-
Scope of Policy
This Privacy Policy applies comprehensively to all users of MyProfile Services
worldwide, including individuals, business entities, content creators, educational
institutions, and organizations using the platform for personal branding, business
networking, professional growth, team management, or NFC-enhanced physical product
integration. The policy governs both online and offline data collected through our
services, including usage of MyProfile smart products such as MyCard, MyBand, MyTag,
MySlider, MyPhoneCase, and other current and future integrations.
This policy covers all data collection activities across our entire digital ecosystem,
including our primary websites, mobile applications for iOS and Android, web-based
dashboard interfaces, API integrations, smart product firmware and associated mobile
applications, customer support interactions, marketing communications, social media
interactions, event participation, and third-party integrations where MyProfile acts as
a data controller.
This policy does not apply to third-party services that are not controlled by MyProfile,
even if they are accessed through our platform, linked from our services, or integrated
with our products. Third-party services have their own privacy policies and data
handling practices, which we encourage you to review. When you interact with third-party
services through MyProfile, both our Privacy Policy and the third party's privacy policy
may apply to different aspects of the interaction.
For business customers and enterprise accounts, additional privacy terms may apply as
specified in separate business agreements. In cases where business agreements contain
privacy terms that conflict with this policy, the business agreement terms will take
precedence for those specific business relationships.
-
What Information Do We Collect?
Personal information you disclose to us
In Short: We collect personal information and non-personal information that you
provide to us.
We collect both personal and non-personal information that you voluntarily provide to us
when you register on the Services, express an interest in obtaining information about us
or our products and Services, when you participate in activities on the Services, or
otherwise when you contact us.
Personal Information Provided by You
The personal information that we collect depends on the context of your interactions
with us and the Services, the choices you make, and the products and features you use.
The personal information we collect may include the following:
Sensitive Information
When necessary, with your consent or as otherwise permitted by applicable law, we
process the following categories of sensitive information:
-
health data
-
genetic data
-
biometric data
-
data about a person’s sex life or sexual orientation
-
information revealing race or ethnic origin
-
information revealing political opinions
-
information revealing religious or philosophical beliefs
-
information revealing trade union membership
-
student data
-
financial data
Payment Data
We may collect data necessary to process your payment if you choose to make purchases,
such as your payment instrument number, and the security code associated with your
payment instrument. All payment data is handled and stored by Stripe, PayPal,
Flutterwave, and Payoneer. You may find their privacy notices at:
-
https://stripe.com/privacy
-
https://www.paypal.com/us/legalhub /paypalprivacy-full
-
https://flutterwave.com/eu /privacy-notice
-
https://www.payoneer.com /legal/privacy-policy/
Social Media Login Data
With your permission, we may collect information from your social media accounts and
professional networks, including profile information from connected social platforms,
contact lists and address book data, social connections and network relationships,
publicly available posts and content that mention MyProfile, and professional
endorsements or recommendations.
Contact and Communication Data:
We collect information when you communicate with us through various channels, including
customer support inquiries, feedback submissions, survey responses, email
correspondence, chat interactions, phone conversations, and participation in user
research or interviews. This may include the content of your communications, your
contact preferences, and metadata associated with the communications.
Smart Product and Device Data
Our NFC-enabled smart products collect various types of data to function properly,
including device identifiers, firmware version information, NFC tap data and analytics,
QR code scan statistics, device location data when location services are enabled,
battery status and charging patterns, device pairing and connectivity information, usage
patterns and frequency of interactions, and error logs and diagnostic information.
Technical and Usage Information
We automatically collect technical information about how you interact with our services,
including IP addresses, browser types and versions, operating system information, device
identifiers and specifications, screen resolution and display settings, language
preferences, time zone settings, referring and exit pages, pages viewed and time spent
on each page, click-through rates and interaction patterns, search queries and results,
feature usage statistics, and session duration and frequency.
Behavioral and Preference Data
We collect information about your preferences and behavior on our platform, including
profile customization choices, communication preferences, privacy settings selections,
content engagement patterns, network connection behaviors, feature usage preferences,
and feedback and rating submissions.
Application Data
If you use our application(s), we may also collect the following information if you
choose to provide us with access or permission:
-
Geolocation Information: May include continuous or session-based tracking from
your mobile device to provide location-based services.
-
Mobile Device Access: May include access or permission to use your mobile
device’s bluetooth, calendar, camera, contacts, microphone, reminders, sensors,
SMS, social media, storage, and other features.
-
Mobile Device Data: Includes mobile device ID, model, OS, browser type, version,
Internet provider, device identifiers, phone number, device platform, and app
features accessed.
