Introduction
IoT Manager (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our IoT device management platform and related services (the “Service”).
By using our Service, you agree to the collection and use of information in accordance with this Privacy Policy.
Information We Collect
Personal Information
When you create an account or use our Service, we may collect:
- Account Information: Name, email address, phone number, company name
- Profile Data: Job title, industry, preferences, and account settings
- Payment Information: Billing address, payment method details (processed securely through third-party payment processors)
- Communication Data: Messages, support tickets, and correspondence with our team
IoT Device Data
Our Service collects and processes data from your connected IoT devices:
- Device Information: Device identifiers, model numbers, firmware versions, hardware specifications
- Operational Data: Device status, sensor readings, performance metrics, uptime statistics
- Configuration Data: Device settings, automation rules, user-defined parameters
- Location Data: Geographic location of devices (when enabled)
- Usage Analytics: Device interaction patterns, feature usage, error logs
Technical Information
We automatically collect certain technical data:
- Log Data: IP addresses, browser type, operating system, access times, pages viewed
- Cookies and Tracking: Session data, preferences, analytics information
- API Usage: Request patterns, response times, error rates
Third-Party Integrations
When you connect third-party services or devices:
- Data shared between integrated platforms
- Authentication tokens and API credentials
- Synchronized device configurations
How We Use Your Information
We use the collected information to:
Service Provision
- Device Management: Monitor, control, and manage your IoT devices
- Dashboard Analytics: Provide insights, reports, and visualizations
- Automation: Execute user-defined rules and workflows
- Alerts and Notifications: Send status updates, warnings, and system alerts
Account Management
- User Authentication: Verify identity and secure account access
- Customer Support: Respond to inquiries and resolve technical issues
- Billing and Payments: Process transactions and manage subscriptions
- Account Security: Detect and prevent unauthorized access
Service Improvement
- Product Development: Enhance features and develop new capabilities
- Performance Optimization: Improve system reliability and speed
- Analytics: Understand usage patterns and user behavior
- Research: Conduct studies to advance IoT technology
Legal and Security
- Compliance: Meet regulatory requirements and legal obligations
- Fraud Prevention: Detect and prevent malicious activities
- Security Monitoring: Protect against cyber threats and data breaches
Information Sharing and Disclosure
We do not sell your personal information. We may share your information in the following circumstances:
Service Providers
We work with trusted third-party vendors who assist in providing our Service:
- Cloud Infrastructure: AWS, Google Cloud, or similar providers
- Payment Processing: Stripe, PayPal, or other payment processors
- Analytics Services: Usage analytics and monitoring tools
- Communication Services: Email delivery and customer support platforms
Business Operations
- Corporate Transactions: In case of merger, acquisition, or asset sale
- Legal Requirements: When required by law, court order, or government request
- Safety and Security: To protect rights, property, or safety of users and others
With Your Consent
We may share information with your explicit consent for specific purposes.
Data Security
We implement industry-standard security measures to protect your information:
Technical Safeguards
- Encryption: Data encrypted in transit and at rest using AES-256 standards
- Access Controls: Role-based access with multi-factor authentication
- Network Security: Firewalls, intrusion detection, and secure protocols
- Regular Audits: Security assessments and vulnerability testing
Organizational Measures
- Employee Training: Regular security awareness and privacy training
- Data Minimization: Collect only necessary information
- Incident Response: Procedures for handling security breaches
- Vendor Management: Due diligence on third-party security practices
Data Retention
We retain your information for as long as necessary to provide our Service and fulfill legal obligations:
- Account Data: Retained while your account is active and for up to 7 years after closure
- Device Data: Stored for the duration of device management and up to 3 years for analytics
- Transaction Records: Kept for 7 years for accounting and legal purposes
- Support Communications: Retained for 3 years for quality assurance
You may request earlier deletion of your data, subject to legal and operational requirements.
Your Privacy Rights
Depending on your location, you may have the following rights:
Access and Portability
- Data Access: Request copies of your personal information
- Data Portability: Export your data in machine-readable format
- Account Dashboard: View and manage your information through our platform
Control and Correction
- Data Correction: Update inaccurate or incomplete information
- Privacy Settings: Control data collection and sharing preferences
- Communication Preferences: Opt-out of marketing communications
Deletion and Restriction
- Right to Deletion: Request removal of your personal information
- Processing Restriction: Limit how we use your information
- Objection Rights: Object to certain types of data processing
To exercise these rights, contact us at [privacy@iotmanager.com] or use the privacy controls in your account settings.
Cookies and Tracking
We use cookies and similar technologies to enhance your experience:
Essential Cookies
- Authentication: Maintain secure login sessions
- Security: Protect against fraud and unauthorized access
- Functionality: Remember your preferences and settings
Analytics Cookies
- Usage Analytics: Understand how you interact with our Service
- Performance Monitoring: Track system performance and errors
- A/B Testing: Test new features and improvements
Third-Party Cookies
- Integrated Services: Enable third-party integrations and widgets
- Support Tools: Customer support chat and help systems
You can control cookie preferences through your browser settings or our privacy dashboard.
International Data Transfers
Our Service operates globally, and your information may be transferred to and processed in countries other than your residence. We ensure adequate protection through:
- Adequacy Decisions: Transfers to countries with adequate protection levels
- Standard Contractual Clauses: EU-approved data transfer mechanisms
- Binding Corporate Rules: Internal policies for international transfers
- Certification Programs: Participation in recognized privacy frameworks
Children’s Privacy
Our Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware of such collection, we will delete the information promptly.
California Privacy Rights
California residents have additional rights under the California Consumer Privacy Act (CCPA):
Right to Know
- Categories of personal information collected
- Sources of personal information
- Business purposes for collection
- Third parties with whom information is shared
Right to Delete
Request deletion of personal information, subject to certain exceptions.
Right to Opt-Out
Opt-out of the sale of personal information (we do not sell personal information).
Non-Discrimination
We will not discriminate against you for exercising your privacy rights.
European Privacy Rights
For users in the European Economic Area, we comply with the General Data Protection Regulation (GDPR):
Legal Basis
We process your information based on:
- Contract Performance: To provide our Service
- Legitimate Interests: For business operations and improvements
- Consent: For specific processing activities
- Legal Compliance: To meet regulatory requirements
Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will:
- Notify Users: Email notification of material changes
- Website Notice: Post updates on our website with effective dates
- Continued Use: Your continued use constitutes acceptance of changes
- Opt-Out Option: Provide options to discontinue service if you disagree
Contact Information
For questions about this Privacy Policy or our privacy practices:
Email: [iotdevicemanager@gmail.com]
Definitions
- Personal Information: Information that identifies, relates to, or could reasonably be linked with you
- Processing: Any operation performed on personal information
- Service Provider: Third parties that process information on our behalf
- Device Data: Information generated by or collected from IoT devices
This Privacy Policy is designed to be transparent about our data practices while protecting your privacy rights. We encourage you to review this policy regularly and contact us with any questions or concerns.