Privacy Policy
Introduction and Scope
This Privacy Policy outlines IXAGEN's practices regarding the collection, use, and protection of personal data for individuals who use our infrastructure-as-a-service (IaaS) and platform-as-a-service (PaaS) solutions. The policy applies across all jurisdictions in which IXAGEN operates, including the EU, North America, Japan, Singapore, Australia, the UK, and Switzerland.
This Privacy Policy is designed to comply with various international data protection regulations, including the General Data Protection Regulation (GDPR) in the European Union, the California Consumer Privacy Act (CCPA) in California, the Personal Information Protection Act (APPI) in Japan, the Personal Data Protection Act (PDPA) in Singapore, and other applicable laws. IXAGEN is committed to ensuring that personal data is handled in compliance with the highest standards of data protection and privacy.
For clarity, this Privacy Policy uses specific terms with the following meanings:
- 'Data Controller': The entity that determines the purposes and means of processing personal data. IXAGEN acts as the Data Controller for data collected through its services.
- 'Data Processor': A third-party entity that processes personal data on behalf of the Data Controller.
- 'Personal Data': Any information relating to an identified or identifiable individual, including but not limited to name, contact information, and IP address.
Data Controller and Contact Information
The Data Controller responsible for the collection and processing of personal data through IXAGEN's infrastructure-as-a-service (IaaS) and platform-as-a-service (PaaS) solutions is IXAGEN. IXAGEN determines the purposes and means of data processing and ensures compliance with all applicable data protection regulations.
If you have any questions, concerns, or requests regarding this Privacy Policy or the handling of your personal data, please contact us directly via our dedicated information page at [https://ixagen.com/information](https://ixagen.com/information).
In jurisdictions where a Data Protection Officer (DPO) or local representative is required, IXAGEN has appointed an individual to oversee data protection compliance. You may direct privacy-related inquiries to the DPO or representative through our [Contact Us](https://ixagen.com/information) page.
Types of Personal Data Collected
IXAGEN collects identity data to enable user identification and personalized interactions. This includes information such as name, username, and email address, as well as other identifiers necessary for account creation and management.
To facilitate communication with our users, IXAGEN collects contact data, including mailing address, phone number, and email address. This information is used for service updates, billing inquiries, and support communications.
If applicable, IXAGEN may collect financial data, such as billing information, transaction history, and payment card details, to process transactions and manage billing for services. This information is stored securely and in compliance with applicable financial regulations.
IXAGEN collects technical data to improve the security and performance of our services. This includes IP addresses, device information, browser type, operating system, and similar technical identifiers that help us monitor and analyze system performance.
We collect usage data to understand how users interact with our services and improve our offerings. This includes data on browsing behavior, interactions with website elements, session duration, and page views. Usage data is typically aggregated and anonymized for analytical purposes.
In certain cases, IXAGEN may collect special categories of data if necessary and permitted by applicable law. This may include data regarding a user’s preferences or sensitive data relevant to service delivery, collected only with explicit user consent and handled with strict confidentiality.
Legal Basis for Data Processing
IXAGEN processes certain types of personal data based on the user’s explicit consent, where required by applicable law. This includes consent for marketing communications, optional data collection, or when processing special categories of data. Users have the right to withdraw consent at any time by contacting us through our [Contact Us](https://ixagen.com/information) page.
Some data processing is necessary for the performance of a contract with the user. This includes processing data for account setup, billing, service provision, and customer support. IXAGEN processes this data to fulfill our contractual obligations and to ensure a seamless user experience.
IXAGEN may process personal data to comply with legal obligations, such as financial reporting, regulatory compliance, or responding to lawful requests from public authorities. This data processing is mandatory to ensure compliance with applicable laws and regulations.
In certain cases, IXAGEN processes personal data based on our legitimate interests, provided that such processing does not override the user’s rights and freedoms. Legitimate interests include data analysis for service improvement, security enhancements, fraud prevention, and marketing efforts. Users may object to processing based on legitimate interests by contacting us.
IXAGEN complies with data protection laws applicable in different jurisdictions, including GDPR (EU), CCPA (California), and other local regulations. Each jurisdiction may have specific requirements for legal bases, and IXAGEN ensures compliance with these requirements as applicable to the region where users reside.
