Privacy policy

Privacy policy

NATIX GmbH Privacy Policy

This Privacy Policy, and any amendments thereto, will apply to your purchase of NATIX VX360 devices (and related software) by pre-order, which is expected to be shipped in late 2025.  

Last Updated: November 26, 2024, and effective from that date.

Introduction

This Privacy Policy describes how NATIX GmbH (“NATIX”, “us”, “our”, or “we”) may collect, use, and share your personal information (“personal information” refers to any information that can be used, either alone or in combination with other information, to identify you) when you place a purchase order (“Purchase Order”) for our NATIX VX360 ™ device from the website located at https://www.natix.network/vx360-depin-dashcam (“Website”), which is remotely transmitted to us for certain business purposes .

This Privacy Policy only applies to the collection, use and sharing of Information obtained from your purchase order, and information you provide related to such purchase order, and does not apply to data collection in other contexts, such as: any other websites, applications, or other products or services that we may provide; any third-party websites or applications that we do not own, operate, or control; or features available through your Vehicle’s infotainment system.

Please read this Privacy Policy carefully and if you do not agree with it, please do not provide us with any Information. Your use of the Website constitutes your acknowledgment and acceptance of our information handling practices as set out in this Privacy Policy and any modifications thereto. If the terms of this Privacy Policy are at any time unacceptable to you, do not provide us with any of your personal information through the Website.

What Information Do We Collect?

NATIX collects personal information about you that is reasonably necessary for the purposes described below.

 

When you place a purchase order on our Website

  • Contact Data: name, email address, phone number, payment information (billing data, name, address, card information and expiry date).

We also collect customer feedback information submitted through the Website, or contact methods indicated on the Website, including recordings of any calls for customer support, which we use for quality assurance purposes, when you contact us, provide feedback, make a complaint or other inquiry.

Video data recorded by your Vehicle is stored locally on the NATIX VX360 and may only be shared with third parties at your discretion.

When and Why Do We Collect Information?

We gather Information when you use our Website and place a Purchase Order through the Website.

We may use the Information we collect from you in the following ways:

  • To provide NATIX VX360 to you and to administer your Purchase Order.

  • To monitor user behavior and patterns.

  • For internal purposes including research and development, to analyze safety concerns and trends, provide support, to analyze quality, and to improve, troubleshoot, and evaluate the use of NATIX VX360.

  • To communicate with you, including by email, phone, and direct mail.

  • To share the information with law enforcement (as applicable).

We may also anonymize Information in order to use it for research and development purposes. We may combine the nonpersonal data with other data we hold and use it to identify trends, and to generate statistics, which may be provided in non-identifiable format to third-parties.

When we disclose your personal information to third parties, we require them to protect and handle your personal information in a manner consistent with our privacy practices and all applicable laws.

In the course of our activities and for the same purposes as those listed in this Privacy Policy, your personal information can be accessed by, or transferred to the following categories of recipients on a need-to-know basis to achieve such purposes:

  • our personnel, including staff and contractors part of our customer service team, billing team, our call centre and IT department;

  • our suppliers and services providers providing us with services, such as payment processing;

  • our systems providers that provide us with IT solutions, including web service providers, web hosting, cloud service providers, database providers; and

  • our professional advisors, including accountants and lawyers, as part of requesting advice or as part of a business transaction involving part of our business or its assets.

Your personal information will remain protected in accordance with this Privacy Policy. Prior to any transfer of personal information, we ensure to have agreements in place with third-party service providers to ensure they only use personal information as necessary and for the agreed upon purpose, to protect the personal information with security safeguards appropriate to the sensitivity of the information, and not to disclose it except as may be permitted by us, as required by law, or as stated in this Privacy Policy.

How Do We Protect Your Information?

We take data and information security seriously. We continuously strive to protect the Information against loss and unauthorized access or use by maintaining and continually updating our formal security program, which employs physical, organizational, and technical security practices to protect the Information, such as:

  • All data transmissions are encrypted via Secure Socket Layer (SSL) technology.

  • The Information is accessible only by a restricted number of individuals with special access rights to our systems.

  • We take numerous security measures to ensure the safeguarding of the Information, including:

  • Access Control Lists (ACLs): The office router enforces stringent ACLs to regulate incoming and outgoing traffic, enhancing network security.

  • Secure Shell (SSH) Security: SSH access is strictly controlled using certificate-based authentication, with password logins completely disabled to prevent unauthorized access.

  • Multi-Factor Authentication (MFA): Company-wide MFA policies (using hardware security keys, Google Authenticator, or phone) are enforced, and employees are required to use their company domain emails (provided by Google).

  • Cloud Platform Providers: We leverage Amazon Web Services (AWS) and Google Cloud Platform as our cloud platform providers, both renowned for their industry-leading security practices.

  • AWS Services: We employ standard AWS services to implement Internet of Things (IoT), Application Programming Interface (API) backend, file storage, and databases, ensuring robust security and compliance.

  • Database Security: Databases are backed up daily, with encryption applied at rest and in transit (HTTPS) to safeguard data integrity and confidentiality.

  • File Storage Security: File storage is secured using server-side encryption with Amazon S3 managed keys (SSE-S3) to protect against unauthorized access.

  • Key and Certificate Management: Private keys and certificates are never exposed to users, and their exchange is secured using HTTPS, Advanced Encryption Standard  (AES) encryption and Public Key Infrastructure (PKI) key exchange mechanisms.

  • API Endpoint Protection: API endpoints are fortified with JSON Web Token (JWT) based authorizers (using AWS Cognito authentication/authorization service) or user API keys and are protected by AWS Web Application Firewall (WAF).

  • Role-Based Access Control (RBAC): Implemented RBAC to ensure internal services and users only have minimum access to the resources necessary for their roles.

