Privacy Policy
Last updated: June 2026
Easy Audit Quality Portal is a product of Golden Phi. References to “we”, “us”, or “the operator” mean Golden Phi, which provides and operates this platform.
This Privacy Policy explains how Golden Phi (“we”, “us”) collects, uses, stores, and protects information when you use Easy Audit Quality Portal (“the platform”), our quality and compliance portal for food, pharmaceutical, packaging, raw-material, and related supply-chain organizations.
Easy Audit Quality Portal is a cloud platform purpose-built for food, pharmaceutical, and regulated supply-chain organizations — including manufacturers, suppliers of raw materials, and producers of packaging & packaging materials (food-contact and pharma-contact). Manage compliance evidence, certificates, batch traceability, and audit readiness in one place — without spreadsheets and scattered files. Adjacent industries with comparable quality and traceability needs may also use the platform when its features match their operations.
When your company registers or is onboarded, you select an industry / sector. That choice tailors company profile templates, smart suggestions, and analytics to your business type.
1. Who we are
Golden Phi operates Easy Audit Quality Portal as one of its products. The platform helps regulated supply-chain organizations manage documents, certificates, products, batch traceability, action plans, and compliance workflows. Your selected industry sector is stored on your company record to tailor profile templates and suggestions. Your organization’s administrator controls most day-to-day access inside your tenant.
2. Information we collect
- Account data: name, email address, password (stored hashed), role, and login activity.
- Company data: company name, industry / sector, profile, products, quality documents, certificates, traceability records (including raw materials, packaging, and batch data), and uploaded files.
- External user data: auditor or certification body registration details, grant scopes, and activity logs when external parties are invited.
- Technical data: IP address, browser type, session identifiers, and security logs used to protect the service.
- Communications: messages you send through Contact Us or system notification emails.
3. How we use information
- Provide, operate, and improve the platform.
- Authenticate users and enforce role-based access within each company tenant.
- Send operational emails (invitations, password resets, expiry reminders, traceability session alerts).
- Maintain audit trails and security monitoring.
- Respond to support requests and legal obligations.
4. Multi-tenant isolation
Company data is logically separated by tenant. Users can only access companies and modules permitted by their membership or external grant. We do not sell your compliance data to third parties.
5. File uploads and shared links
Files you upload (PDFs, images, certificates, evidence) are stored on infrastructure configured for this deployment. Public company profile links, when enabled by your administrator, expose only the information explicitly marked for external sharing.
6. Cookies and sessions
We use essential session cookies to keep you signed in and CSRF tokens to protect forms. These are required for secure operation of the portal.
7. Data retention
We retain data while your account or company subscription is active and as needed for backups, audits, and legal compliance. Your organization may export or delete certain records according to permissions available in the product.
8. Security
We apply industry-standard measures including HTTPS in production, password hashing, access controls, and rate limiting on sensitive endpoints. No method of transmission over the Internet is 100% secure; please use strong passwords and protect your credentials.
9. Your rights
Depending on your jurisdiction, you may have rights to access, correct, or delete personal data. Company users should contact their organization administrator first. You may also contact us using the details on our Contact Us page.
10. Changes
We may update this policy from time to time. Material changes will be reflected on this page with an updated date. Continued use of the platform after changes constitutes acceptance of the revised policy.
11. Contact
Questions about privacy? Email help@geteasyaudit.org