Privacy Policy
Introduction
This Privacy Policy explains how IXAAI collects, uses, stores, and shares your personal data when you interact with our services. It is designed to help you understand your rights regarding the information we collect and to outline our commitment to data protection and privacy across all our solutions and services. This policy applies to all services provided by IXAAI, across all jurisdictions where we operate.
Given our global presence, IXAAI complies with regional data protection laws, including but not limited to the GDPR (EU), CCPA (California), LGPD (Brazil), APPI (Japan), PDPA (Singapore), and other applicable regulations. This policy covers our data processing practices within the EU, North America, Japan, Singapore, Australia, the UK, and Switzerland, ensuring compliance across all these regions.
For the purposes of this Privacy Policy:
- 'Data Controller' refers to IXAAI, which determines the purposes and means of processing personal data.
- 'Processor' is any third party that processes personal data on behalf of IXAAI.
- 'Personal Data' refers to any information relating to an identified or identifiable individual, as defined by applicable data protection laws.
For further details, please refer to the definitions and terms applicable under each jurisdiction. For any inquiries, [contact us](https://ixaai.com/information).
Data Controller and Contact Information
The data controller responsible for your personal data is IXAAI, which determines the purposes and means of processing personal data collected through our services and solutions. IXAAI is committed to ensuring that your data is handled in compliance with all applicable data protection laws.
If you have any questions or concerns regarding this Privacy Policy or your personal data, please [contact us](https://ixaai.com/information). Our dedicated team will respond to your inquiries promptly and provide assistance as needed.
In compliance with data protection regulations, IXAAI has appointed a Data Protection Officer (DPO) to oversee data privacy matters and ensure compliance across all jurisdictions. Depending on local requirements, IXAAI may also designate representatives within specific regions. For further information or to reach our DPO, please [contact us](https://ixaai.com/information).
Types of Personal Data Collected
We collect information that can identify you, such as your name, username, and email address. This data is essential to provide you with access to our services and for account-related communication.
This includes contact information such as your mailing address, phone number, and other details that allow us to communicate with you regarding our services, support, and updates.
If applicable, we may collect financial data such as billing information, payment details, and transaction records to facilitate service payments and manage account-related financial activities securely.
We collect technical information to ensure optimal functionality and security of our services. This includes IP addresses, device type, browser type, operating system, and other details that help us manage service access and performance.
Usage data includes information about how you interact with our services, such as pages viewed, interactions with features, and log data. This data helps us analyze and improve user experience and service functionality.
In limited cases, we may collect sensitive data as permitted by law and with explicit user consent, including biometric data or data related to specific preferences. This data is handled with additional safeguards to ensure compliance with privacy regulations.
Legal Basis for Data Processing
In cases where consent is required, we will obtain your explicit permission before collecting or processing your data. You have the right to withdraw your consent at any time, which will not affect the lawfulness of data processing conducted prior to the withdrawal.
We process personal data as necessary to fulfill our contractual obligations to you, including providing and managing our services. This data processing is essential for us to deliver our solutions effectively.
IXAAI is required to process certain personal data to comply with legal obligations, including those related to financial regulations, reporting, and compliance with applicable laws across jurisdictions.
We may process data based on our legitimate interests, provided these interests are not overridden by your data protection rights. This includes processing for purposes such as improving our services, enhancing security, and conducting business analytics.
Our data processing practices comply with regional regulations such as GDPR (EU), CCPA (California), APPI (Japan), PDPA (Singapore), and other relevant laws. We ensure that lawful bases for processing meet the specific requirements of each jurisdiction in which we operate.
Purpose of Data Collection and Processing
We collect and process your data to provide, operate, and manage the services you request. This includes account creation, access management, service delivery, and support for our AI solutions.
Your data is used to enhance and improve our services, including performing analytics to understand how our solutions are used and to identify areas for optimization. This helps us provide a better experience and develop new features.
With your consent, we may use your information to send you promotional content and marketing communications relevant to our services. You have the option to opt out of marketing communications at any time.
