IoT SATA SDN BHD Mobile Privacy Policy

Effective Date: 03/01/22
Updated: 01/01/25

IoT Sata Sdn Bhd and subsidiaries ("we", "us", "our", "IoT Sata Sdn Bhd") are committed to protecting your privacy. This Privacy Policy (“Policy”) describes our practices in connection with information privacy on Personal Data we process through your individual use of the following services, products, and related mobile applications (collectively, the “Products”).

If you do not want to provide your profile data when you start to use any of the Services, you may use the App without login or creating an account, and you may still use certain IoT Sata Sdn Bhd services, such as searching and browsing few features on the Services. At this moment, we will not collect Personal Data about account or profile, and the collected data will be limited to those you have authorized to be collected for purpose of using the additional functions of the App and/or the Smart Devices, as well as corresponding usage information. However, if the Services you request or purchase are based on your account, please go to the registration/login page for guidance.

IDMS Mobile Application

Before you use our Products, please carefully read through this Policy and understand our purposes and practices of collection, processing of your Personal Data, including how we use, store, share and transfer Personal Data. In the Policy you will also find ways to execute your rights of access, update, delete or export your Personal Data.

When you accept this Policy when you register with your Personal Data, or if you start to use our Products and does not expressly object to the contents of this Policy, we will consider that you fully understand and agree with this Policy. If you have any question regarding this Policy, please do not hesitate to contact us via: info@iotsata.com

For other branded mobile applications powered by IoT Sata Sdn Bhd, our Clients control all the Personal Data collected through our products. We collect the information under the direction of our Clients and the processing of such information shall be limited to the purpose of providing the service for which our Clients has engaged us. If you are a customer of one of our Clients and you no longer like to be contacted by one of our Clients that use our service, please contact the Client that you interact with directly.

Definition

In this Policy, Personal Data means information generated, collected, recorded and/or stored, electronically or otherwise, that can be used to identify an individual or reflect the activity of an individual, either from that information alone, or from that information and other information we have access to about that individual.

Personal Sensitive Data includes personal biometric information, communication records and contents, health information, transaction information, and precise location information. When we collect Personal Sensitive Data from you, we will generate an explicit notification for your consent before we collection personal Sensitive data about you.

Smart Devices refers to those computing devices produced or manufactured by hardware manufacturers, with human-machine interface and the ability to transmit data that connect wirelessly to a network. This includes smart meter, smart home appliances, smart wearable devices, smart air cleaning devices, etc.

Apps refers to those mobile applications developed by IoT Sata Sdn Bhd that provide users remote control to Smart Devices and with the ability to connect to the supplier IoT Platform.

What Personal Data do we collect

In order to provide our services to you, we will ask you to provide necessary Personal Data that is required to provide those services. If you do not provide your Personal Data, we may not be able to provide you with our products or services.

1. Information You Voluntarily Provide Us

Account: When you register an account with us, we may collect your name and contact details, such as your email address, phone number, user name, and login credentials. During your interaction with our Products, we may further collect your nickname, profile picture, country code, language preference or time zone information into your account.

Feedback: When using feedback and suggestion features in our Products, we will collect your email address, mobile phone number and your feedback content to address your problems and solve device problems on a timely basis.

Information based on additional functions: In order to offer you with more convenient and higher-quality Services with optimized user experiences, we may collect and use certain information if you consent to use additional functions in the App. Please note, if you do not provide such information, you may continue to use basic Services of the App and connected Smart Devices, but certain features based on these additional functions may not be available. These additional functions may include:

1) Additional functions based on location information:

When you enable the location-based functions through permission settings on your mobile device, we will collect and process your location information to enable these functions, such as pairing with your Smart Devices. Also, we may collect information about your real-time precise or non-precise geo-location when you use certain Smart Devices or the Services, such as robot cleaner and weather service.

Based on your consent, when you enable the geo-fence feature, your location information will be generated and shared with Google Maps services. Please note that Google has corresponding data protection measures, which you may refer to Google Data Protection Terms for more details: https://privacy.google.com/businesses/gdprservices/. You may restrict such use of your location information by managing the permission settings in the Services, upon which we will cease to collect and use your location information.

2) Additional services based on camera:

You may use the camera to scan the code by turning on the camera permission to pair with a Smart Device, take video, etc. Please be aware that even if you have agreed to enable the camera permission, we will only obtain information when you actively use the camera for scanning codes, video recording, etc.

3) Additional services for accessing and uploading pictures/videos based on photo albums (picture library/video library):

You can use this function to upload your photos/pictures/videos after turning on the photo album permission, so as to realize functions such as changing the avatar, reporting device usage problems by providing photo proofs, etc. When you use the photos and other functions, we will not recognize this information; however, when you report a device usage problem, we may use the photos/pictures you upload to locate your problem.

4) Additional services related to microphone-based services:

You can use the microphone to send voice information after turning on the microphone permission, such as shooting videos, waking up the voice assistant, etc. For these functions, we will collect your voice information.

5) Additional services based on storage permissions:

The purpose is to ensure stable operation of the App by enabling the App to write or read information related to crash logs, App updates, and so on.

6) Additional services based on Bluetooth-related functions:

You can enable Bluetooth functions after granting permission to pair the App with Smart Devices, enabling the connection between the App and Smart Devices so that they can interact with each other. Bluetooth permission may also be used for scanning and connecting to nearby devices.

