Privacy Policy for the Zaluti Smart Control App
1. Introduction and Data Controller
Thank you for using the Zaluti Smart Control App (hereinafter referred to as the “App”). Protecting your personal data is very important to us. Below, we inform you in detail about what data is collected when you use our App and how it is processed.
The Data Controller within the meaning of the General Data Protection Regulation (GDPR) is:
Zaluti B.V.
Kapittelweg 12
4827 HG Breda, The Netherlands
Phone: +31 (0) 76 20 55 239
Email: [email protected]
2. Data Collection when Downloading the App
When you download the App from the respective App Store (Apple App Store or Google Play Store), the necessary information is transferred to the operator of the App Store (e.g., username, email address, customer number of your account, time of download). We have no influence on this data collection and are not responsible for it. We only process this data to the extent necessary to securely download the App to your smartphone.
3. Data Processing during App Usage
To enable you to control our scent systems effectively, we collect and process the following data:
a) User Account (Registration and Login)
To use the App, you must create a user account. In doing so, we collect personal data that you voluntarily provide to us:
- First and last name
- Email address
- Username and password
Purpose & Legal Basis: The processing is carried out to provide the App’s functions and to fulfill our user agreement in accordance with Art. 6(1)(b) GDPR.
b) Required Device Permissions (Bluetooth)
Our scent systems feature high cybersecurity standards. They operate locally (off-grid) and do not need to connect to the internet or sensitive corporate Wi-Fi networks. To establish a connection between your smartphone and the Zaluti scent system, the App strictly requires access to your device’s Bluetooth interface. Without this permission, controlling the machine via the App is not possible. We do not use this permission for location tracking.
Purpose & Legal Basis: Technical necessity for contract performance (Art. 6(1)(b) GDPR) and your explicit consent when granting permissions in your operating system.
c) Push Notifications
If you explicitly allow this in your smartphone settings, we may send you push notifications regarding your system or account.
Purpose & Legal Basis: Your consent (Art. 6(1)(a) GDPR). You can disable these notifications at any time in your device’s system settings.
d) Troubleshooting and Security
To ensure the security and stability of our App, we may collect anonymized diagnostic and crash data in the event of an error.
Purpose & Legal Basis: Our legitimate interest in providing a flawless and secure App experience (Art. 6(1)(f) GDPR).
4. Data Sharing and Disclosure
We do not sell your personal data to third parties. Data is only shared if it is strictly necessary to fulfill our contract (e.g., with secure cloud hosting providers acting as data processors under Art. 28 GDPR), if we are legally obligated to do so (Art. 6(1)(c) GDPR), or if you have explicitly consented. We do not process any special categories of personal data (sensitive data).
5. Data Retention and Account Deletion
We only store your personal data for as long as it is necessary for the purposes stated in this Privacy Policy (e.g., for as long as your user account exists) or as required by statutory retention periods.
How to delete your account (Account Deletion):
- Directly in the App: Navigate to your account settings within the App and select the option to delete your account.
- Via Email: Send us an email with the subject line “App Account Deletion” to [email protected].
Upon your request, your data will be permanently deleted without undue delay, provided there are no legal obligations to retain it.
6. Children’s Privacy
Our App is not intended for use by individuals under the age of 18. We do not knowingly collect personal data from minors.
7. Your Rights as a Data Subject
Under the applicable data protection laws (GDPR), you have the following rights at any time:
- Right of Access (Art. 15 GDPR): The right to obtain free information about your stored data.
- Right to Rectification (Art. 16 GDPR): The right to request the correction of inaccurate or incomplete data.
- Right to Erasure (Art. 17 GDPR): The right to request the deletion of your data.
- Right to Restriction of Processing (Art. 18 GDPR)
- Right to Data Portability (Art. 20 GDPR)
- Right to Withdraw Consent (Art. 7(3) GDPR): If you have given consent, you can withdraw it at any time with effect for the future.
- Right to Lodge a Complaint (Art. 77 GDPR): You also have the right to file a complaint with a competent data protection supervisory authority.
To exercise any of your rights, simply send an email to: [email protected]