How RenewalDesk collects, stores, and protects your library's vendor and contract data. Written for library administrators and IT staff.
Effective: March 15, 2026
RenewalDesk is a vendor operations tool. We process vendor and contract data only, including:
RenewalDesk does not collect or store personally identifiable patron information. We have no access to circulation records, borrower data, patron demographics, or any information that could identify library users.
We understand that vendor contract pricing is often commercially sensitive. Many library-vendor agreements include confidentiality clauses around negotiated rates.
RenewalDesk treats all contract pricing data as confidential. Your pricing information is:
Your data is protected using industry-standard security practices:
Your data stays yours. RenewalDesk does not:
The only exception: we may disclose data if required by law (e.g., a valid court order), and we will notify you first unless legally prohibited from doing so.
Your library retains full ownership of all data stored in RenewalDesk. At any time, you can:
If you cancel your RenewalDesk subscription, your data is retained for 90 days to allow for export, then permanently deleted.
| Data we process | Vendor contracts, pricing, usage stats, renewal dates |
| Patron data collected | None |
| Pricing confidentiality | Treated as confidential, never shared |
| Encryption | TLS 1.2+ in transit, AES-256 at rest |
| Third-party sharing | None (except if required by law) |
| Data ownership | You own it. Export or delete anytime. |
| Post-cancellation retention | 90 days, then permanent deletion |
If you have questions about how RenewalDesk handles your data, or if you need documentation for an IT security review or procurement process, reach out to us. We're happy to provide additional detail or complete vendor security questionnaires.