We use data to ensure the security of our systems and services, including monitoring for fraudulent activities, maintaining service integrity, and complying with regulatory and legal obligations.
Your data is essential for providing customer support, managing inquiries, and communicating service-related information. This includes notifications about service updates, policy changes, and responses to your support requests.
User Rights and How to Exercise Them
You have the right to request access to the personal data we hold about you. This allows you to understand what data we collect, how it is used, and with whom it may be shared. To request access, please [contact us](https://ixaai.com/information).
If any of your personal data is inaccurate or incomplete, you have the right to request corrections. This helps ensure that the information we hold about you is accurate and up-to-date. To request rectification, please [contact us](https://ixaai.com/information).
You may request the deletion of your personal data under certain conditions, such as if the data is no longer needed for the purposes it was collected, or if you withdraw consent. IXAAI will erase your data where legally permissible and in accordance with our data retention policies.
You may request that we restrict the processing of your data under certain circumstances, such as if you contest the accuracy of the data or object to its processing. Restricted data will only be processed with your consent or for specific legal reasons. To request restriction, please [contact us](https://ixaai.com/information).
You have the right to receive your personal data in a structured, commonly used, and machine-readable format, and to request the transfer of this data to another controller where feasible. To request data portability, please [contact us](https://ixaai.com/information).
You have the right to object to the processing of your personal data if it is processed based on legitimate interests or for direct marketing purposes. If you object, we will cease processing unless we demonstrate compelling legitimate grounds. To exercise this right, please [contact us](https://ixaai.com/information).
Depending on your jurisdiction, you may have additional rights. For instance, users in California have rights under CCPA, such as the right to know, delete, and opt out of data sales. Please refer to specific jurisdictional rights or [contact us](https://ixaai.com/information) for assistance in exercising these rights.
To exercise any of your rights, please submit a request by [contacting us](https://ixaai.com/information). We will respond to your request within the timeframes required by applicable law and may ask for verification to protect your privacy. We are committed to fulfilling these requests promptly and in compliance with legal obligations.
Consent Management and Withdrawal
For certain data processing activities, we rely on your consent to collect and use your personal information. By using our services and providing your data, you consent to these processing activities. Consent is required for processing specific data categories or for particular purposes, such as marketing communications or sensitive data handling, where applicable.
You have the right to withdraw your consent at any time. This means you can change your preferences or opt out of previously agreed-to data collection and processing activities. Withdrawal of consent will not affect the lawfulness of processing based on consent before its withdrawal.
If you withdraw your consent, certain features or services that require your data may be limited or unavailable to you. However, you will still have access to services that do not require consent-based processing. For assistance with withdrawing consent, please [contact us](https://ixaai.com/information).
Automated Decision-Making and Profiling
Our services may include automated decision-making processes to enhance user experience and improve service delivery. Automated decisions are made based on specific algorithms designed to provide personalized recommendations, detect fraudulent activity, or streamline service functionalities.
Profiling involves analyzing data patterns to provide tailored experiences, such as content recommendations, targeted notifications, or customized services. Profiling helps us better understand user preferences and improve service relevancy, while also identifying trends and insights for operational improvement.
You have the right to object to automated decision-making processes, including profiling, if these decisions produce legal or similarly significant effects on you. You may request human intervention, express your point of view, or contest the decision. To exercise these rights, please [contact us](https://ixaai.com/information).
Data Sharing and Third-Party Disclosure
We may share your data with trusted third-party processors who assist in delivering our services, such as cloud storage providers, analytics platforms, payment processors, and technical support partners. These third parties process data only as instructed by IXAAI and are required to maintain confidentiality and security.
Data sharing is conducted to ensure the proper functioning of our services, to analyze service performance, and to enhance user experience. Your data may be shared for purposes like infrastructure management, fraud prevention, and customer support, as well as to comply with legal or regulatory requirements.
