Skip to main content

Cybex Sign Privacy Notice

This notice explains what Cybex LLC, doing business as Cybex Solutions ("Cybex") collects through Cybex Sign, why, and what happens to it. It covers the Cybex Sign signing service only.

What Cybex Sign collects

Because Cybex put it there. The name, email address, organization and title of each person a document is sent to, and the documents themselves. These come from Cybex, not from you.

Because you provided it. The full legal name and title you enter when confirming your authority to sign, the signature you draw or type, and any text you enter into a field on a document.

Because your browser sent it. The IP address your requests came from and the user-agent string your browser reports, from which Cybex Sign derives a short device description such as "Safari · iPhone · iOS".

Because Cybex Sign generated it. Server-side timestamps for every step, a record of whether a one-time code sent to your email address was entered correctly, session identifiers, request correlation identifiers, and SHA-256 fingerprints of each file.

Why

Each of these has a specific purpose, and there is nothing collected "just in case":

PurposeWhat it uses
Verifying who is signingEmail address, one-time code result, name and title
Producing a record of the transactionTimestamps, consent, intent, signature, document fingerprints
Protecting against fraud and misuseIP address, device description, authentication events, security events
Showing that documents have not changedSHA-256 fingerprints, audit hash chain
Reaching you about this transactionEmail address

What Cybex does NOT do

  • Cybex does not sell signing data.
  • Cybex does not use signing data for advertising or marketing profiling.
  • Cybex Sign does not use canvas, font or device fingerprinting.
  • Cybex Sign does not track you across other websites, and sets no advertising or analytics cookies.
  • Cybex Sign sets only the cookies required to keep you signed in to a signing session and to protect that session from cross-site request forgery.

Where it goes

Cybex Sign stores documents in private cloud storage that is not publicly readable, and records in a private database. Neither is accessible without server-side authorization.

Cybex uses a small number of service providers to operate Cybex Sign — application hosting, database and file storage, and email delivery. They process this information only to provide those services to Cybex.

Cybex may disclose records where required by law, or where necessary to establish or defend a legal claim relating to an agreement signed through Cybex Sign.

How long it is kept

Completed agreements and their evidence records are retained for as long as Cybex may need them in connection with the agreement. They are not deleted as a routine matter, because the point of the record is to remain available if the agreement is ever questioned.

Operational records with shorter useful lives — rate-limit counters, expired one-time codes, session rows — are removed or expire on their own.

Your choices

  • You can decline to sign, at any point before you select Finish & Sign.
  • You can ask Cybex for a paper copy of any record provided to you electronically.
  • You can ask what Cybex holds about you in connection with a signing transaction, and ask for corrections to your name or title.

Some information cannot be deleted on request where it forms part of the evidence for an agreement that has been executed. Cybex will explain if that applies.

Contact

Cybex LLC, doing business as Cybex Solutions Email: sign@cybexs.com


*Last updated: version 2026.09.1. This notice covers Cybex Sign. Other Cybex services have their own notices.*

Version and fingerprint

Version 2026.09.1. The SHA-256 below is taken over the source text of this document. When a signer agrees to it, that exact value is recorded against their consent, so it can always be shown which wording they were given.

67b6974be753e952ed7b91d13623daa088cf6d6c59670fe59de2f14dc472e0e7