We store the Information for as long as reasonably necessary (i) for us to ship the NATIX VX360 device to you; (ii) for us to support all other uses we make of the Information as detailed in this Privacy Policy; and (iii) as required by law or legal process, or as may be needed in the event of anticipated or pending litigation. We have personal information retention processes designed to retain personal information for no longer than necessary for the purposes stated in this Privacy Policy or to otherwise meet legal requirements. We will dispose of information that is no longer required for the purpose for which it was collected. 

Information that we collect may be stored and processed inside and outside the State or the Country of your residence. Information processed and stored in another country may be subject to the laws of general application in the jurisdiction where it is stored, including disclosure or access requests by the governments, courts or law enforcement or regulatory agencies in that country according to its laws.

If your personal information is transferred outside of your jurisdiction, we will take steps to ensure your personal information is adequately protected in accordance with applicable privacy and data protection laws. We use contractual and other means to ensure the information is protected while in the foreign jurisdiction. If you have questions about our policies and practices regarding service providers outside the state or the country of your residence, please contact our Privacy Officer using the contact information at the end of this Privacy Policy.

By using our Website or by providing us with the Information, you consent to any such transfer of the Information outside of your country.

Even though we have taken steps to help protect the Information in our control, you should know that we cannot fully eliminate security risks associated with such Information. No security measures can provide absolute protection. We cannot ensure or warrant the security of any Information you provide to us.

How Do We Share Your Information?

The Information will not be sold or shared with external parties for marketing, advertising, or other unrelated uses, with the exception that the Information may be shared, in de-identified or anonymous form, with third parties with which we have a non-disclosure agreement in place, strictly for the purpose of processing your Purchase Order, payment, keeping you updated, providing customer support to you, processing refund and return claims and other requests and communication initiated by you..

We may disclose your Personal Information to third parties only under one or more of the following circumstances:

  • Personal information you have given us express permission to disclose to a specific third-party;

  • In an emergency to protect your safety, or where we have a good faith belief it is necessary to do so to prevent harm, injury, or loss, and we may use the Information to pursue or defend legal actions, even if harm, injury, or loss has already occurred;

  • In response to a search warrant or other legally valid inquiry, request or order, or to an investigative body in the case of a breach of an agreement or contravention of law, or as otherwise required or permitted by law;

  • If the disclosure is necessary or appropriate for the establishment, exercise or defense of legal claims, to protect our rights or those of our employees, contractors and/or customers, to prevent actual or suspect loss or harm to persons or property or to resolve a dispute between us; or

  • in connection with business transaction (e.g. a merger or sale (including transfers made as part of insolvency or bankruptcy proceedings)) involving all or part of our business.

Do Not Track and Cookies

We respect Do Not Track signals and do not use cookies for tracking purposes within our applications.

Third-Party Integrations

The Website may contain links to other websites, which are not owned, operated, or controlled by NATIX. This Privacy Policy only relates to our collection and use of your data through the Website, and we are not responsible for the privacy policies and practices of other third-party websites or services, including from any provided links. We urge you to review the privacy statements of each website or other services that you visit or access to ensure that you understand when, how and why those websites or services use and share your personal information.

Your Rights

You have the following rights with respect to your personal information:

  • Access, Correct and Erase your personal information: Subject to limited exceptions prescribed by law, you have the right to obtain information on the processing of your personal information and in some cases, to receive a copy of this information. This includes the right to request information about how we process your personal information, what personal information we collect about you and to whom it is being shared. However, to the extent permitted by law, we reserve the right to charge a reasonable fee for copying and sending the information from your file. You also have the right to request that we correct or complete your inadequate, incomplete, or inaccurate personal information.

  • Right to opt-out: At any time, you may “opt-out” or withdraw your consent to the collection, use, disclosure or any other form of processing of your personal information, subject to contractual or legal restrictions. We will then stop the processing of your personal information, subject to legally permissible exceptions. Please note that your withdrawal has effect for future processing operations only, and note that if you withdraw your consent to some processing of your personal information, we may not be able to provide you with a particular offering. 

  • Unsubscribe from email marketing: You may remove yourself from our contact lists by following the unsubscribe instructions in each of the e-mails. Please note that even if you unsubscribe to such communications, we may contact you for other purposes such as the status of your vehicle or account, or other service-related purpose and update as permitted by law.

 

 

When you exercise these rights and submit a request to us, we may verify your identity by asking you to authenticate your identity via standard authentication procedures.

 

We will respond to your request in writing within the time required by law. In certain cases, for instance, when the request involves large volumes of information or we must contact multiple third parties to obtain the information requested, we may need additional time to respond.

If we refuse your request, we will respond to you in writing, provide the reasons for the refusal, and inform you of what remedies you may have.

You may exercise your privacy rights by sending a request to carappsupport@natix.network

Children’s Privacy

We do not knowingly target or collect any information from children under the age of 13. If you are above 13, and above the legal driving age where you reside, but under the age of majority, you must have the consent of your parent/legal guardian to our Privacy Policy to use the Website.

If you are a parent or guardian who has discovered that your minor child has provided us with personal information, we ask that you contact us at carappsupport@natix.network to have this information deleted from our records.

Changes to this Privacy Policy

We reserve the right to modify this Privacy Policy at any time and at our sole discretion, without notice. Changes to this Privacy Policy will be effective immediately on posting to the website found at: www.natix.network, its subpages and/or subdomains, and when required by law, we will notify you. You agree to review this Privacy Policy on each visit to such a website to inform yourself of any such modifications. You also agree to be bound by any such modifications.

If required by law, we may seek your prior consent.

Contact Us

For any inquiries or complaints concerning this Privacy Policy, please reach out to our Privacy Officer at carappsupport@natix.network