We require all third-party processors to adhere to strict data protection policies through contractual agreements that ensure data is handled securely, confidentially, and in compliance with relevant data protection laws. This includes provisions for data access control, incident response, and data breach notifications.
In certain circumstances, we may disclose your personal data to law enforcement agencies, regulators, or other entities if required by law or in response to valid legal requests, such as subpoenas or court orders. We will ensure that any such disclosures are limited to what is strictly necessary and permitted by applicable laws.
International Data Transfers
Due to the global nature of our services, your personal data may be transferred to and stored in countries outside of your home jurisdiction, including countries where data protection laws may differ. These transfers are necessary to provide seamless services and ensure consistent service quality across regions.
When transferring data internationally, we implement safeguards to protect your data in compliance with applicable laws. These measures may include the use of Standard Contractual Clauses (SCCs), Binding Corporate Rules (BCRs), or other legally accepted transfer mechanisms to ensure that your data remains secure and is treated with a high level of protection.
In cases where your data is transferred outside of your home country, we ensure that all necessary steps are taken to maintain the security and privacy of your information. This includes assessing the level of data protection in destination countries and implementing additional security measures as required.
Data Retention and Deletion Policy
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including to meet legal, accounting, or reporting obligations. The retention period varies based on the data type and purpose of processing, as well as applicable legal requirements.
Data retention decisions are based on factors such as the nature and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, and our legal obligations. Data used for analytics and service improvement may be retained for a reasonable period to support these functions.
When personal data is no longer required, we ensure that it is securely deleted or anonymized to prevent unauthorized access or use. This includes following industry-standard practices for secure data destruction. For further information on data deletion, please [contact us](https://ixaai.com/information).
Data Security and Integrity
We implement a variety of technical and organizational measures to safeguard your personal data, including encryption, firewalls, secure access controls, and multi-factor authentication. These measures are designed to protect data from unauthorized access, alteration, disclosure, or destruction.
To maintain a high level of security, we conduct regular security audits and vulnerability assessments. These help us identify and address potential risks, ensuring our data protection practices remain robust and effective against evolving threats.
In the event of a data security incident, we have protocols in place for rapid response and mitigation. If a data breach occurs, we will promptly notify affected users and relevant authorities as required by law, taking necessary steps to protect your data and prevent further incidents.
Cookies and Tracking Technologies
We use various types of cookies to enhance user experience, including essential cookies for website functionality, analytical cookies to understand usage patterns, and functional cookies to remember user preferences. These cookies help us improve our services and provide you with a more personalized experience.
Essential cookies are required for basic website operation, allowing secure login and navigation. Analytical cookies help us track performance and identify areas for improvement. Functional cookies enable customization, such as remembering your language preference, while marketing cookies (where applicable) are used to deliver relevant ads based on your browsing behavior.
In compliance with applicable laws, we obtain your consent before using non-essential cookies. You will be presented with a cookie banner upon your first visit to our site, allowing you to choose which types of cookies you consent to. You can manage your cookie preferences at any time.
You have the option to disable cookies through your browser settings or by updating your preferences on our site. Please note that disabling certain cookies may affect the functionality of our services. For more information on managing cookies, please [contact us](https://ixaai.com/information).
Policy on Minors
Our services are not intended for individuals under the age of 16, and we do not knowingly collect personal data from minors. If we become aware that we have collected personal information from a minor without appropriate consent, we will take steps to delete that information promptly.
In jurisdictions where consent is required from a parent or legal guardian for minors, we ensure that appropriate measures are taken to obtain and verify consent before any data collection from individuals under the age of 16.
If we discover that a minor has accessed our services without parental consent, we will delete the information collected in accordance with applicable laws. We encourage parents and guardians to monitor their children’s online activities to ensure a safe and compliant experience.
Third-Party Links and Services
Our website and services may contain links to third-party websites, applications, or services. Please note that IXAAI is not responsible for the privacy practices or content of these third-party sites. We encourage you to review the privacy policies of any external sites you visit, as their practices may differ from ours.
