Privacy & Policy

DIGIPESTCONTROL

GLOBAL PRIVACY & SECURITY POLICY

Effective Date: 07.04.2017
Last Updated: 20.02.2026

This Privacy & Security Policy explains how digipestcontrol (“Company,” “we,” “us,” or “our”) collects, uses, processes, stores, protects, and transfers personal data and business information in connection with our SaaS platform, website, applications, and related services (collectively, the “Services”).


1. SCOPE AND APPLICABILITY

This Policy applies to:

  • Customers and business users of the digipestcontrol platform

  • Website visitors

  • Prospective customers

  • Authorized Users under customer accounts

  • Individuals whose personal data may be processed within Customer Data

This Policy applies globally and is designed to align with applicable international data protection laws, including but not limited to:

  • EU General Data Protection Regulation (GDPR)

  • UK GDPR

  • California Consumer Privacy Act (CCPA/CPRA)

  • Other applicable national data protection regulations

Where local laws impose stricter requirements, those laws shall prevail.


2. ROLES AND DATA RESPONSIBILITY

2.1 When We Act as Data Controller

We act as Data Controller when processing personal data related to:

  • Website visitors

  • Marketing communications

  • Account registration data

  • Billing and subscription management

  • Customer support communications

2.2 When We Act as Data Processor

We act as Data Processor when processing personal data included in:

  • Customer Data uploaded to the platform

  • IoT device telemetry linked to identifiable individuals

  • Operational records entered by customers

In such cases:

  • The Customer is the Data Controller

  • We process data strictly on documented instructions


3. CATEGORIES OF DATA COLLECTED

Depending on usage, we may process:

3.1 Account Information

  • Name

  • Business email

  • Company name

  • Phone number

  • Billing address

3.2 Technical Information

  • IP address

  • Device identifiers

  • Browser type

  • Log files

  • Authentication metadata

3.3 Usage Data

  • Platform interaction logs

  • Feature usage analytics

  • API usage records

3.4 Customer Data

  • Operational pest control records

  • IoT telemetry

  • Field activity logs

  • Reports and documents

3.5 Payment Data

Payment information is processed via secure third-party payment providers. We do not store full credit card numbers.


4. LEGAL BASIS FOR PROCESSING (GDPR)

Where GDPR applies, we rely on:

  • Performance of a contract

  • Legitimate interest

  • Legal obligation

  • Consent (where required)

Customers are responsible for ensuring lawful basis for data uploaded to the platform.


5. PURPOSES OF PROCESSING

We process data for:

  • Providing and maintaining the Services

  • Authentication and account security

  • Billing and subscription management

  • Customer support

  • Service improvement and analytics

  • Legal compliance

  • Security monitoring and fraud prevention

We do not sell personal data.


6. DATA RETENTION

We retain data:

  • For the duration of the Subscription Term

  • As required for legal, accounting, or compliance obligations

  • For legitimate business purposes

Upon termination:

  • Customers may export their data

  • Data is deleted or anonymized after the retention window

  • Backup systems follow defined deletion cycles


7. INTERNATIONAL DATA TRANSFERS

Where personal data is transferred outside the EEA, UK, or similar jurisdictions:

We rely on:

  • EU Standard Contractual Clauses (SCCs)

  • UK Addendum

  • Adequacy decisions

  • Equivalent lawful safeguards

Customers may request details regarding transfer mechanisms.


8. SECURITY MEASURES

digipestcontrol applies industry-aligned security controls, including:

8.1 Organizational Measures

  • Role-based access control (RBAC)

  • Confidentiality agreements

  • Security awareness training

  • Incident response procedures

  • Vendor risk assessments

8.2 Technical Measures

  • Encrypted data transmission (TLS)

  • Encryption at rest (where applicable)

  • Secure cloud infrastructure

  • Network segmentation

  • Multi-factor authentication (MFA)

  • Continuous monitoring

  • Audit logging

  • Vulnerability scanning

8.3 Development Security

  • Secure coding practices

  • Code review procedures

  • Patch management

  • Dependency monitoring


9. DATA BREACH RESPONSE

In the event of a confirmed data breach:

  • We assess impact immediately

  • We notify affected Customers without undue delay

  • We cooperate in regulatory reporting obligations

  • We implement remediation steps


10. SUBPROCESSORS

We may engage subprocessors for:

  • Cloud hosting

  • Email/SMS notifications

  • Monitoring and analytics

  • Payment processing

All subprocessors are contractually bound by data protection obligations consistent with GDPR-level standards.

A current list of subprocessors is available upon request.


11. DATA SUBJECT RIGHTS (GDPR & GLOBAL)

Individuals may have the right to:

  • Access their data

  • Rectify inaccurate data

  • Request deletion

  • Restrict processing

  • Object to processing

  • Data portability

  • Withdraw consent

  • Lodge a complaint with a supervisory authority

Requests may be submitted to: [Insert Privacy Email]

When acting as Data Processor, we will forward requests to the Customer (Data Controller).


12. CALIFORNIA PRIVACY RIGHTS (CCPA/CPRA)

California residents may have the right to:

  • Know what personal information is collected

  • Request deletion

  • Correct inaccurate information

  • Opt-out of sale/sharing (we do not sell data)

  • Limit use of sensitive personal information

Requests can be submitted via: [Insert Contact Method]


13. CHILDREN’S DATA

The Services are not directed to individuals under 18 years of age. We do not knowingly collect children’s data.


14. CONFIDENTIALITY

All Customer Data is treated as confidential business information. We do not access Customer Data except:

  • To provide support

  • To maintain system integrity

  • When legally required

Access is restricted to authorized personnel.


15. COOKIES AND TRACKING

Our website may use:

  • Essential cookies

  • Analytics cookies

  • Performance cookies

Users may manage cookie preferences via browser settings or cookie banner tools.


16. CHANGES TO THIS POLICY

We may update this Policy periodically. Updates will be posted on our website with a revised effective date.


17. CONTACT INFORMATION

For privacy-related inquiries:

Email: info@digipestcontrol.com
Address: Adalet Mah. Anadolu cad. NO:41
Megapol Tower 081 BAYRAKLI/İZMİR/Türkiye

TOP