Beijing Vion Technology Privacy Policy

Prompting Clause

Thanks for your trust and acception, we deeply know the significance of users information safety and will take security measures to ensure the identity information is safe and controllable in accordance with requirements of laws and regulations. On that basis, Beijing Vion Technology, Inc.(hereinafter referred to as “Vion” or We) formulates the Legal Statement and Privacy Policy (hereinafter called Statement and Policy) to remind you to read carefully and fully understand the Legal Statement and Privacy Policy before using the website, client products, mobile products from IoT of Vion and new form of products and services appeared with technology development. Relevant products and services can be used after fully apprehend and agree with the policy. We will regard the action that you start to use Vions products and services as the acception and agreement of this Statement and Policy.

Any question, opinion or suggestion for this statement and policy, you can contact us by official website (https://www.vionvision.com/) or service call (+8610-50961630).

Definition

Vion Official Website: Domain Namehttps://www.vion-tech.com; https://www.vionvision.com

Vion BI Platform: Vion BI Platform website, including PC and mobile terminal. Domain Name: https://store.keliuyun.com ; https://retail.vionyun.com

 

Vion Cloud Service: Services provided by Vion Cloud Platform, hereinafter referred to as Cloud Service.

Vion IOT Hardware: Hardware products provided by Vion, including smart sensors and CBOX, can be used along with Vion cloud service.

User info: Account that you registered on the Vion Cloud Platform, and the members info that you submitted or collected by us, like user name, phone number, email address, etc.

Business data: Different from user info, it refers to the video analysis data collected from hardware which installed in different scenarios, and the statistical results calculated based on the collected data.  

Legal statement

. Right belonging

1.1 Logo, “Vionvision”, “Vion” or other word, image and image-text on the Vion Cloud Platform are both owned by Vion, which shall not be used by anyone without written authorization of Vion.

1.2 Intellectual property of all products, services, technologies and all programs (hereinafter referred to as “technical service”) from Vion Cloud Platform are both owned by Vion. 

1.3 Your business data are owned by yourself. Vion shall not authorize or expose your business data to The Third Party without your written permission, except from providing technical services and unless otherwise agreed by the parties.

. Liability limits

2.1 Users info on the Vion Cloud Platform only provided by users, who shall be take full responsibility for any info provided by themselves in accordance with the law.

2.2 We herein remind you that shall abide by local laws during the use of cloud service, and shall not endanger cyber security. Vion will not take any responsible for your improper use of cloud service.

Privacy Policy

Beijing Vion Technology, Inc. (hereinafter referred to as We) respect and protect user info. According to the Privacy Policy, your info will be collected and processed when the cloud service is being used. In order to introduce our info processing way clearly, we suggest that read the Privacy Policy completely to understand the way of preserving your privacy.

Any question, opinion or suggestion, just contact us by every way provided by Vion.

Following contents will be introduced by the policy:

Ⅰ. Area Covered by the Agreement

. Collect and Use User Info

. Open User Data

. Use of Cookie

. Protect and Save User Data

. Your Rights

. Special Agreement For the Underage

Ⅷ. International Data Transmission and Data Security

. Privacy Policy Update

. Contact us

Ⅰ. Area covered by the agreement

1.1 The privacy policy applies to the website, client products, mobile products from IoT of Vion and new form of products and services appeared with technology development.

1.2 The privacy policy not applies to the service provided by other third party, such as Alibaba Cloud, Microsoft Cloud, which have connected with the cloud service, that means the service provided by these third party not applies to the privacy policy.

1.3 For your business data are owned by yourself, special demonstration is that you shall have another privacy policy with your user and protect their personal data according to the clauses agreed by the parties, if youd like to provide service to your user by technical services of Vion.

Ⅱ. Collect and Use User Info

Collection of user info

2.1 Provide technical service

Following info will be collected for the better service can be gained

Log info: We will collect detailed usage automatically and save as web blog when the service provided by our website or client is used. Such as IP address, email address, web page access record, updated data and content, etc.

We will collect, use, save, provide and protect the user info in accordance with this policy and corresponding product service agreement when we provide business function or specific service; we will illustrate the range and purpose of info collection separately and will collect and provide user info after obtained permission when user info collection exceeded the area covered by this policy and corresponding product service agreement; Corresponding product function and service will be influenced if above info not provided except the original that being used.

