Satori CI, a Delaware corporation (“SatoriCI”, “we” or “us”) provides this Privacy Policy to inform users of our website at https://www.satori-ci.com/ (including all subdomains, the “Website”) and our software-as-a-service platform (the “Service”) of our policies and procedures regarding the collection, use and disclosure of personal data and other information. This Privacy Policy explains what data we collect when you use the Website and/or the Service, why we collect the data, how it is used and your rights and choices.
While providing our Service, we may collect information about our customers’ Users on behalf of our customers. Our use of information on behalf of our customers is governed by our agreement with the applicable customer and the customer’s own privacy policies. We cannot control and are not responsible for the privacy policies or privacy practices of our customers or any other third parties.
By using or accessing the Website or the Service and providing us with your Personal Data, you are accepting the practices described in this Privacy Policy, and you are consenting to our processing of your data as set forth in this Privacy Policy now and as amended by us (for information on how we may change our Privacy Policy, please read the “Privacy Policy Changes” section below). If you have any questions or comments about this Privacy Policy or our use of your Personal Data, please contact us.
Information We Collect And How We Use It
Collection of Information:
We have collected the following categories of information from our users within the last twelve (12) months:
• Identifiers, including name, email address, phone number, IP address and cookie identifiers,
• Certain financial-related information, including credit card number and billing and shipping address,
• Protected classification information, such as age and gender,
• Commercial information, including purchasing history of our business customer’s employees and representatives who use our Service,
• Internet or other similar network activity, such as browsing history, information on your interaction with our Website, browser type, and referring site,
• Location data, and
• Professional or employment related data with respect to our job applicants and our business customer’s employees and representatives who use our Service, such as professional title.
Categories of Sources
We obtain the personal information of our users from the following categories of sources:
I. Personal Data That You Provide To Us
When you interact with the Website or the Service, SatoriCI may gather information that, alone or in combination with other information, could be used to identify you (“Personal Data”), as described below. If you are an EU data subject, please see the “EU Data Subject” section below for information on your rights in relation to the Personal Data we hold about you.
a) Personal Data used to provide the Service and respond to requests
When users sign up for the Service, users are required to authenticate with their version control system identity (GitHub or Bitbucket). When users log in to the Service using sign-in services such as OAuth (for example, login with a GitHub account), these services will authenticate a user’s identity and provide the user with the option to share certain Personal Data, such as name and email address(es), with us. If you purchase one of our paid plans, we will also collect payment and billing information such as credit card details and billing address. We use this data to provide you with access to the Service and/or the Website, contact you regarding your access and use of the Service and/or the Website or to notify you of important changes to the Service. For EU data subjects, such use is necessary for the performance of the contract between you and us.
On some sections of the Website, you may complete a web form to give your Personal Data to us directly, such as on our “Contact Us” page. We also collect Personal Data (such as your name and contact details, phone number) when you request information, including a product demo, ask to download content (such as white papers), register for a webinar or other event, or subscribe to email lists. We will use your contact information to respond to your request. For EU data subjects, such use is necessary to respond to or implement your request. If you send us a request or question regarding the use of the Service (for example via a support email or via one of our feedback mechanisms), we may publish it (in anonymous form only) in order to help us clarify or respond to your request or to help us support other users.
SatoriCI collects Personal Data that you provide through the Service only insofar as is necessary or appropriate to fulfill the purpose of your interaction with SatoriCI, such as providing you with the Service and/or answering any requests regarding the Service as described above. You can always refuse to supply Personal Data, however doing so may prevent you from accessing the Service or engaging in certain activities on the Website or the Service.
b) Personal Data used to process applications for employment
When you submit a job application through the Website, we will collect your resume and any additional information that you elect to provide to us, including but not limited to employment history and education. We will use your contact details and data about your employment history and education to conduct job interviews, evaluate your application, and as is otherwise needed for recruitment. For EU data subjects, this use is necessary to respond to your request to process your application for employment.
c) Personal Data used for marketing
We will use your email to tell you about your Service usage, new features, solicit your feedback, or just keep you up to date with what’s going on with SatoriCI and our products, upcoming events or other promotions. If you change your mind about receiving information from us or about the use of information volunteered by you, please send us a request specifying your new choice. Please contact us as specified under the “Contact Us” section. You may also choose to opt out of receiving such emails by following the unsubscribe instructions included in these emails, or by accessing the email preferences in your account settings page. If you download content from the Website, we may also use your phone number to contact you directly by phone, in connection with such new products and services, upcoming events or other promotions.
