Back to Home
At KONNETEC ("we," "us," or "our"), we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data when you use our AI-powered vision detection and analysis platform.
1. Information We Collect
1.1 Information You Provide
- Account Information: Name, email address, company name, phone number, and password when you create an account.
- Payment Information: Billing address and payment details processed securely through our payment processor (Stripe).
- Communication Data: Information you provide when contacting our support team or through our contact forms.
- Security Credentials: Optional multi-factor authentication (MFA) settings including TOTP secrets and backup recovery codes if you enable two-factor authentication for enhanced security. MFA secrets are encrypted and backup codes are stored securely.
1.2 Automatically Collected Information
- Usage Data: API calls, detection requests, timestamps, feature usage patterns, and AI processing metrics for billing and service delivery.
- Device Information: IP address, browser type, operating system, and device identifiers.
- Log Data: Application logs, error reports, performance metrics, and security events.
1.3 Images and Detection Data
- Uploaded Images: Photos and images you upload for license plate recognition, vehicle detection, or image analysis.
- Detection Results: License plate numbers, vehicle information, object detection results, and confidence scores.
- ROI Data: Region of interest coordinates and selection preferences.
2. How We Use Your Information
We use the collected information for the following purposes:
- Service Delivery: Process your detection requests, provide analysis results, and maintain platform functionality.
- Account Management: Create and manage your account, authenticate users, and handle billing.
- Platform Improvement: Analyze usage patterns to improve accuracy, performance, and user experience.
- Security: Monitor for unauthorized access, prevent fraud, and ensure system security.
- Support: Respond to your inquiries, troubleshoot issues, and provide customer support.
- Communications: Send service updates, security alerts, and important notifications (with your consent for marketing communications).
- Compliance: Meet legal obligations and enforce our Terms of Service.
3. Data Retention
We retain your information for different periods based on the type of data:
- Account Data: Retained while your account is active and for a reasonable period afterward for legal compliance.
- Detection Images: Stored as part of your detection history. Authorized users can delete records, which are either deactivated (soft delete) or permanently removed based on user action.
- Application Logs: Automatically cleaned up based on your configured retention policy (default 90 days with 24-hour grace period).
- Backup Data: Maintained for disaster recovery purposes and deleted according to our backup retention schedule.
4. Data Sharing and Disclosure
4.1 We Do NOT Sell Your Data
We do not sell, rent, or trade your personal information or uploaded images to third parties for marketing purposes.
4.2 Service Providers
We may share data with trusted service providers who assist us in operating our platform:
- AI Providers: Third-party AI services for image analysis and detection processing. Uploaded images are sent to these providers to generate detection results. If our primary AI provider is unavailable, images may be automatically sent to a configured backup provider to ensure service continuity.
- Cloud Infrastructure: Secure hosting and storage providers for platform operation.
- Payment Processors: Stripe for secure payment and subscription management.
- Analytics Services: Usage analytics and performance monitoring tools to improve service quality.
4.3 Webhooks
If you configure webhooks, detection results will be sent to your specified endpoints. You are responsible for the security and privacy practices of your webhook destinations.
4.4 Legal Requirements
We may disclose your information if required by law, court order, or government regulation, or to protect our rights, safety, or property.
5. Data Security
We implement industry-standard security measures to protect your data:
- Encryption: Data encrypted in transit using TLS/SSL and at rest using industry-standard encryption protocols.
- Access Control: Role-based access control (admin, creator, and viewer roles) with tenant isolation ensuring users can only access their organization's data.
- Authentication: Secure authentication with strong password hashing (bcrypt) and optional multi-factor authentication (TOTP) for enhanced account protection. MFA secrets never exposed in logs or API responses. Administrators can reset MFA for locked-out users with password confirmation.
- API Security: API key authentication, rate limiting, and request validation to prevent abuse.
- Network Security: Firewall protection, security headers, and DDoS mitigation.
- Monitoring: Comprehensive audit logs, security event tracking, and automated anomaly detection.
- Tenant Isolation: Complete data separation between organizations with strict access controls preventing cross-tenant data access.
6. Your Rights and Choices
You have the following rights regarding your personal information:
- Access: Request a copy of your personal data we hold.
- Correction: Update or correct inaccurate information through your account settings.
- Deletion: Request deletion of your account and associated data (subject to legal retention requirements).
- Export: Download your detection history in CSV or PDF format.
- Opt-Out: Unsubscribe from marketing communications while continuing to receive essential service notifications.
- Data Portability: Request your data in a machine-readable format.
- Object: Object to certain data processing activities.
To exercise these rights, contact us at privacy@konnetec.com.
7. Cookies and Tracking Technologies
We use cookies and similar technologies for:
- Authentication: Maintain your login session securely.
- Preferences: Remember your settings and preferences.
- Analytics: Understand how users interact with our platform.
- Security: Prevent fraud and ensure system security.
You can control cookies through your browser settings, but disabling certain cookies may affect platform functionality.
8. Third-Party Services
Our platform integrates with third-party services to provide functionality. Your data may be shared with these services as necessary:
- AI Processing: Images you upload are sent to third-party AI services for analysis and detection. These services are subject to their respective privacy policies.
- Payment Processing: Stripe processes all payment transactions. Your payment information is handled securely according to Stripe's privacy policy and PCI DSS compliance standards.
- Content Delivery: Public CDN services for fonts, icons, and JavaScript libraries.
We carefully vet all third-party providers and recommend reviewing their privacy policies. We are not responsible for the privacy practices of third-party services.
9. International Data Transfers
Your data may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place to protect your data according to this Privacy Policy and applicable data protection laws.
10. Children's Privacy
Our service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us immediately.
11. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of significant changes by:
- Posting the updated policy on our website with a new "Last Updated" date
- Sending an email notification to registered users
- Displaying an in-app notification upon login
Your continued use of our service after changes constitute acceptance of the updated Privacy Policy.
12. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information we collect, use, disclose, and sell
- Right to request deletion of your personal information
- Right to opt-out of the sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising your privacy rights
13. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR), including the right to access, rectification, erasure, restriction of processing, data portability, and to object to processing.
14. Data Breach Notification
In the unlikely event of a data breach that affects your personal information, we will:
- Notify affected users within 72 hours via email and in-app notification
- Provide clear information about what data was affected and potential risks
- Outline steps we are taking to mitigate harm and prevent future breaches
- Provide guidance on protective measures you can take
- Comply with all applicable data breach notification laws
This Privacy Policy is effective as of the date stated above. By using KONNETEC, you acknowledge that you have read and understood this Privacy Policy.