Privacy policy
We care about your privacy. We are GDPR compliant company
We care about your privacy. We are GDPR compliant company
Your privacy is important.
The General Data Protection Regulation (GDPR) is a legal framework that sets guidelines for the collection and processing of personal information of individuals within the European Union (EU).
This Data Protection Policy sets out the basis on which any personal data you provide to Illumine Technology Inc. (Company No. 226606) ("we" or "our" or "us"), either itself or through its subsidiaries or licensees, via various electronic platforms such as mobile applications, web (admin.illumine.app) or any other platforms designated by us (the "Portal") is processed.
We will be collecting and processing personal data provided by you or any third parties and/or further information and data that may be required by us from time to time.
By using our portal and services provided via our portal (the "Services") in any manner, you agree that you have read this Data Protection Policy and accept the terms stated herein. We may need to change this policy from time to time as well, but we will do our best to alert you to changes by placing a notice on http://www.illumine.app/privacy, by sending you an email, and/or by some other means. Please note that if we aren't able to send a notification or if you’ve opted not to receive legal notice emails from us (or you haven't provided us with your email address), you are still responsible for reading and understanding the changes. If you use the Services after any changes to the Privacy Policy have been posted, that means you agree to all of the changes. Use of information we collect now is subject to the Privacy Policy in effect at the time such information is used.
You agree and acknowledge that your continued use of our Services after this Data Protection Policy has been revised constitutes your acceptance of the Data Protection Policy as amended, provided that if such revision materially impacts your use of our Services, we may notify you through such avenues as we deem appropriate. What constitutes a material change, will be determined by us at our sole and absolute discretion.
We collect personal data when you:
We may also process the personal data of your child if they are provided by your child's school or the school’s headquarters or administrator (individually and/or collectively referred as the "School", where appropriate) or by you. You agree and consent to us processing your child's personal data in accordance with the terms and conditions of this Data Protection Policy.
In this Data Protection Policy, "Personal Data" refers to any data, whether true or not, about an individual who can be identified:
We may collect and process the following personal data:
Your name, contact details and child's personal data are obligatory and if we are not allowed to process such information, we may not be able to provide you with the Services. We may also process other personal data such as:
Some of the information collected by us may not be explicitly submitted by you as we do from time to time also automatically receive and record information on our server logs from your browser, including your IP address, cookie information, your requested web pages, your browser type and language, access times, and the referring website address.
If you give us information about another person, you undertake that you can:
"Cookies" are data files that may be downloaded to your computer when you visit the Portal and permit the Portal to identify your browser whenever you interact with the Portal. We use cookies to recognize repeat visits by users of the Portal and to collect information about our users' interactions with the Portal. These cookies contain identification information that enables us to streamline your experiences using the Portal. You may set your browser software to reject cookies, but you may not be able to optimize the features of the Portal. In some cases, you may not be able to access the Portal if cookies are disabled.
In general, other than providing you with the Services and other services incidental or related to the Services, we may use the information provided to us for the following purposes:
We may share your personal data with:
We do not share your child’s personal data with third parties for marketing purposes. However, we may need to share your child’s personal data provided to us through our Portal with the School in order to ensure that we are able to provide the Services to you and also to fulfil our obligations to the School. Your child’s personal data such as his/her name and picture may be inevitably or incidentally disclosed to other users of the Portal (e.g. other parents and guardians).
For example, your child may appear in a photograph published on the Portal with other children of our users.
We will, upon your written request to us (see Contact below), allow you to enquire about the ways in which your personal data has been or may have been used or disclosed within a year before the request, unless we are required or authorised to do so by law, to deny your request for access to your personal data.
You have the right, without any cost, to request access to personal data that we may process about you. If you wish to exercise this right, you should:
You have the right to require us to correct, amend, or delete inaccurate data any inaccuracies in your data free of charge. If you wish to exercise this right, you should:
You also have the right to ask us to stop processing your personal data for direct marketing purposes. If you wish to exercise this right, you should:
Please note that if your request concerns information in the portal please contact your school.
We are using Google Cloud & Firebase for storing and processing the data.
Updated firewalls and other technical methods are used to protect the Operations Center network against unauthorized access. Customer’s data is stored logically separated from other customers' data. We have data backups for 30 days stored in Google cloud and encrypted by Google. Older data is automatically churned by the cloud. Incase of an incident the affected parties are informed and data is restored using the latest backup. Our data servers and storage servers are located in the USA and Europe.
All Firebase(database and storage) services have successfully completed the ISO 27001 and SOC 1, SOC 2, and SOC 3 evaluation process, and some have also completed the ISO 27017 and ISO 27018 certification process. Firebase services encrypt data in transit using HTTPS and logically isolate customer data. All our website and network calls are encrypted and use HTTPS protocol.
Illumine utilizes end-to-end SSL encryption from the end user's device all the way to the database as well as between internal services on the servers.
Illumine has a permission system as part of Portal, lets you choose who can see and access what information. No parent can access any other parents’ data in the system.
Illumine’s database service restricts access to select employees who have a business purpose to access data stored. Database service logs employee access to systems whenever access is made. Illumine database service only permits access to data by employees who sign in with Google Sign-In and 2-factor authentication.
Provided that Illumine detects a security breach or threat thereof in relation to the portal, illumine will seek to locate and identify such breach or threat as well as the scope of the issue as soon as possible, seek to limit the potential or occurred damage to the extent possible, seek to hinder such a security breach in the future and to the extent possible, restore any lost data.
In the case of a security breach where unauthorized people gain access to the Customer's data or where the loss of data has occurred, Illumine will, when possible, cf. e.g. the section "Procedure", notify the Customer in a written notice about the security breach. Such notifications will contain information about which data Illumine deems to have been accessed unauthorized, whether Illumine has initiated special precautions, and the notification will inform whether the Customer, according to Illumine’s evaluation, must take special precautions.
If you wish to make a request access or request correction of the personal data or have any inquiries or complaints in respect of your personal data, please contact us at:
Data Protection Officer
info@illumine.app
Illumine Labs Pvt. Ltd.