When you click on a third-party link or access a third-party service through our platform, you may be directed to a site or service outside of IXAAI’s control. Use of these external links is at your own risk, and we are not liable for any actions taken by these third-party services with regard to your personal data.
Data Breach Notification Protocol
In the event of a data breach involving your personal data, IXAAI has established procedures to quickly identify, contain, and resolve the incident. We will assess the nature and scope of the breach to determine the appropriate response and ensure that affected users are notified as necessary.
We are committed to complying with all regulatory requirements for data breach notifications. Where required by law, we will report data breaches to relevant data protection authorities within the specified timeframes, including notifying individuals whose data may be impacted.
If a breach poses a risk to your rights and freedoms, we will notify you without undue delay, typically within 72 hours of becoming aware of the breach, in accordance with GDPR and other applicable regulations. Notifications will include details of the breach, potential impact, and recommended actions to mitigate risks.
Updates to Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our services, legal requirements, or data processing practices. Any updates will be made available on our website, and the revised policy will take effect as soon as it is published, unless otherwise specified.
If we make significant changes to this Privacy Policy, we will notify you by email (where possible) or through a prominent notice on our website, ensuring you are aware of any material updates. We encourage you to review this policy periodically to stay informed about how we protect your data.
The effective date of the latest version of this Privacy Policy will be displayed at the top of the document. This date indicates when the most recent changes were implemented, helping you stay informed of any modifications to our data practices.
Jurisdiction-Specific Clauses
For users within the European Union, IXAAI adheres to the General Data Protection Regulation (GDPR). This includes offering rights such as data access, correction, erasure, and portability. We also provide Article 27 representation for compliance where applicable. Please [contact us](https://ixaai.com/information) if you wish to exercise any of these rights.
For users in the United Kingdom, IXAAI complies with UK GDPR standards, offering rights similar to those under the EU GDPR. If necessary, we maintain a separate Data Protection Officer or representative within the UK to ensure compliance with UK-specific data protection requirements.
For California residents, IXAAI complies with the California Consumer Privacy Act (CCPA). You have the right to know what personal data we collect, the right to request deletion of your data, and the right to opt out of the sale of your personal data. A 'Do Not Sell My Information' link is provided on our website to facilitate this right.
For users in Japan, IXAAI adheres to the Act on the Protection of Personal Information (APPI). This includes respecting rights to access, correction, and deletion of personal data, as well as compliance with Japan-specific data handling and storage practices. For assistance with APPI rights, please [contact us](https://ixaai.com/information).
For users in Australia, IXAAI complies with the Australian Privacy Principles (APPs) under the Privacy Act 1988. This includes offering access to personal data, correction rights, and compliance with secure data handling standards. For questions or assistance, please [contact us](https://ixaai.com/information).
For users in Switzerland, IXAAI adheres to the Swiss Federal Act on Data Protection (FADP). We implement data transfer mechanisms that align with Swiss adequacy standards to protect your data when transferred internationally.
For users in Singapore, IXAAI complies with the Personal Data Protection Act (PDPA). This includes respecting your rights to access, correction, and consent withdrawal. For data transfers outside of Singapore, we ensure that data protection measures meet PDPA requirements. For inquiries, please [contact us](https://ixaai.com/information).
Governing Law and Dispute Resolution
This Privacy Policy and any matters relating to it are governed by the laws of the jurisdiction where IXAAI is established, unless otherwise required by local law. By using our services, you agree that any disputes arising from this Privacy Policy will be resolved under the governing laws specified.
In the event of a dispute regarding your personal data, we encourage you to [contact us](https://ixaai.com/information) to seek a resolution. If we cannot resolve the issue informally, the dispute may be resolved through formal dispute resolution mechanisms, such as arbitration or mediation, in accordance with applicable laws.
The specific jurisdiction in which any legal proceedings will take place may depend on your location and applicable regional regulations. IXAAI complies with relevant laws that may require legal disputes to be handled within certain jurisdictions to provide users with fair and accessible dispute resolution options.