Where required by applicable law (for example, if you are an EU data subject), we will only send you marketing information by email or mail, or contact you by phone, if you consent to us doing so. When you provide us with your consent to be contacted for marketing purposes, you have the right to withdraw your consent at any time by following the instructions to “opt-out” of receiving marketing communication in each marketing email we send you. In addition, if at any time you do not wish to receive future marketing communications or wish to have your name deleted from our mailing or calling lists, please contact us at privacy@satori-ci.com. Please note that if you opt out from marketing communications, we may still contact you regarding issues related to our Service and to respond to your requests.
II. Automatically Collected Information
Like most hosted service operators, SatoriCI collects information of the sort that web browsers and servers typically make available, such as the browser type, language preference, referring site and the date and time of each visitor request and store it in log files. SatoriCI also collects Internet Protocol (“IP”) addresses, which can be used to identify the location from which your computer is connecting to the Website, for providing the Service and for support purposes.
SatoriCI also collects statistics about the behavior of visitors to the Website and the Service through cookies and similar technologies. We also allow some others to use cookies as described in the “Cookies” section below. SatoriCI’s purpose in collecting such information is to better understand how SatoriCI’s visitors use the Website and the Service and to improve your access to and use of the Website and the Service.
Use of such automatically collected information is necessary for the performance of the contract between you and us, to the extent we process information that is needed for providing the Service and for support purposes, or is in our legitimate interest in understanding how the Service is being used by you and enhancing your experience on our Website and on the Service.
III. Information We Process On Behalf Of Our Customers
In providing the Service to our customers, we process on behalf of customers certain information that may include Personal Data, relating to customers’ employees, contractors or other users (“Users”) they transmit or otherwise submit to our Service. While our customers or Users decide what data to submit, this information typically includes email address and information relating to tests results.
SatoriCI collects, aggregates, and stores metrics and data relating to, generated by, provided in connection with, or derived from customers’ use of the Service (“Usage Data”) in order to provide, maintain, support, enhance, develop and improve the Service and
SatoriCI‘s service offerings. SatoriCI will not disclose individual metric or usage data other than in an aggregated and de-identified form. For EU data subjects, this use of your Personal Data is necessary for our legitimate interests in understanding how the Service is being used by you and to improve your experience on it.
Data Retention
We will retain Personal Data that our customers provide to us through the Service for the period necessary to fulfill the purposes outlined in this Privacy Policy unless a longer retention period is required or permitted by law. We will retain Personal Data that we process on behalf of our customers for the duration set forth in the applicable customer contract or as otherwise instructed by the customer.
Bulletin Boards/Chat Rooms
If you submit a post or participate in a discussion on a bulletin board or chat room on the Website or the Service, you should be aware that any Personal Data you submit there can be read, collected, or used by other users of these forums, and could be used to send you unsolicited messages. We are not responsible for the Personal Data you choose to submit in these forums.
Disclosure Of Personal Data
In the preceding twelve (12) months, we have disclosed the following categories of personal information for a business purpose:
• Identifiers,
• Certain financial-related information,
• Protected classification information,
• Commercial information,
• Internet or other similar network activity,
• Location data, and
• Professional or employment related data.