2. Information We Collect Automatically

We may also collect information about your device and how you and your device interact with our Products. The types of information we collect may include:

3. Smart Device Related Information

When you use Smart Devices connected to our Products, we may collect information such as the name, ID, online status, activation time, firmware version, and upgrade information of the device.

Purposes and Legal Basis for Processing Personal Data

The purpose for which we process your Personal Data is:

We only process your Personal Data where we have a lawful basis, such as with your consent, for performance of a contract, compliance with a legal obligation, or legitimate interests that do not override your privacy rights.

Sharing Personal Data

We do not sell any Personal Data to third parties. We may disclose your Personal Data in the following circumstances:

Storage and International Data Transfers

We store your Personal Data on secure servers in various jurisdictions. By using our services, you understand and agree that your information may be transferred to and stored in countries outside your country of residence.

We ensure that such transfers are compliant with applicable data protection laws, and we provide appropriate safeguards such as data processing agreements and standard contractual clauses.

Retention of Personal Data

We retain your Personal Data for as long as necessary to fulfill the purposes for which it was collected, including the purposes of satisfying any legal, regulatory, tax, accounting, or reporting requirements.

When we no longer need to use your Personal Data and there is no legal or business need to retain it, we will either delete or anonymize it.

Security of Personal Data

We use commercially reasonable physical, administrative, and technical safeguards to preserve the integrity and security of your Personal Data. However, no method of transmission over the Internet or method of electronic storage is completely secure.

If you believe that your interaction with us is no longer secure (for example, if you feel that your account has been compromised), please contact us immediately.

Your Rights

Depending on your location, you may have certain rights with respect to your Personal Data under applicable data protection laws. These may include:

You can exercise these rights by contacting us at info@iotsata.com. We may request additional information from you to verify your identity and process your request.

Children’s Privacy

Our services are not directed to children under the age of 13 (or equivalent minimum age in relevant jurisdiction). We do not knowingly collect Personal Data from children under this age. If we discover that we have inadvertently collected Personal Data from a child under the age of 13, we will take steps to delete the data as soon as possible.

Changes to This Policy

We may update this Privacy Policy from time to time in response to changing legal, technical, or business developments. When we update our Privacy Policy, we will take appropriate measures to inform you, consistent with the significance of the changes we make.

You can see when this Privacy Policy was last updated by checking the “Updated” date at the top of this Policy.

Contact Us

If you have any questions or concerns about our use of your Personal Data, you can contact us using the following details:

Email: info@iotsata.com

You may:

Withdrawal of consent: We will exercise your privacy right to withdraw consent through the following approaches:

  1. For privacy permissions acquired through device system settings, your consent can be withdrawn by changing device permissions, including location, camera, photo album (picture library/video library), microphone, Bluetooth settings, notifications and other related functions;
  2. In the marketing communications that you agree to, the information we send to you contains instructions that allow you to withdraw your consent in accordance with the “unsubscribe” method described in the information;
  3. Unbind the Smart Device through the app, and the information related to the Smart Device will not be collected;
  4. By using product with the visitor mode, we will not collect any personal data about you;

Security

We use commercially reasonable physical, administrative, and technical safeguards to preserve the integrity and security of your Personal Data. IoT Sata Sdn Bhd provides various security strategies to effectively ensure data security of user and device. As for device access, IoT Sata Sdn Bhd proprietary algorithms are employed to ensure data isolation, access authentication, applying for authorization. As for data communication, communication security algorithms and transmission encryption protocols are adopted to ensure commercial level information encryption transmission based on dynamic keys are supported. As for data processing, strict data filtering and validation and complete audit data audit are applied. As for data storage, all your identifiable information of users will be safely encrypted for storage. If you have reason to believe that your interaction with us is no longer secure (for example, if you feel that the security of any account you might have with us has been compromised), you could immediately notify us of the problem by emailing info@iotsata.com.

Data Retention

We process your Personal Data for the minimum period necessary for the purposes set out in this Privacy Policy, unless there is a specific legal requirement for us to keep the data for a longer retention period. We determine the appropriate data retention period based on the amount, nature, and sensitivity of your Personal Data, and after the retention period ends, we will destroy your Personal Data.

Children’s Privacy

Protecting the privacy of young children is especially important to us. The Services are not directed to individuals under the age of thirteen (13) (or such other age provided by applicable law in your country/region of residence), and we request that these individuals do not provide any Personal Data to us. We do not knowingly collect Personal Data from anyone under the age of thirteen (13) unless we first obtain permission from that child’s parent or legal guardian. If we become aware that we have collected Personal Data from anyone under the age of thirteen (13) without permission from that child’s parent or legal guardian, we will take steps to remove that information.

Changes to this Privacy Policy

We may update this Privacy Policy to reflect changes to our information practices. If we make any material changes we will notify you by email (sent to the e-mail address specified in your account) or by means of a notice in the mobile applications prior to the change becoming effective. We encourage you to periodically review this page for the latest information on our privacy practices.

Contact Us

If you have any questions about our practices or this Privacy Policy, please contact us as follows:

IOT SATA SDN BHD
TGI-2, UPM-MTDC TECHNOLOGY CENTRE UNIVERSITI PUTRA MALAYSIA, 43400
SERDANG SELANGOR DARUL EHSAN, MALAYSIA.
info@iotsata.com