Last updated: December 2024

1. Information We Collect

We collect information you provide directly to us, such as when you create an account, use our services, or contact us for support. This includes:

  • Account information (name, email, company details)
  • Usage data and scan configurations
  • Technical logs and performance metrics
  • Communication records and support interactions

2. How We Use Your Information

We use the information we collect to provide, maintain, and improve our services:

  • Deliver vulnerability scanning and security analysis
  • Provide customer support and technical assistance
  • Improve our AI algorithms and detection capabilities
  • Send important service notifications and updates

3. Data Security and Protection

We implement industry-leading security measures to protect your data:

  • End-to-end encryption for all data transmission
  • Secure cloud infrastructure with SOC 2 compliance
  • Regular security audits and penetration testing
  • Role-based access controls and authentication

4. Data Sharing and Disclosure

We do not sell, trade, or rent your personal information. We may share information only in these limited circumstances:

  • With your explicit consent
  • To comply with legal obligations
  • To protect our rights and prevent fraud
  • With trusted service providers under strict confidentiality agreements

5. Data Retention

We retain your information only as long as necessary to provide our services and comply with legal obligations. Scan data and vulnerability reports are retained according to your subscription plan:

  • Basic Plan: 30 days
  • Professional Plan: 90 days
  • Enterprise Plan: Custom retention periods

6. Your Rights and Choices

You have the following rights regarding your personal information:

  • Access and review your personal data
  • Correct inaccurate or incomplete information
  • Delete your account and associated data
  • Export your data in a portable format
  • Opt-out of marketing communications

7. International Data Transfers

ArmoScan operates globally and may transfer your information to countries other than your own. We ensure appropriate safeguards are in place, including:

  • EU-US Privacy Shield compliance
  • Standard Contractual Clauses (SCCs)
  • Adequacy decisions by relevant authorities

8. Cookies and Tracking

We use cookies and similar technologies to improve your experience:

  • Essential cookies for platform functionality
  • Analytics cookies to understand usage patterns
  • Preference cookies to remember your settings

9. Children's Privacy

ArmoScan is not intended for use by individuals under 18 years of age. We do not knowingly collect personal information from children.

10. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of any material changes by email and by posting the new policy on our website with an updated effective date.

11. Contact Us

If you have questions about this privacy policy or our data practices, please contact us:

  • Email: privacy@armologic.com
  • Mail: ArmoScan Privacy Office, Armologic Ltd., 86-90 Paul Street, London EC2A 4NE, United Kingdom

Security & Compliance

ArmoScan maintains the highest standards of security and compliance with international data protection regulations including GDPR, CCPA, and HIPAA.

SOC 2 Certified GDPR Compliant HIPAA Ready ISO 27001