We share personal information for a business purpose with various categories of third parties. SatoriCI discloses Personal Data only to those of its employees, contractors, and service providers that (1) need to know that data in order to perform certain services and functions on SatoriCI’s behalf and (2) have agreed to data protection and confidentiality obligations requiring to protect data. Third-party service providers include: (i) providers of payment processing, customer support services and hosting (which support us in the provision of the Service and maintenance of the Website), (ii) web analytics service providers (which help us collect statistics and other information, including through cookies, about the behavior of users of the Website and the Service – for more details, please see the “Use of cookies” section below); (iii) marketing and sales automation tools that allow us to manage marketing and sales processes; (iv) phone and chat communication tools that allow us to communicate with prospects and customers; (v) integration tools that allow us to capture data in one platform and send it to another; (vi) survey and poll tools that allows us to capture information about our Service or Website; and (vii) event and meeting platforms that allow us to host and manage virtual and in-person events. Pursuant to our instructions, these parties may access, process or store Personal Data in the course of performing their duties to us and only as necessary to provide the services we request.
SatoriCI may also disclose Personal Data when required to do so by law, such as to comply with a subpoena, bankruptcy proceedings, or similar legal process, or in response to lawful requests by public authorities, including to meet national security or law enforcement requirements, or when SatoriCI believes in good faith that disclosure is reasonably necessary to protect the property or rights of SatoriCI, third parties, or the public at large.
SatoriCI may disclose Personal Data in connection with a merger, acquisition, or sale of all or a portion of its assets (a “Corporate Transaction”). If SatoriCI is involved in a Corporate Transaction, you will be notified either via email and/or a prominent notice through the Service of any change in ownership or uses of your Personal Data, as well as any choices you may have regarding your Personal Data or we will require any such buyer to agree to treat your Personal Data in accordance with this Privacy Policy.
In the preceding twelve (12) months, we have not sold our users’ personal information.
Access and Deletion Requests
You may contact us as indicated under the “Contact Us” section below and request that we provide you with a copy of your personal information or that we delete your personal information that we maintain on our systems. We will respond to your request within a reasonable timeframe. If you are an EU data subject or California resident, see your additional rights below.
Rights of Certain California Residents
The California Consumer Privacy Act (CCPA) provides certain California residents with the additional rights listed below. The CCPA temporarily exempts from these CCPA rights certain personal information reflecting a written or verbal business-to-business communication or transaction as well as data about SatoriCI’s employees, job applicants, contractors, controlling owners, directors, officers and medical staff (if any) in their capacities as such individuals at SatoriCI.
Right to Access. You have the right to request that we disclose certain information to you about our collection and use of your personal information over the past 12 months. Once we receive and confirm your verifiable consumer request, we will disclose to you:
• The categories of personal information we collected about you,
• The categories of sources for the personal information we collected about you,
• Our business or commercial purpose for collecting that personal information,
• The categories of third parties with whom we share that personal information, and
• The specific pieces of personal information we collected about you (which will also allow you to exercise your data portability right).
Data Portability Right. You have the right request that we provide you with access to the information above (under Right to Access) in a readily useable format that allows you to transmit (i.e., port) the information to another entity without hindrance. If you make a request under your right to request access, you will receive access to your information in a readily useable format.
Right to Delete. You have the right to request that we delete any of your personal information that we collected from you and retained, subject to certain exceptions. Once we receive and confirm your verifiable consumer request, we will delete (and direct our service providers to delete) your personal information from our records, unless an exception applies. You must contact the applicable business customers directly to delete your information that they have in their systems.
We may deny your deletion request or not delete some of your personal information, if retaining the information is necessary for us or our service provider(s) to:
- Complete the transaction for which we collected the personal information, provide a good or service that you requested, take actions reasonably anticipated within the context of our ongoing business relationship with you, or otherwise perform our contract with you.
- Detect security incidents, protect against malicious, deceptive, fraudulent, or illegal activity, or prosecute those responsible for such activities.
- Debug products to identify and repair errors that impair existing intended functionality.
- Exercise free speech, ensure the right of another consumer to exercise their free speech rights, or exercise another right provided for by law.
- Comply with the California Electronic Communications Privacy Act (Cal. Penal Code § 1546 et. seq.).
- Engage in public or peer-reviewed scientific, historical, or statistical research in the public interest that adheres to all other applicable ethics and privacy laws, when the information’s deletion may likely render impossible or seriously impair the research’s achievement, if you previously provided informed consent.
