Privacy Policy

Last updated: 17. December 2024

Quantflow AI AG ("we," "our," or "us") is committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy outlines how we collect, use, disclose, and safeguard your information when you visit and use PermitSolar, our document automation solution for solar companies.

By using our service, you agree to the practices described in this Privacy Policy. If you do not agree with the terms, please do not use our services.

Information we collect

We collect two types of data:

a.
User Data: Personal data provided by individuals or companies who use the PermitSolar platform, including:
Full name, email address, phone number, company name, and business-related information.
b.
Customer Data: Data that our users upload or input into the platform when using PermitSolar for automating documents related to solar projects, including:
Personal details of their customers, such as names, addresses, email addresses, phone numbers, etc.
Other relevant project data to automate document generation.

Cookies and Tracking Technologies: We also collect data automatically through cookies and similar tracking technologies to improve your experience and for analytical purposes. These technologies may track user activity across sessions and pages of our website.

How we use your data

We use the data we collect for the following purposes:

a.
Service Provision: To provide and maintain the PermitSolar platform and allow users to automate their document generation.
b.
Service Improvement: To improve the quality, functionality, and performance of our platform and services.
c.
Analytics: To analyze the behavior and usage patterns of the platform in order to enhance user experience.

Third-party access to data

We work with various third-party service providers to assist in providing our services. These third parties may have access to the personal data we collect but are only authorized to use it as necessary to perform their functions. Some of our third-party providers include:

a.
Microsoft Azure

We use Microsoft Azure to host our platform and store your data. Microsoft Azure is a cloud computing service that provides us with secure, scalable, and reliable infrastructure.

Data Storage and Security:

Your data is stored on Azure's servers located in the European Union (EU). Microsoft Azure ensures data security through encryption, both in transit and at rest, and offers advanced access controls to protect your information.

Data Access:

Microsoft does not access your data unless necessary for operational purposes and only under strict contractual obligations. They act as a data processor on our behalf.

GDPR Compliance:

Microsoft Azure complies with the GDPR, ensuring that your data is processed in line with European data protection laws.
For more details, you can review Microsoft's Privacy Policy and their GDPR compliance page:

b.
Google Analytics

We use Google Analytics to help analyze how our service is used. Google Analytics collects data such as your IP address, browser type, and how you interact with our site, which helps us improve our service. Google Analytics does not collect personally identifiable information unless you provide it directly to us.
For more details, you can review Google's Privacy Policy:

Google Privacy Policy

We do not sell or rent your data to any third parties for marketing purposes.

Cookies

Cookies are small files that are stored on your browser or device when you visit our platform. We use cookies for the following purposes:

a.
Essential Cookies: These cookies are necessary for the basic functioning of the platform and to provide services that you have requested.
b.
Analytics Cookies: These cookies allow us to track how users interact with our platform to help improve functionality and usability.
c.
Performance Cookies: These cookies are used to monitor the performance of our platform and identify potential issues.

You can control or disable cookies through your browser settings, but please note that disabling cookies may impact your ability to use some features of our platform.

Data storage and international transfers

We store all personal data on Microsoft Azure servers, located exclusively within the EU. As such, any personal data processed through our services will remain within the European Union, in compliance with GDPR.

If you are located outside of the EU and choose to provide your information to us, please be aware that your data may be transferred to and processed within the EU.

GDPR compliance

Quantflow AI AG adheres to the provisions of the General Data Protection Regulation (GDPR), which provides data protection rights for individuals within the EU.

If you wish to exercise any of these rights, please contact us at info@quantflow.tech.

In the event of a data breach, we will notify affected individuals within the legal timeframe as required by GDPR.

Security measures

We take the security of your personal data seriously and implement appropriate technical and organizational measures to protect it from unauthorized access, disclosure, alteration, or destruction. This includes:

a.
Encryption: We use encryption technologies to safeguard your data both during transmission and at rest.
b.
Access Control: We limit access to personal data to employees and contractors who require it for their work.

Modifications

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or the services we provide.

Any changes will be posted on this page, and if significant, we will notify you via email or through a notice on our website. We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your data.

Contact information

If you have any questions or concerns about this Privacy Policy or your data, please contact us at info@quantflow.tech.