This Privacy Policy ("Policy") describes how SensoCAN ("Company", "We", "Us") collects, uses, evaluates, and protects personal information when you access our website or utilize our IoT management platform and services (collectively, the "Service").
Global B2B Notice
1. Understanding Our Roles: Controller vs. Processor
To understand how your data is handled, it is critical to distinguish between the two types of data environments within SensoCAN:
- SensoCAN as a Data Controller (Account Data): We act as the Data Controller for the personal information you provide to create an account, handle billing, and receive technical support (e.g., your name, business email, and company details).
- SensoCAN as a Data Processor (IoT Telemetry Data): We act as a Data Processor for the sensor readings, device logs, and system metrics ("Customer Data") that you route through our platform. You are the Data Controller for this IoT data, and we process it exclusively based on your instructions and configurations (like Rule Chains).
2. Information We Collect
2.1 Information You Provide to Us (Account Data)
When you register for an account, request a demo, or contact support, we collect strictly necessary business information, including your name, corporate email address, phone number, and physical billing address.
2.2 Information Collected Automatically (Telemetry Data)
When your physical IoT edge devices connect to our platform via API, MQTT, or other protocols, we automatically collect the payload data you transmit. This may include sensor values (temperature, voltage, vibration), geospatial coordinates, device IP addresses, hardware MAC addresses, and activity timestamps.
3. How We Use Your Information
We use the collected information for the following specific purposes:
- To Provide the Service: Ingesting telemetry data to populate your dashboards, evaluate your configured thresholds, and execute automated event alerts.
- Billing and Administration: Managing your subscription and verifying identity to prevent fraud.
- Platform Security: Monitoring API traffic to detect and mitigate malicious activity, unauthorized brute-force attempts, or Distributed Denial of Service (DDoS) anomalies.
4. Third-Party Sub-Processors and AI Services
We may share your data with trusted third-party service providers (Sub-processors) strictly to operate our infrastructure (e.g., cloud hosting providers).
Conversational AI Features
5. Data Retention and Your Rights
We retain Account Data for as long as your account is active. IoT Telemetry Data is retained according to the tier of your subscription plan and is automatically purged upon expiration of the temporal window.
Depending on your jurisdiction (e.g., EU, UK, California), you have specific rights regarding your personal data:
- Right to Access: You may request a copy of the personal data we hold about you.
- Right to Rectification: You may request that we correct any inaccurate data.
- Right to Erasure ("Right to be Forgotten"): You may request the deletion of your account and associated personal data.
- Right to Data Portability: You may request an export of your historical telemetry data in a structured, machine-readable format.
To exercise these rights, please submit a formal request from your registered email address to [email protected].
6. Contact Us
If you have any questions or require further clarification regarding our privacy practices, data handling algorithms, or DPA provisions, please contact our privacy compliance team at [email protected].