-
Push Notifications: We may request permission to send push notifications
regarding your account or app features. You can opt out in your device’s
settings.
All personal information you provide to us must be true, complete, and accurate. Please
notify us of any changes.
Information Automatically Collected
In Short: Some information — such as your Internet Protocol (IP) address and/or browser
and device characteristics — is collected automatically when you visit our Services.
We automatically collect certain information when you visit, use, or navigate the
Services. This may include:
This data is used for internal analytics, reporting, and to maintain the security and
performance of the Services. We also use cookies and similar technologies for additional
data collection.
The information we collect includes:
-
Log and Usage Data: This includes service-related, diagnostic, usage, and
performance information such as date/time stamps, pages viewed, and feature
usage.
-
Device Data: Information about your computer, phone, or tablet including device
ID, location, ISP, browser, and hardware model.
-
Location Data: Includes GPS or IP-based location data, which can be either
precise or imprecise depending on your device settings.
Google API
Our use of information received from Google APIs will adhere to the Google API Services
User Data Policy, including the Limited Use requirements.
Information Collected from Other Sources
In Short: We may collect limited data from public databases, marketing partners, social
media platforms, and other outside sources.
This may include:
-
public databases
-
joint marketing partners
-
affiliate programs
-
data providers
-
social media platforms
-
other third parties
This includes mailing addresses, job titles, email addresses, phone numbers, intent
data, IP addresses, social media profiles and URLs, and custom profiles for targeted
advertising.
If you interact with us on a social platform using your login (e.g., Facebook or X), we
may receive information such as your name, email, and gender. The data we receive
depends on the platform’s own privacy policy.
-
How Do We Process Your
Information?
In Short
We process your information to provide, improve, and administer our Services,
communicate with you, for security and fraud prevention, and to comply with law. We
process the personal information for the following purposes listed below. We may also
process your information for other purposes only with your prior explicit consent.
MyProfile operates as a global service, and we may process your data on servers and
systems located in various jurisdictions around the world. We are committed to ensuring
that all data transfers and processing activities comply with applicable data protection
laws and provide appropriate safeguards for your personal information. We process your
personal information for a variety of reasons, depending on how you interact with our
Services, including:
-
To facilitate account creation and authentication and otherwise manage user
accounts.
-
To deliver and facilitate delivery of services.
-
To respond to user inquiries/offer support.
-
To send administrative information (e.g., changes to policies, terms, services).
-
To fulfill and manage orders (including payments, returns, exchanges).
-
To enable user-to-user communications.
-
To request feedback.
-
To send marketing and promotional communications. (Can opt-out any time. See
“WHAT ARE YOUR PRIVACY RIGHTS?”)
-
To deliver targeted advertising.
-
To protect our Services (e.g., fraud monitoring, security).
-
To identify usage trends (to improve services).
-
To determine effectiveness of marketing campaigns.
-
To save or protect an individual’s vital interest (e.g., preventing harm).
Primary Data Processing Locations:
Our primary data processing infrastructure is located in United States of America, where
we maintain our main servers, databases, and operational systems. We also utilize cloud
computing services and content delivery networks that may process and store data in
multiple locations to ensure optimal performance, reliability, and availability of our
services.
International Data Transfers:
When we transfer your personal data across international borders, we implement
appropriate safeguards to protect your information. These safeguards include standard
contractual clauses approved by relevant data protection authorities, adequacy decisions
recognizing equivalent levels of data protection in destination countries, binding
corporate rules that ensure consistent data protection standards across our
organization, and specific consent for transfers where required by applicable law.
Third-Party Service Providers:
We work with carefully selected third-party service providers who may process your data
in various jurisdictions. These providers include cloud hosting and infrastructure
services, payment processing and financial services, analytics and marketing platforms,
customer support and communication tools, and security and fraud prevention services.
All third-party processors are required to maintain appropriate data protection
standards and are bound by contractual obligations to protect your information.
Data Localization Requirements:
In jurisdictions with specific data localization requirements, we ensure compliance by
storing and processing certain types of data within those jurisdictions as required by
local laws, implementing technical and organizational measures to meet local regulatory
requirements, working with local data processing partners where necessary, and providing
transparency about data storage and processing locations upon request.
Cross-Border Data Protection:
We maintain consistent data protection standards regardless of where your data is
processed. This includes implementing encryption for data in transit and at rest,
maintaining access controls and monitoring systems, conducting regular security
assessments and audits, providing staff training on international data protection
requirements, and establishing incident response procedures that comply with
notification requirements in all relevant jurisdictions.