Accevo CMMS App Privacy Policy

Last updated: 28.04.2026

This Privacy Policy explains how Accevo sp. z o.o. processes personal data in connection with the Accevo CMMS mobile application.

The Accevo CMMS application is intended for business users, especially employees, contractors and authorised representatives of companies using Accevo software.

1. Data controller

The controller of personal data is:

Accevo sp. z o.o.
Kraków, Poland
Email: [email protected]

You can contact us about personal data protection matters at the email address above.

In some cases, Accevo processes personal data on behalf of its customer. In such cases, the customer organisation may act as the data controller, and Accevo may act as a data processor under a separate data processing agreement.

2. Scope of this privacy policy

This Privacy Policy applies to the Accevo CMMS mobile application and related digital services.

The application is used to support maintenance processes, including work orders, maintenance tasks, inspections, asset management, service reporting and technical documentation.

3. Categories of personal data we process

Depending on the configuration of the system and the permissions granted by your organisation, we may process the following categories of personal data.

Account and user data

We may process:

  • name and surname;
  • business email address;
  • business phone number, if provided;
  • job title, role, department or user group;
  • login credentials or authentication identifiers;
  • account status;
  • access rights and permissions.

This data is used to create and manage user accounts, authenticate users and provide access to the application.

Maintenance and work order data

The application may process information connected with maintenance activities, including:

  • assigned work orders;
  • task statuses;
  • maintenance checklists;
  • comments, notes and updates added by users;
  • timestamps of performed actions;
  • asset, equipment and machine information;
  • service history;
  • spare parts and maintenance documentation.

This data is processed to provide CMMS functionality and support maintenance operations.

Photos, files and attachments

If this feature is enabled, users may upload photos, documents or other attachments to work orders, defects, inspections or service reports.

The app may request access to the camera or photo library only when the user chooses to add a photo or file.

Uploaded materials may contain personal data if the user includes such information in the content.

Technical and device data

For security, diagnostics and service reliability, we may process:

  • device type;
  • operating system;
  • app version;
  • IP address;
  • login and logout events;
  • system logs;
  • error logs;
  • crash reports;
  • technical diagnostics.

This data is used to maintain the application, protect the system, diagnose technical issues and improve reliability.

Push notification data

If push notifications are enabled, the application may process technical identifiers required to deliver notifications to the user’s device.

Push notifications may be used to inform users about assigned tasks, work order updates, maintenance alerts or other CMMS-related events.

Location data

The Accevo CMMS application does not collect precise or approximate location data unless this feature is specifically enabled in the customer’s configuration and the user grants the relevant permission.

If location-based functions are enabled, location data may be used only for operational purposes, such as confirming the location of maintenance activities, assets or service work.

4. Purposes of processing

We process personal data for the following purposes:

  • providing access to the Accevo CMMS application;
  • user authentication and account management;
  • assigning and managing maintenance tasks;
  • documenting work orders, inspections and service activities;
  • enabling communication related to maintenance processes;
  • providing technical support;
  • maintaining application stability and security;
  • preventing unauthorised access;
  • troubleshooting errors;
  • complying with legal obligations;
  • protecting legal claims.

5. Legal basis for processing

Depending on the context, personal data may be processed on the following legal bases:

  • Article 6(1)(b) GDPR — processing necessary for the performance of a contract or to take steps before entering into a contract;
  • Article 6(1)(c) GDPR — processing necessary to comply with legal obligations;
  • Article 6(1)(f) GDPR — processing necessary for legitimate interests, such as system security, technical support, service administration, protection of claims and service improvement;
  • Article 6(1)(a) GDPR — consent, where consent is required, for example for optional permissions or certain communication features.

6. Data sharing

We do not sell personal data.

We may share personal data only when necessary with:

  • authorised Accevo employees and contractors;
  • the customer organisation that provides access to the CMMS system;
  • hosting and cloud infrastructure providers;
  • IT service providers;
  • technical support providers;
  • analytics, diagnostics or crash reporting providers, if used;
  • public authorities, where required by law.

External providers may process data only to the extent necessary to provide services to Accevo or to the relevant customer.

7. Third-party services

The Accevo CMMS application may use third-party services for technical purposes, such as:

  • authentication;
  • cloud infrastructure;
  • push notifications;
  • crash reporting;
  • app performance monitoring;
  • security monitoring.

The exact list of third-party services may depend on the app version and customer configuration.

8. Data retention

Personal data is stored only for as long as necessary for the purposes described in this Privacy Policy.

The retention period may depend on:

  • the duration of the customer’s contract with Accevo;
  • the customer’s system configuration;
  • legal obligations;
  • operational requirements;
  • backup and disaster recovery procedures;
  • limitation periods for legal claims.

Technical logs are usually retained for a limited period unless longer retention is required for security, diagnostics or legal purposes.

9. Security

We apply appropriate technical and organisational measures to protect personal data against unauthorised access, loss, misuse, alteration or disclosure.

These measures may include:

  • access control;
  • user authentication;
  • role-based permissions;
  • encrypted communication;
  • system monitoring;
  • access logs;
  • backup procedures;
  • regular technical maintenance.

10. International data transfers

Personal data is processed primarily within the European Economic Area.

If personal data is transferred outside the European Economic Area, we apply safeguards required by GDPR, such as standard contractual clauses or other lawful transfer mechanisms.

11. User rights

Under GDPR, you may have the right to:

  • access your personal data;
  • rectify inaccurate data;
  • erase your data;
  • restrict processing;
  • object to processing;
  • receive your data in a portable format;
  • withdraw consent, where processing is based on consent;
  • lodge a complaint with a supervisory authority.

In Poland, the supervisory authority is the President of the Personal Data Protection Office.

To exercise your rights, contact us at:

[email protected]

If your account is managed by your employer or organisation, we may refer your request to that organisation where it acts as the data controller.

12. Account deletion

Users may request account deletion or personal data removal by contacting:

[email protected]

If your CMMS account was created by your employer or another organisation, account deletion may need to be handled by that organisation’s system administrator.

Some data may need to be retained where required by law, contract, security obligations, audit requirements or legitimate business purposes.

13. Children’s privacy

The Accevo CMMS application is intended for business users.

It is not directed to children, and we do not knowingly collect personal data from children through the application.

14. Changes to this privacy policy

We may update this Privacy Policy from time to time, for example when we introduce new features, change data processing practices or update legal requirements.

The latest version will be available on this page.