&E Plus maintains procedures designed to identify, assess, respond to, and recover from security incidents that may affect platform operations or customer information.
The objective of this policy is to support timely response, minimize impact, and maintain transparency with customers.
Security incidents may include:
All identified incidents are evaluated according to their nature, severity, scope, and potential impact.
Potential incidents may be identified through
Once identified, incidents are assessed to determine:
Appropriate measures are taken to limit the impact of the incident and prevent further exposure or disruption.
The incident is investigated to determine:
Services and systems are restored using established recovery procedures.
Where an incident is determined to have materially affected customer information or platform services:
Following significant incidents, lessons learned are incorporated into security practices, procedures, and controls to reduce the likelihood of recurrence.
Security concerns may be reported to:
security@mandeplus.com or privacy@mandeplus.com
M&E Plus may engage carefully selected third-party service providers to support the delivery, security, maintenance, and operation of the platform.
These providers may process limited customer information solely for the purpose of delivering contracted services.
Subprocessors are evaluated based on factors including:
The following categories of providers may be used to support M&E Plus operations:
Purpose
Application hosting, storage, networking, backup, and infrastructure services.
Examples
AWS or equivalent approved infrastructure providers.
Purpose
Customer communications, notifications, and support operations.
Examples
Google Workspace and related communication providers.
Purpose
AI-assisted platform capabilities where enabled by customers.
Examples
Approved AI service providers supporting analytics, reporting, translation, transcription, summarization, and other AI-enabled functionality.
Customer information is not used to train public AI models without customer authorization.
Platform monitoring, performance management, security operations, and reliability improvement.
All subprocessors are required to:
This list may be updated as service providers change or new services are introduced.
Material changes may be reflected within the M&E Plus Trust Center.