Purpose of Data Collection and Processing
IXAGEN collects and processes personal data to deliver our infrastructure-as-a-service (IaaS) and platform-as-a-service (PaaS) solutions. This includes account creation, service customization, user authentication, and maintenance to ensure service functionality and performance.
We use collected data to understand usage patterns, identify areas for improvement, and enhance the user experience. By analyzing aggregated data, IXAGEN can optimize its services and make data-driven improvements based on user feedback and behavior.
Where permitted by law, IXAGEN may use personal data to send marketing communications, promotions, or updates on new features and services. Users have the option to opt-out of marketing communications at any time by contacting us through our [Contact Us](https://ixagen.com/information) page or by using the unsubscribe link in our emails.
To ensure a secure environment, IXAGEN processes data related to user access and interactions for fraud detection, security monitoring, and compliance with regulatory requirements. This helps protect both our users and our platform from unauthorized access or malicious activity.
We collect personal data to provide effective customer support, respond to inquiries, and resolve issues. This includes data collected through support channels to facilitate timely and accurate assistance to our users.
User Rights
Users have the right to request access to their personal data held by IXAGEN. This includes details on the type of data collected, the purpose of processing, and with whom the data may have been shared. To make a request, please contact us through our [Contact Us](https://ixagen.com/information) page.
If any personal data held by IXAGEN is inaccurate or incomplete, users have the right to request corrections or updates. Requests for data rectification can be submitted via our [Contact Us](https://ixagen.com/information) page.
Users may request the deletion of their personal data under certain circumstances, such as when the data is no longer needed or if consent has been withdrawn. IXAGEN will review and respond to deletion requests in compliance with applicable laws. Contact us for deletion requests at [https://ixagen.com/information](https://ixagen.com/information).
Users have the right to request the restriction of their data processing in specific circumstances, such as while contesting data accuracy or if the data processing is unlawful. Users can make such requests by reaching out to us at [https://ixagen.com/information](https://ixagen.com/information).
IXAGEN users may request a copy of their personal data in a structured, commonly used, and machine-readable format. Where technically feasible, users may also request the transfer of their data directly to another service provider. Submit data portability requests via our [Contact Us](https://ixagen.com/information) page.
Users have the right to object to the processing of their personal data if it is based on legitimate interests or for direct marketing purposes. IXAGEN will honor objections unless there are compelling legitimate grounds for processing. To exercise this right, please contact us through our [Contact Us](https://ixagen.com/information) page.
Depending on the jurisdiction, additional rights may apply. For instance, California residents have specific rights under the CCPA, while EU residents have rights under GDPR. IXAGEN will respect these rights and facilitate requests in compliance with local regulations. Contact us for more details based on your jurisdiction.
To exercise any of the rights listed above, users can contact IXAGEN via our dedicated information page at [https://ixagen.com/information](https://ixagen.com/information). We will respond to requests promptly and in accordance with applicable laws.
Consent Management
Where required by law, IXAGEN obtains user consent before collecting personal data for specific purposes, such as marketing communications, optional data collection, or processing special categories of data. Users will be informed of the purpose of data collection at the time consent is obtained.
Users have the right to withdraw their consent at any time. Withdrawal of consent does not affect the legality of data processing conducted prior to withdrawal. To withdraw consent, users may contact us at [https://ixagen.com/information](https://ixagen.com/information).
If a user withdraws consent, IXAGEN may no longer be able to provide certain services or personalized features. We will inform users if their withdrawal of consent affects the availability of services.
Automated Decision-Making and Profiling
IXAGEN may use automated decision-making processes to analyze and improve the efficiency of our services. Automated decisions are based on specific algorithms and data analytics to ensure reliable outcomes. These processes may include account verification, fraud detection, or personalization of service offerings.
Profiling is used to understand user preferences, personalize services, and improve customer experience. IXAGEN uses profiling solely to enhance service quality and does not use profiling for any discriminatory practices or decisions that would have significant legal effects on users.
Users have the right to request human intervention, express their views, or contest automated decisions that significantly impact them. To exercise these rights, users may contact IXAGEN through our [Contact Us](https://ixagen.com/information) page. We will review such requests promptly and address any concerns in compliance with applicable laws.
Data Sharing and Third-Party Disclosure
IXAGEN may share personal data with trusted third-party service providers that assist in providing our services. These providers include cloud hosting services, data analytics platforms, payment processors, and customer support solutions. Each third party is selected based on strict data protection and security standards.