Usage of user info

2.2 User info submitted and collected will be used for following purpose:

2.2.1 In order to provide service and ensure the whole process is completed, we will send message and notice including but not limited to the necessary verification code and push notification (except marketing info) when used service;

2.2.2 In order to maintain and improve service, we will design, develop and promote brand-new product and service perhaps on the basis of user info data and business data (like abnormal data, device offline etc. );

2.2.3 In order to improve service security, ensure operation safety and account error can be identified smoothly to prevent security risks, such as phishing, fraud, bug, computer viruses, network attack and intrusion, etc., we may use your info, integrate corresponding web log and take measures, like record, audit, analysis and process according to the law;

2.2.4 We will inform and obtain your permission before the usage of user info that exceeded the area covered by this policy.

Ⅲ. Open User Data

We shall not share user info with other organization and person without permission, however, we may provide user info with others in accordance with the need of laws and regulations, lawsuit, arbitration or the requirement of judicial office, administrative in legal conditions.

Share, transfer and exposing the user info in public under following situations are no need to obtain permission in advance:

3.1 Relevant with national security;

3.2 Relevant with public security, public health and significant public interest

3.3 Relevant with criminal investigation, sue, judgement and execution;

3.4 Protect you and another persons life, property and other significant legal rights, but hard to obtain your permission;

3.5 Personal info opened by yourself in public;

3.6 Personal info exposed by public legally, such as legal news report, government info publicity, etc.

Ⅳ. Cookie

When you use Vion Cloud service, in order to record the basic information and permitted information of the logged-in user as well as necessary configuration information, we will create a cookie on your computer to facilitate verification of your legal identity during subsequent use. The cookie file will be transmitted to the cloud through https encryption for identity verification, but your cookie information will not be recorded in the cloud.

When you use IOT products alone, we will not create a file as cookie in your computer, mobile device, and Vion cloud. 

. Protect and Save User Data

5.1 We plays a high value on users information security. We protect the user info by taking every reasonable measures from physics, electronics and management, such as ensuring legal identity of cloud service by digital signature, preventing access without user authentication, ensuring legal business operation by the management of rights and user role, ensuring the save security of communication and key info by encryption technique. We also have training lessons of security and privacy protection for our staff to enhance their recognition of protecting user info, moreover, the service is deployed on Alibaba Cloud China, Alibaba Cloud Singapore, Alibaba Cloud Dubai, Microsoft Cloud Germany server which can improve O&M (Operation and Maintenance) security by their advanced technology.

Specific encryption plan as follows:

Business Scenario

Strategy

Vion-technologies connect to server

Apply public key encryption of RSA to every device

Configuration file encryption

Apply reversible encryption which is implemented through jasypt encryption for sensitive configuration files in partial scenarios  

Data Transmission

Transfer data by HTTPS

Password

The password is first encrypted with MD5 plus salt, then the database is encrypted with bcrypt

Personal Info

Personal info like username/email address/phone number etc. are stored using AES encryption

 

5.2 In order to avoid collecting irrelevant user info we will take reasonable measures, and retain the user info according to the storage period of personal info to ensure finishing the whole business operation on the condition that current situation meets the requirement of this policy. We will delete or anonymize the user info when the log out been performed exactly.

5.3 Please use complicated password to ensure the account safety. We will try our best to guarantee the security of any message sent to us and will take relevant responsible for your damaged legal rights, such as the user info been unauthorized access, exposed in public, tampered or destructed because of the major fault in management.

5.4 We will inform you the relevant situation by E-mail, message, phone and push notification or other way timely according to the requirement of laws and regulations when the user info leakage or loss happened unfortunately, such as the basic situation of the event and relevant influences, the measures that have taken or will be taken, the suggestions of self precaution and risk reduction, remedial measures, etc. The announcement will be put out reasonably and effectively if its hard to inform one by one.

5.5 Reasonable measures will be taken to protect the user info security including stop the collection activity timely if Vion service been ceased, such as the notification of stopped operation will be informed one by one or by the announcement, and the personal info collected before will be deleted or anonymized. For your business data, we will pass on to you to save by relevant technology if necessary.

5.6 We will try our best to restore your data at the first time and inform the results timely if encounter force majeure, including but not limited to nature disaster, such as flood, earthquake, windstorm, etc., and social events, such as war, turmoil, government behavior, etc.

5.7 Data of personal info (user name, e-mail address) will be anonymized when you choose to log out the account. Please contact chenjm@vion-tech.com.

5.8 Data of enterprise, user under enterprise, correlation between enterprise and device and other business data related to the enterprise name will be anonymized when you choose to log out the enterprise. Data anonymization is used to protect your data security from the privacy data disclosure. Please contact chenjm@vion-tech.com.

