1. Introduction
Welcome to the Privacy Policy of App Config.json ("we", "our", or "us"). This policy explains how we collect, use, disclose, and safeguard your information when you use our configuration management platform, APIs, SDKs, and website.
We respect the privacy of our users and are dedicated to transparency regarding our data practices. This policy applies to all personal data processed in accordance with the General Data Protection Regulation (GDPR).
2. Data Controller
The Data Controller for your personal data is:
App Config.json Inc.
123 Tech Valley, Suite 400
San Francisco, CA 94105, USA
Email: privacy@appconfig.json
For GDPR inquiries, you may contact our Data Protection Officer (DPO) at dpo@appconfig.json.
3. Data We Collect
We collect information to provide, improve, and secure our services. The categories of data include:
3.1 Identity & Contact Data
- Name, email address, and phone number provided during registration.
- Organization name and job title.
3.2 Technical Data
- IP address, browser type, and operating system.
- Device identifiers and network information.
- Usage data, including logs of API calls and SDK interactions.
3.3 Configuration Data
Important: You retain full ownership of all configuration data uploaded to our platform. We process this data solely to provide the service of syncing and managing your configurations. We do not use your configuration payloads for analytics or advertising.
3.4 Billing Data
- Credit card information and billing history processed securely via our payment provider (Stripe).
4. Legal Basis for Processing
We process your personal data based on the following legal grounds under Article 6 of the GDPR:
- Performance of Contract: Processing necessary to provide you with our services (e.g., syncing configs, managing your account).
- Legitimate Interests: Improving our platform, preventing fraud, and ensuring security.
- Consent: Where required, we will ask for your explicit consent (e.g., for marketing emails).
- Legal Obligation: Complying with applicable tax and financial laws.
5. Data Retention
We retain your data only for as long as necessary to fulfill the purposes for which it was collected:
- Account Data: Retained while your account is active and for 12 months after deactivation for recovery purposes.
- Configuration Data: Retained until you explicitly delete it or close your account.
- Log Data: Retained for 90 days for security and debugging.
- Billing Data: Retained for 7 years as required by financial regulations.
6. Your Rights
Under GDPR, you have the following rights regarding your personal data:
- Right to Access: Request a copy of the personal data we hold about you.
- Right to Rectification: Correct inaccurate or incomplete data.
- Right to Erasure: Request deletion of your data ("Right to be Forgotten").
- Right to Portability: Receive your data in a structured, machine-readable format.
- Right to Restrict Processing: Limit how we use your data.
- Right to Object: Object to processing based on legitimate interests or direct marketing.
To exercise these rights, please contact us at privacy@appconfig.json. We will respond within 30 days.
7. International Data Transfers
App Config.json is based in the United States. If you are located in the EEA or UK, your data may be transferred outside these regions. We ensure adequate protection through:
- Standard Contractual Clauses (SCCs) approved by the European Commission.
- Encryption of data in transit and at rest.
8. Security Measures
We implement industry-standard security measures to protect your data, including:
- AES-256 encryption for data at rest.
- TLS 1.3 encryption for data in transit.
- Regular security audits and penetration testing.
- Strict access controls and multi-factor authentication for internal systems.
9. Cookies & Tracking
Our website uses essential cookies to function correctly. We do not use third-party tracking cookies for advertising purposes. You can manage cookie preferences in your browser settings.
10. Contact Us
If you have questions about this policy or wish to exercise your rights, please contact us:
App Config.json Privacy Team
Email: privacy@appconfig.json
Address: 123 Tech Valley, Suite 400, San Francisco, CA 94105