Data is shared with third parties solely to enable efficient service delivery, enhance user experience, perform analytics, and ensure secure transactions. We do not sell or disclose personal data to third parties for their marketing purposes without explicit user consent.
IXAGEN requires third-party processors to comply with our data protection policies, confidentiality requirements, and security standards. All third parties are bound by data processing agreements, ensuring they handle personal data solely for authorized purposes and with appropriate safeguards.
IXAGEN may disclose personal data to public authorities or other third parties when legally obligated to do so. This may include compliance with court orders, regulatory mandates, or lawful government requests. Such disclosures are made only when legally required and are limited to the minimum data necessary.
International Data Transfers
IXAGEN operates globally and may transfer personal data to data centers and partners located in different countries. This includes, but is not limited to, transfers within the EU, North America, Japan, Singapore, Australia, the UK, and Switzerland, depending on the user’s location and the services provided.
To ensure data protection in line with applicable regulations, IXAGEN employs appropriate safeguards, such as Standard Contractual Clauses (SCCs), Binding Corporate Rules (BCRs), and other lawful transfer mechanisms where required. These measures are in place to maintain high levels of data protection, even when data is transferred internationally.
Personal data may be transferred to countries with different data protection laws than the user’s home country. IXAGEN commits to protecting data in accordance with this Privacy Policy and applicable international standards, ensuring that all data transfers comply with relevant regulatory requirements and respect user rights.
Data Retention and Deletion Policy
IXAGEN retains personal data only for as long as necessary to fulfill the purposes for which it was collected, including meeting legal, accounting, or reporting requirements. The retention period may vary based on the data type and applicable legal obligations.
The duration for which data is retained is determined by factors such as the nature of the data, the purpose of processing, user expectations, and legal requirements. We evaluate these criteria regularly to ensure that data is retained for an appropriate length of time.
Upon expiration of the retention period or upon a user’s valid request for data deletion, IXAGEN will securely delete or anonymize personal data to ensure it is no longer identifiable. Our deletion processes follow best practices and comply with applicable legal requirements to protect user privacy.
Data Security and Integrity
IXAGEN employs industry-standard security measures to protect personal data from unauthorized access, use, disclosure, alteration, or destruction. These measures include encryption, access controls, network security protocols, and regular security reviews to ensure a high level of data security.
To maintain data security and integrity, IXAGEN conducts regular audits, vulnerability assessments, and risk analysis. These assessments allow us to proactively identify and address potential security risks, ensuring that personal data is safeguarded continuously.
In the event of a data security incident, IXAGEN follows a structured incident response protocol to assess, contain, and mitigate the impact of the incident. We will notify affected users and regulatory authorities as required by law and take steps to prevent future incidents.
Cookies and Tracking Technologies
IXAGEN uses various types of cookies to enhance the user experience, including essential cookies for website functionality, performance cookies for usage analysis, and marketing cookies to deliver relevant content. These cookies help us improve service quality and understand how users interact with our platform.
Essential cookies enable core functionalities such as security and access management. Performance cookies allow us to analyze site usage, helping us optimize performance. Marketing cookies are used to provide personalized experiences by tracking user preferences and behavior on our site.
Where required by law, IXAGEN provides a consent banner allowing users to accept or reject specific types of cookies, except those that are strictly necessary for site operation. Users can manage their cookie preferences at any time through our cookie settings interface.
Users have the right to opt-out of non-essential cookies and tracking technologies. Most browsers allow users to block or delete cookies. However, disabling certain cookies may impact the functionality and performance of the IXAGEN website.
Policy on Minors
IXAGEN’s services are intended for users who are at least 18 years of age. We do not knowingly collect or process personal data from minors without verified parental consent in compliance with applicable laws.
If we become aware that a minor under the age of 18 has provided personal data without parental consent, IXAGEN will promptly delete such data. Parents or guardians who believe that their child has provided us with personal information can contact us through our [Contact Us](https://ixagen.com/information) page to request data removal.
IXAGEN is committed to protecting the privacy of minors. We implement additional safeguards to ensure that any data inadvertently collected from minors is not used for marketing or profiling and is handled in strict compliance with privacy laws applicable to minors.