 

. Your Rights

6.1 Personal rights you owned as follows, namely have rights to require: 

• Access personal data related to yourself (registration info can be viewed in the user center)

• Update personal data to ensure the accuracy(change password, phone number, e-mail, etc. in user center)

• Delete personal data in the record in some cases(log-off account or enterprise in user center to delete personal data on the platform, and the data will be deleted from our database in one to two working days)

•   Restriction for processing the personal data in some cases(contact engineer that service you at first or contact us by the way introduced in the clause ten if you have question about the accuracy of personal data; the engineer who control the data can verify the accuracy of personal data in a certain period of time. The usage of personal data shall require to be limited rather than deleted, which is illegal

•  Data portability (every user shall have rights authorized by relevant legislators to receive their personal data from the data controller in a structured, common and machine-readable format. We will send the data that you want to send to another data controller in one month just contact us by the way introduced in the clause ten, because users have rights to transfer the type of data to another data controller)

•  Object to process the personal data in some cases (such as processing your data for the direct marketing), specific situation as follows:

• On the basis of the device number and production record related to the whole statistics of platform but not the relevant info of theirs. Contact us by the way introduced in the clause ten and we will delete the data related to yours in the whole statistics within one month if you object the operation)

6.2 These rights may be limited in some cases, which means we also can retain the data even though the consent has been recalled, such as we can verify that we have legal requirement to process your data, or another personal info will be leaked if provide these info, or these info is prohibited to expose by law.

6.3 Please feedback and offer advice to the engineer that service you at the first time if you want to exercise the rights of your personal data

6.4 You also have rights to sue for unresolved problems to the regulator especially the data-protection authority of your permanent residence or the member state of your working place. We hope that we can deal with any question of the way to process data.

6.5 Please note that personal data must be provided in accordance with the law or contractual obligations if necessary. Otherwise, we can not manage our contractual relationship or fulfill our obligations.

 

. Special Agreement For the Underage

7.1 Products and services which mainly provided to adults are prohibited to use by the underage.

 

Ⅷ. International Data Transmission and Data Security

8.1 The data collected may transfer and save globally by us or our service provider, because of the global operation company we are. It also may process by Vion outside the European economic area (such as in China). The data shall fully protect by the standard contract terms and privacy shield certification approved by the European commission or the binding companys regulation of supplier processor if the data transferred outside the European economic area and the state without appropriate binding of the European commission. Please inform us if you have any problem or hope to receive the copy of relevant document.

8.2 Technology and security measures have been taken to protect your data owned by us from controlling accidentally or deliberately, losing, damaging or unauthorized access.

8.3 There are multiple security measures to guarantee the data security of user and device

1. The agreement of security algorithm and transmission encryption are taken by Data communication.

2. All users data are both encrypted and saved in the Alibaba Cloud, Microsoft Cloud server, which located in China, Singapore, Dubai, Germany currently and the O&M (Operation and Maintenance) team of Alibaba Cloud, Microsoft Cloud data center provides 24/7 continuous monitoring to prevent unauthorized data access, unauthorized behavior and the environmental risk, in order to guarantee the security of transmitting procedure and the integrity and accuracy of data transmitting.

3. We also formulate a series security measures on the system and control level apart from above technical security measures, such as the definition of position description and position role, providing the training of security and privacy, improving the data protection consciousness of staff, controlling the access rights, etc., in order to prevent data from losing, illegally used, unauthorized access, exposing, tampering or destroying.

Please contact the engineer who service you at first time immediately and inform us if you consider that the data transmitting between us is no longer sage in terms of any reason.

We will inform you by e-mail, phone or push notification and provide suggestion on reducing or avoiding related risks as soon as possible, for any security incident that influences your personal data security. When necessary, we will take remedial measure timely according to the contingency plan for internal security incident, and report to relevant competent authorities according to the regulation.

 

. Privacy Policy Update

9.1 Our privacy policy may be revised

9.2 Without the explicit consent, your rights to be enjoyed in accordance with the privacy policy shall not be limited.

9.3 Any modification to the privacy policy will publish on the agreement in the future and we will inform you by e-mail at the right moment. We will update the agreement and inform you when the e-mail can be used later. Please remember to view any update or change of our privacy policy because you need to review and agree the agreement again for every update.

. Contact us

Contact us by official websitehttps://www.vionvision.com/or service call (+8610-50961630) if you have any question and opinion for the statement and policy or for the Vion or for the practice and operation of the privacy policy.

 

You can contact the engineer who service you at first time directly and feedback your opinion if the above contact ways are useless.