- Enable solely internal uses that are reasonably aligned with consumer expectations based on your relationship with us.
- Comply with a legal obligation.
- Make other internal and lawful uses of that information that are compatible with the context in which you provided it.
We may also limit our deletion to the extent permitted by applicable law.
Exercising Your Rights. To exercise your rights, please contact us as follows:
• Email us at privacy@satori-ci.com and provide the following information:
o Full name and email address associated with your use of our Service, and
o Your specific request (e.g., right to access, right to portability, or right to delete).
We will attempt to respond to a consumer request for access or deletion within 45 days of receiving that request. If we require more time, we will inform you of the reason and extension period in writing.
Only you, or someone legally authorized to act on your behalf, may make a verifiable consumer request related to your personal information.
You may only make a verifiable consumer request for access or data portability twice within a 12-month period.
Non-Discrimination. We will not discriminate against you for exercising any of your rights under the CCPA. Unless permitted by the CCPA, we will not:
• Deny you goods or services,
• Charge you different prices or rates for goods or services, including through granting discounts or other benefits, or imposing penalties,
• Provide you a different level or quality of goods or services, or
• Suggest that you may receive a different price or rate for goods or services or a different level or quality of goods or services.
However, we may offer you certain financial incentives permitted by the CCPA that can result in different prices, rates, or quality levels. Any CCPA-permitted financial incentive we offer will reasonably relate to your personal information’s value to SatoriCI and contain written terms that describe the program’s material aspects. Participation in a financial incentive program requires your prior opt in consent, which you may revoke at any time. We currently do not provide any financial incentives.
EU Data Subjects
Scope: This section applies if you are an EU data subject (for these purposes, reference to the EU also includes the European Economic Area countries of Iceland, Liechtenstein, Norway and, where applicable, Switzerland).
Data Controller: SatoriCI is the data controller of Personal Data provided to, or collected by or for, our Website and the Service, but we may act as data processor on behalf of our customers for Personal Data that we process on their behalf when providing the Service.
Your Rights: Subject to applicable law, you have the following rights in relation to your Personal Data:
• Right of access: If you ask us, we will confirm whether we are processing your Personal Data and, if so, provide you with a copy of that Personal Data along with certain other details. If you require additional copies of the data, we may need to charge a reasonable fee.
• Right to rectification: If your Personal Data is inaccurate or incomplete, you are entitled to ask that we correct or complete it. If we shared your Personal Data with others, we will tell them about the correction where possible. If you ask us, and where possible and lawful to do so, we will also tell you with whom we shared your Personal Data so you can contact them directly.
• Right to erasure: You may ask us to delete or remove your Personal Data, such as where you withdraw your consent. If we shared your data with others, we will tell them about the erasure where possible. If you ask us, and where possible and lawful to do so, we will also tell you with whom we shared your Personal Data with so you can contact them directly.
• Right to restrict processing: You may ask us to restrict or ‘block’ the processing of your Personal Data in certain circumstances, such as where you contest the accuracy of the data or object to us processing it. We will tell you before we lift any restriction on processing. If we shared your Personal Data with others, we will tell them about the restriction where possible. If you ask us, and where possible and lawful to do so, we will also tell you with whom we shared your Personal Data so you can contact them directly.
• Right to data portability: Effective 25 May 2018, you have the right to obtain your Personal Data from us that you consented to give us or that was provided to us as necessary in connection with our contract with you. We will give you your Personal Data in a structured, commonly used and machine-readable format. You may reuse it elsewhere.
• Right to object: You may ask us at any time to stop processing your Personal Data, and we will do so if we are processing your Personal Data for direct marketing and otherwise. However, if we are relying on a legitimate interest to process your Personal Data and we demonstrate compelling legitimate grounds for the processing we may continue.
• Rights in relation to automated decision-making and profiling: You have the right to be free from decisions based solely on automated processing of your Personal Data, including profiling, that produce a significant legal effect on you, unless such profiling in necessary for entering into, or the performance of, a contract between you and us or you provide your explicit consent.