Third-Party Links
IXAGEN’s website and services may contain links to third-party websites, applications, or services that are not operated by IXAGEN. We do not control these third-party sites and are not responsible for their privacy practices. We encourage users to review the privacy policies of any third-party sites they visit.
When users click on a third-party link, they will be directed to that third party’s website. Please be aware that these external sites operate independently of IXAGEN, and the data collection practices on these sites may differ. IXAGEN disclaims liability for any interactions users may have with third-party sites accessed through our platform.
Data Breach Notification Protocol
In the event of a data breach that may pose a risk to user privacy, IXAGEN will notify affected users promptly. Notification will include details of the breach, potential impact, and steps taken to mitigate risks. Users will receive guidance on additional actions they may take to protect their data.
IXAGEN complies with data breach notification requirements under GDPR, CCPA, and other applicable regulations. Where required, we will notify relevant data protection authorities and impacted individuals within the stipulated timeframes.
We strive to issue data breach notifications within 72 hours of becoming aware of the incident, in accordance with GDPR and other applicable laws. If additional time is required to assess the breach, IXAGEN will provide preliminary notification and follow up with further details as they become available.
Updates to Privacy Policy
IXAGEN may update this Privacy Policy periodically to reflect changes in our practices, legal requirements, or other operational needs. Any changes will be made in accordance with applicable privacy laws and standards.
When significant updates are made to the Privacy Policy, IXAGEN will notify users by posting a notice on our website or by directly communicating with users, as required by law. We encourage users to review this Privacy Policy regularly to stay informed about how we protect their data.
The date of the most recent revision to this Privacy Policy will be indicated at the top of the document. Users are advised to check this date to ensure they are aware of the current terms regarding their data protection and privacy.
Jurisdiction-Specific Clauses
For users located in the European Union, IXAGEN complies with the General Data Protection Regulation (GDPR). This includes the rights to access, rectify, erase, restrict processing, data portability, and to object to processing. IXAGEN also appoints a representative in the EU for any GDPR-related inquiries or complaints, which can be directed through our [Contact Us](https://ixagen.com/information) page.
IXAGEN complies with the UK GDPR for users in the United Kingdom, ensuring data protection in line with the Data Protection Act 2018. UK users have similar rights to those in the EU under GDPR, and IXAGEN provides contact support for any data protection concerns through our [Contact Us](https://ixagen.com/information) page.
For California residents, IXAGEN complies with the California Consumer Privacy Act (CCPA), providing rights to access, delete, and opt-out of the sale of personal data. California users can exercise these rights or learn more about them by contacting us at [https://ixagen.com/information](https://ixagen.com/information).
In compliance with Japan’s Act on the Protection of Personal Information (APPI), IXAGEN ensures user data protection for Japanese residents. Japanese users can request access, correction, deletion, or limitation of their personal data by contacting us through our [Contact Us](https://ixagen.com/information) page.
For users in Australia, IXAGEN adheres to the Australian Privacy Principles (APPs) as required by the Privacy Act 1988. Australian users can request access to, and correction of, their data or submit inquiries related to their data privacy through our [Contact Us](https://ixagen.com/information) page.
IXAGEN follows the Swiss Federal Act on Data Protection (FADP) for users in Switzerland, providing similar rights to GDPR in terms of data access, correction, and deletion. Swiss residents can reach out with inquiries through our [Contact Us](https://ixagen.com/information) page.
For users in Singapore, IXAGEN complies with the Personal Data Protection Act (PDPA), ensuring lawful handling of personal data and the protection of privacy rights. Singaporean users can exercise their rights or make inquiries by contacting us at [https://ixagen.com/information](https://ixagen.com/information).
Governing Law and Dispute Resolution
This Privacy Policy, as well as any disputes arising out of or related to it, shall be governed by and interpreted in accordance with the laws of Singapore, without regard to conflict of law principles. IXAGEN complies with applicable data protection laws in all jurisdictions where we operate.
In the event of a dispute regarding data privacy or data protection practices, IXAGEN encourages users to first reach out to us through our [Contact Us](https://ixagen.com/information) page. We will work to resolve any issues amicably. If the issue remains unresolved, users may pursue legal remedies in accordance with applicable laws.
Any legal actions or proceedings arising out of this Privacy Policy shall be subject to the exclusive jurisdiction of the courts in Singapore, unless otherwise required by mandatory laws of other jurisdictions where IXAGEN operates.