At Open Deller, we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data when you use our data intelligence platform and services.
1. Information We Collect
1.1 Information You Provide
- Account Information: Name, email address, company name, job title, phone number
- Payment Information: Billing address, payment method details (processed securely through third-party processors)
- Profile Data: User preferences, settings, and customization choices
- Communications: When you contact us, we collect your messages, inquiries, and feedback
- Data You Upload: Data you process through our platform (subject to your data processing agreement)
1.2 Information We Collect Automatically
- Usage Data: Pages visited, features used, time spent, click patterns
- Device Information: IP address, browser type, operating system, device identifiers
- Cookies and Similar Technologies: Session data, authentication tokens, preference settings
- Performance Data: Platform performance metrics, error logs, system diagnostics
1.3 Information from Third Parties
- Business Partners: Data from integration partners and data providers
- Public Sources: Publicly available business information
- Authentication Services: Information from SSO providers (Google, Microsoft, etc.)
2. How We Use Your Information
2.1 Service Delivery
- Provide, maintain, and improve our platform and services
- Process your data queries and analytics requests
- Enable data integrations and API connectivity
- Provide customer support and technical assistance
2.2 Account Management
- Create and manage your account
- Authenticate users and prevent unauthorized access
- Process payments and billing
- Send service notifications and updates
2.3 Platform Improvement
- Analyze usage patterns to improve user experience
- Develop new features and capabilities
- Conduct research and data analysis
- Monitor and improve platform performance
2.4 Communication
- Send important service announcements
- Provide product updates and newsletters (with your consent)
- Respond to inquiries and support requests
- Share relevant industry insights and best practices
2.5 Legal and Security
- Comply with legal obligations and regulations
- Detect, prevent, and respond to security incidents
- Protect against fraud and unauthorized access
- Enforce our Terms of Service
3. Data Security
3.1 Security Measures
We implement industry-leading security practices to protect your data:
- Encryption: Data encrypted in transit (TLS 1.3) and at rest (AES-256)
- Access Controls: Role-based access control (RBAC) and multi-factor authentication
- Network Security: Firewalls, intrusion detection, and DDoS protection
- Regular Audits: SOC 2 Type II certified, annual security assessments
- Data Isolation: Logical separation of customer data
- Backup and Recovery: Regular backups and disaster recovery procedures
3.2 Data Processing
Your data processed through our platform remains yours. We act as a data processor and:
- Process data only according to your instructions
- Do not access customer data except for troubleshooting (with permission)
- Maintain data processing agreements (DPA) for enterprise customers
- Provide data portability and export capabilities
4. Data Sharing and Disclosure
4.1 We Share Data With
- Service Providers: Cloud hosting (AWS, Google Cloud), payment processors, analytics tools
- Business Partners: Integration partners (with your authorization)
- Legal Requirements: Law enforcement, regulators (when legally required)
- Business Transfers: Mergers, acquisitions (with notice to users)
4.2 We Do NOT
- Sell your personal data to third parties
- Share customer data with advertisers
- Use customer data to compete with you
- Disclose data without proper legal authority
5. Your Rights and Choices
5.1 Data Access and Control
- Access: Request a copy of your personal data
- Correction: Update inaccurate or incomplete information
- Deletion: Request deletion of your account and data (subject to retention requirements)
- Portability: Export your data in common formats (JSON, CSV)
- Restriction: Limit how we process your data
- Objection: Object to certain data processing activities
5.2 Communication Preferences
- Unsubscribe from marketing emails (link in every email)
- Manage notification settings in your account
- Opt out of non-essential cookies
5.3 Exercising Your Rights
Contact us at privacy@opendeller.com to exercise any of these rights. We will respond within 30 days.
6. Data Retention
- Account Data: Retained while your account is active
- Customer Data: Deleted immediately upon account termination (unless retention requested)
- Billing Records: Retained for 7 years (tax and legal requirements)
- Logs and Analytics: Retained for 90 days
- Backup Data: Deleted within 30 days of account termination
7. International Data Transfers
Open Deller operates globally. Your data may be transferred to and processed in the United States and other countries where we or our service providers operate. We ensure adequate protection through:
- Standard Contractual Clauses (SCCs) for EU data
- Data Processing Addendums (DPA)
- Compliance with GDPR, CCPA, and other regulations
8. Cookies and Tracking
8.1 Types of Cookies We Use
- Essential: Required for platform functionality
- Performance: Analytics and performance monitoring
- Functional: Remember your preferences
- Marketing: Track campaign effectiveness (with consent)
8.2 Managing Cookies
You can control cookies through browser settings or our cookie preference center. Note that blocking essential cookies may impact platform functionality.
9. Children's Privacy
Our services are not directed to individuals under 16. We do not knowingly collect data from children. If you believe we have collected child data, contact us immediately at privacy@opendeller.com.
10. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of material changes via:
- Email notification (to your account email)
- In-platform notification
- Website banner (for 30 days)
Continued use after changes constitutes acceptance of the new policy.
11. Regional Privacy Rights
11.1 California Residents (CCPA)
You have additional rights under the California Consumer Privacy Act:
- Right to know what personal information is collected
- Right to delete personal information
- Right to opt-out of sale (we do not sell data)
- Right to non-discrimination for exercising rights
11.2 European Residents (GDPR)
If you are in the EEA, UK, or Switzerland, you have rights under GDPR including:
- Legal basis for processing (contract, consent, legitimate interest)
- Data protection officer contact: privacy@opendeller.com
- Right to lodge complaints with supervisory authorities
- Automated decision-making safeguards
12. Contact Us
For privacy questions, concerns, or to exercise your rights:
- Email: privacy@opendeller.com
- Mail: Open Deller, 123 Innovation Drive, San Francisco, CA 94107, United States
- Data Protection Officer: privacy@opendeller.com