• Right to withdraw consent: If we rely on your consent to process your Personal Data, you have the right to withdraw that consent at any time. Withdrawal of consent will not affect any processing of your data before we received notice that you wished to unsubscribe.
• Right to lodge a complaint with the data protection authority: If you have a concern about our privacy practices, including the way we handled your Personal Data, you can report it to the data protection authority that is authorized to hear those concerns.
You may exercise your rights by contacting us as indicated under “Contact Us” section below.
Legitimate Interest. “Legitimate interests” means the interests of SatoriCI in conducting and managing our organization. For example, we have a legitimate interest in processing your Personal Data to analyze how the Website and the Service are being used by you, and to ensure network and information security, as described in this Privacy Policy. When we process your Personal Data for our legitimate interests, we make sure to consider and balance any potential impact on you, and your rights under data protection laws. Our legitimate interests do not automatically override your interests. We will not use your Personal Data for activities where our interests are overridden by the impact on you, unless we have your consent or those activities are otherwise required or permitted to by law. You have the right to object to processing that is based on our legitimate interests. For more information on your rights, please see “Your Rights” section above.
Cookies
We and our partners use cookies or similar technologies to optimize the functionality of the Website, help us understand how the Website is used and provide you with interest-based advertising based upon a user’s browsing activities and interests.
Links to Other Websites
This Privacy Policy applies only to the Website and the Service and not to any third-party sites or hosted services you may find or access through our Website. If you submit Personal Data to any of those sites or services, your information will be governed by their privacy policies. We encourage you to carefully read the privacy policy of any site you visit or hosted service you use.
Social Media Widgets
The Website and the Service may include social media features, such as the Twitter button, and widgets, such as the Share this button or interactive mini-programs. These features may collect your IP address, which page you are visiting on the Website, and may set a cookie to enable the feature to function properly. Social media features and widgets are either hosted by a third party or hosted directly on the Website or the Service. Your interactions with these features are governed by the privacy policy of the company providing it.
Do Not Track
Currently, various browsers – including Internet Explorer, Firefox, and Safari – offer a “do not track” or “DNT” option that relies on technology known as a DNT header, which sends a signal to the websites visited by the user about the user’s browsers DNT preference setting. SatoriCI does not currently commit to responding to browser’s DNT preference across its Sites and Services, because no common industry standard for DNT has been adopted by industry groups, technology companies or regulators, including no consistent standard of interpreting user intent. SatoriCI takes privacy and choices regarding privacy seriously and will make efforts to continue to monitor the development around DNT browser technology and the implementation of a standard for DNT.
Security
We take precautions to ensure the security of your Personal Data. We follow generally accepted standards to protect the Personal Data submitted to us, both during transmission and once we receive it. When you enter your login information on the Service, all information to and from the service is encrypted using Transport Layer Security (TLS).
That said, like any hosted service provider, we cannot guarantee that unauthorized third parties or unauthorized personnel will not gain access to your Personal Data despite our efforts. You should note that in using the Website and the Service, your information will travel through third-party infrastructures which are not under our control.
We cannot protect, nor does this Privacy Policy apply to, any information that you transmit to other users of the Website or the Service. You should never transmit personal or identifying information to other users.
If you have any questions about security on the Website or the Service, you can contact us.
Privacy Policy Changes
Although most changes are likely to be minor, SatoriCI may change its Privacy Policy from time to time, and in SatoriCI’s sole discretion. If we make any material changes to this Privacy Policy, we will either notify you by email (sent to the email address specified in your account) or by means of a notice on the Website and/or within the Service prior to the change becoming effective, or as otherwise required by the applicable law. We encourage you to periodically review the Website for the latest information on our privacy practices. Your continued use of the Website and the Service after any change in this Privacy Policy takes effect will constitute your acceptance of such change.
Contact Us
If you have questions or concerns about this Privacy Policy, please contact us at:
Satori CI LLC
2093 Philadelphia Pike #2772
Claymont, DE19703
USA
Phone: +1 302 526 0557
Email: privacy@satori-ci.com