Privacy Policy of Otoolkit
1. Introduction
This privacy policy describes how Otoolkit, operated by TIPIT SRL, collects, uses, stores, and shares personal data of its users. We are committed to complying with applicable regulations, including the General Data Protection Regulation (GDPR).
2. Data Collected
We collect the following personal data:
a) Billing Data
- First name
- Last name
- Email address
- Postal address
- Company name (if applicable)
- Company number (if applicable)
b) Login Data
- Email address (used for account login)
c) Usage Data
- Service usage history, stored to provide users with a personalized dashboard for analyzing their usage.
d) Statistical Data
- Traffic data collected via Google Analytics.
3. Purpose of Data Processing
The data collected is used for the following purposes:
- Billing and payment management: Billing data is necessary for issuing invoices and processing payments.
- Account access and management: The email address is used for account access and for sending transactional emails.
- Personalized communications: Emails sent to users are personalized with their first name (e.g., "Hello [First Name]").
- Dashboard functionality: Usage data is used to provide a personalized dashboard for users.
- Statistical analysis: Traffic data collected via Google Analytics is used to analyze and improve website performance.
4. Data Retention
- Personal data is retained as long as the user's account is active. If an account is deleted, the data is retained for an additional 30 days before permanent deletion.
- Billing data is retained for 10 years, in compliance with Belgian tax law.
- Usage data may be retained indefinitely while the account remains active. However, a policy for automatic deletion after 2 to 5 years may be implemented in the future.
- Google Analytics data will be configured for automatic deletion after 14 months.
5. Data Sharing with Third Parties
We share personal data with third parties only in the following cases:
- Stripe: Billing data is shared with Stripe, our payment service provider. Stripe handles all payment-related data and operates through its European subsidiary. No data is processed outside the EU.
- Google Analytics: Traffic data is analyzed via Google Analytics for statistical purposes only.
6. User Rights
In accordance with the GDPR, users have the following rights:
- Right of access: Obtain a copy of their personal data.
- Right of rectification: Request correction of inaccurate data.
- Right of deletion: Request deletion of their personal data.
- Right to object: Object to certain types of data processing.
- Right to data portability: Receive their personal data in a structured format.
- Right to restrict processing: Request the limitation of data processing in certain cases.
Users can exercise their rights by sending an email to contact@otoolkit.app.
7. Data Security
We implement appropriate technical and organizational measures to protect personal data against unauthorized access, loss, destruction, or disclosure.
8. Notification in Case of Data Breach
In the event of a data breach, we will promptly inform affected users of the extent of the issue and take necessary measures to mitigate its impact. We will also comply with our obligation to notify the Data Protection Authority (DPA) in accordance with the GDPR.
9. Changes to the Privacy Policy
We may update this privacy policy to reflect changes in our service or applicable regulations. Users will be informed of any substantial changes.
Last updated: January 7, 2025