Privacy Policy
Last updated: June 18, 2024
1. Information We Collect
JoinGuard ("we," "our," or "us") collects various types of information to provide, maintain, and improve our network security services. We are committed to transparency about our data collection practices and your privacy rights.
Network Data
- Device MAC addresses, hardware fingerprints, and manufacturer identifiers
- DHCP request logs, network join events, and connection timestamps
- Device classification data, risk scoring metrics, and threat assessments
- Network traffic patterns, bandwidth usage, and behavioral analytics
- IP address assignments, subnet configurations, and network topology data
- Security event logs, incident reports, and response actions taken
Account Information
- Name, email address, phone number, and business contact information
- Billing address, payment method details, and subscription information
- Account preferences, notification settings, and security configurations
- Organization details, role information, and access permissions
- Support ticket history, communication records, and feedback
Usage Data
- Service usage statistics, session duration, and feature utilization metrics
- Error logs, diagnostic information, and system performance data
- User interface interactions, click patterns, and navigation behavior
- Device information, browser type, operating system, and IP addresses
- Geographic location data (country/region level only)
Automatically Collected Information
- Cookies, web beacons, and similar tracking technologies
- Log files, server data, and technical information about your connection
- Analytics data from third-party services (anonymized where possible)
2. How We Use Your Information
We process your information based on legitimate business interests, contractual necessity, legal compliance, and your consent where required. Our primary uses include:
Service Provision
- Delivering real-time network security monitoring and threat detection services
- Generating personalized security reports, alerts, and recommendations
- Maintaining and improving our AI algorithms and detection accuracy
- Processing automated security responses and incident management
Business Operations
- Account creation, authentication, and access management
- Billing processing, subscription management, and payment collection
- Customer support, technical assistance, and troubleshooting
- Service improvements, new feature development, and product research
Legal and Security
- Compliance with legal obligations and regulatory requirements
- Fraud prevention, security monitoring, and abuse detection
- Protecting our rights, property, and the safety of our users
- Responding to legal requests, court orders, and law enforcement
3. Data Storage and Security
We employ comprehensive security measures designed to protect your information against unauthorized access, alteration, disclosure, or destruction:
Technical Safeguards
- AES-256 encryption for data at rest and TLS 1.3 for data in transit
- Multi-factor authentication and role-based access controls
- Network segmentation, firewalls, and intrusion detection systems
- Regular security audits, penetration testing, and vulnerability assessments
Operational Safeguards
- SOC 2 Type II compliant data centers with 24/7 monitoring
- Employee background checks and comprehensive security training
- Incident response procedures and breach notification protocols
- Data retention policies and secure deletion procedures
- Regular backup procedures and disaster recovery planning
4. Data Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties for marketing purposes. We may share information only in the following limited circumstances:
Authorized Sharing
- With your explicit written consent or at your direction
- With authorized users within your organization based on access permissions
- With trusted service providers under strict data processing agreements
Legal Requirements
- To comply with applicable laws, regulations, or legal processes
- In response to valid court orders, subpoenas, or government requests
- To protect our rights, property, safety, or that of our users or the public
- To investigate fraud, security breaches, or violations of our terms
Business Transfers
- In connection with mergers, acquisitions, or asset sales (with notice)
- During due diligence processes under confidentiality agreements
5. Your Rights and Choices
Depending on your location and applicable laws, you may have the following rights regarding your personal information:
Access and Control Rights
- Right to access: Request copies of your personal information
- Right to rectification: Correct inaccurate or incomplete information
- Right to erasure: Request deletion of your personal information
- Right to portability: Export your data in a machine-readable format
- Right to restriction: Limit how we process your information
- Right to object: Opt-out of certain processing activities
Communication Preferences
- Opt-out of marketing communications while maintaining service notifications
- Choose notification frequency and delivery methods
- Update contact preferences and communication settings
Exercising Your Rights
To exercise these rights, contact us at [email protected]. We will respond within 30 days and may require identity verification to protect your information.
6. Data Retention
We retain your information only as long as necessary to provide our services and comply with legal obligations:
- Account information: Retained while your account is active plus 7 years for legal compliance
- Network security data: Retained for 2 years to maintain threat intelligence effectiveness
- Billing records: Retained for 7 years as required by financial regulations
- Support communications: Retained for 3 years for quality assurance
- Marketing data: Retained until you opt-out or 5 years of inactivity
- Legal hold data: Retained as required by ongoing legal proceedings
7. Cookies and Tracking Technologies
We use cookies, web beacons, and similar technologies to provide and improve our services. These technologies help us:
- Authenticate users and prevent fraudulent use of accounts
- Remember your preferences and settings
- Analyze usage patterns and improve our services
- Provide personalized content and recommendations
- Measure the effectiveness of our marketing campaigns
For detailed information about our cookie usage and your choices, please see our Cookie Policy.
8. International Data Transfers
JoinGuard operates globally, and your information may be transferred to and processed in countries other than your own, including the United States. We ensure appropriate safeguards are in place:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions for transfers to countries with adequate protection
- Binding Corporate Rules for transfers within our corporate group
- Your explicit consent for transfers where required by law
- Certification under recognized privacy frameworks
9. Third-Party Services
Our service integrates with various third-party services and platforms. These integrations are governed by separate privacy policies:
- Payment processors: Stripe, PayPal (for billing and subscription management)
- Analytics services: Google Analytics (anonymized data collection)
- Customer support: Zendesk (for support ticket management)
- Cloud infrastructure: AWS, Google Cloud (for secure data processing)
- Email services: SendGrid (for transactional and marketing emails)
10. Children's Privacy
Our services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete such information promptly.
11. Data Breach Notification
In the event of a data breach that poses a risk to your rights and freedoms, we will:
- Notify relevant supervisory authorities within 72 hours where required
- Inform affected users without undue delay when high risk is involved
- Provide clear information about the nature and scope of the breach
- Describe the measures taken to address the breach and prevent recurrence
- Offer guidance on steps you can take to protect yourself
12. Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes:
- We will update the "Last updated" date at the top of this policy
- Material changes will be communicated via email or prominent website notice
- We will provide a summary of key changes when significant updates occur
- Continued use of our services after changes constitutes acceptance
- You may request information about recent changes by contacting us
13. Contact Us
If you have any questions about this Privacy Policy, our data practices, or wish to exercise your privacy rights, please contact us:
Email: [email protected]
Phone: +1 (929) 638-2519
Address: 5157 Shirley Ave, Jacksonville, FL 32210, USA
Data Protection Officer: [email protected]
We are committed to resolving privacy concerns promptly and will respond to your inquiry within 30 days.