Privacy Policy
Last Updated: November 23, 2024
Introduction
Welcome to KeyMorphX ("we," "us," or "our"). We are committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our Android app and website.
Data Controller
For the purposes of the General Data Protection Regulation (GDPR), the data controller is:
archITex Solutions GmbH
Obersdorferstraße 29/2/5
office@architex.solutions
Categories of Personal Data We Collect
We collect the following categories of personal data:
Account Information
- Email Address: Collected when you register using your email.
- Google Account Information: Collected if you choose to sign in with your Google Account.
We adhere to the principle of data minimization and collect only the information necessary to provide and improve the Service.
Usage Data
- Service Usage Logs: Details about your interactions with our app, such as transformation counts, are collected to enforce our Fair Use Policy and improve service quality.
- Device Information: Non-identifiable data like device model and operating system version.
Transaction Data
- In-App Purchase History: Records of purchases made within the app.
Website Data
- Analytics Data: Collected via Umami Analytics to analyze website interactions.
How We Use Your Personal Data
We use your personal data for the following purposes:
- Service Provision and Maintenance: To provide, operate, and maintain our services.
- Performance Improvement: To analyze usage and improve our app and website.
- Customer Support: To respond to your inquiries and provide assistance.
- Compliance and Enforcement: To enforce our Terms of Service and comply with legal obligations.
Legal Basis for Processing Personal Data
We process your personal data based on the following legal grounds:
Contractual Necessity
Processing is necessary to perform the contract (Terms of Service) between you and us.
- Account Information: Needed to create and manage your account.
- Transaction Data: Processed under contractual necessity to fulfill in-app purchases and under legal obligation for retention as required by Austrian tax laws.
Legitimate Interests
For our legitimate interests in ensuring the security and integrity of our services, provided your rights do not override these interests.
- Usage Data: To monitor usage and prevent misuse under our Fair Use Policy.
Legal Obligation
To comply with legal and regulatory requirements.
- Transaction Records: Retained for tax and accounting purposes.
Data Storage Location
Your personal data is stored and processed within the European Union (EU), ensuring compliance with GDPR standards.
Your data will not be transferred outside the EU unless required to provide the service, in which case we ensure such transfers comply with GDPR through mechanisms like Standard Contractual Clauses.
Data Sharing and Disclosure
We do not sell or rent your personal data to third parties. We may share your information with:
- Service Providers: Trusted third-party vendors who assist in providing our services (e.g., payment processors).
- Legal Authorities: If required by law or to protect our rights, we may disclose information to governmental authorities.
Data Retention
We retain your personal data only as long as necessary for the purposes outlined in this Privacy Policy:
- Non-Purchasing Users: If your account is inactive for over one year and you have not made any in-app purchases, we will delete your personal data.
- Purchasing Users: If you have made in-app purchases, we retain your data for as long as required by Austrian law, typically up to seven years, for tax and legal compliance.
- Usage Data: Retained for up to one year to monitor and improve the service.
- Transaction Data: Retained for up to seven years as required by Austrian tax and accounting laws.
Your Rights (GDPR, CCPA, LGPD, DSG)
You have certain rights regarding your personal data under various data protection laws, including the GDPR, CCPA, LGPD, and the Austrian DSG. These rights may include:
Rights Under GDPR and DSG (Austria)
Residents of the European Economic Area (EEA) and Austria have the following rights:
- Access: Request access to the personal data we hold about you.
- Rectification: Request correction of inaccurate or incomplete data.
- Erasure: Request deletion of your personal data under certain conditions.
- Restriction of Processing: Request limitation of processing your data.
- Data Portability: Receive your data in a structured, commonly used, and machine-readable format.
- Objection: Object to the processing of your personal data based on legitimate interests.
- Consent Withdrawal: Withdraw consent where processing is based on consent.
Rights Under CCPA (California)
If you are a resident of California, you have the following rights under the California Consumer Privacy Act (CCPA):
- Right to Know: Request information about the categories and specific pieces of personal data we have collected about you.
- Right to Delete: Request deletion of personal data we have collected from you.
- Right to Opt-Out: Opt-out of the sale of your personal data (Note: We do not sell personal data).
- Non-Discrimination: Receive equal service and price, even if you exercise your privacy rights.
Rights Under LGPD (Brazil)
If you are a resident of Brazil, you have the following rights under the Lei Geral de Prote¸c˜ao de Dados (LGPD):
- Confirmation of Processing: Confirm whether we process your personal data.
- Access: Access your personal data.
- Correction: Request correction of incomplete, inaccurate, or outdated data.
- Anonymization, Blocking, or Deletion: Request anonymization, blocking, or deletion of unnecessary or excessive data.
- Data Portability: Receive your data in a structured format.
- Deletion of Processed Data: Request deletion of personal data processed with your consent.
- Information About Sharing: Obtain information about entities with whom we have shared your data.
- Consent Withdrawal: Withdraw consent at any time.
- Review of Automated Decisions: Request review of decisions made solely based on automated processing.
How to Exercise Your Rights
To exercise these rights, please contact us at office@architex.solutions. We will respond to your request in accordance with applicable laws.
Right to Lodge a Complaint
If you believe that our processing of your personal data infringes data protection laws, you have the right to lodge a complaint with a supervisory authority. In Austria, you may contact:
Austrian Data Protection Authority
Barichgasse 40-42
1030 Vienna
Telephone: +43 1 52 152-0
Email: dsb@dsb.gv.at
Website: https://www.dsb.gv.at/
Security Measures
We implement state-of-the-art security measures to protect your personal data, including encryption of data in transit and at rest, strict access controls, and regular security audits to identify and mitigate potential risks.
Cookies and Tracking Technologies
Umami Analytics: We use Umami Analytics on our website to analyze user interactions. Umami does not use cookies, and all collected data is fully anonymized. No IP addresses or other personal data are stored. This ensures compliance with GDPR and other applicable privacy regulations while providing insights into website performance.
Children's Privacy
Our services are intended for general audiences. We do not knowingly collect personal data from children under the age of 13 (or the applicable age of consent in their country) without parental consent. If you believe we have collected such data, please contact us to have it removed.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make significant changes to this Privacy Policy, we will notify you via email and provide at least 30 days for you to review and, if necessary, opt-out of continued use of our services. The updated Privacy Policy will also be posted on this page with an updated revision date.
Use of Open-Source Software
Our app includes open-source software licensed under the Apache License 2.0. For more information, please refer to the Apache License.
Provision of Personal Data
Providing your personal data is necessary to enter into a contract with us. Without this data, we may not be able to provide you with certain services or features.
Automated Decision-Making
We do not engage in automated decision-making processes, including profiling, that produce legal effects concerning you or significantly affect you. Any profiling conducted is limited to operational purposes, such as improving service performance.
Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at:
archITex Solutions GmbH
Obersdorferstraße 29/2/5
office@architex.solutions