Data We Collect
At Verdantix, we gather information strictly to power our sustainability platforms and improve your experience. The data falls into four main categories:
- Account & Contact Information: Name, email, organization, job title, and communication preferences.
- Usage & Interaction Data: Pages visited, feature usage, dashboard interactions, and customer support tickets.
- Energy & IoT Telemetry: Anonymous or aggregated data from connected smart meters, solar inverters, wind sensors, and building management systems (only when explicitly shared for analysis).
- Technical & Device Data: IP address, browser type, OS, and cookies to ensure platform stability and security.
We never collect sensitive data (e.g., financial credentials, biometrics, or government IDs) unless legally required for enterprise compliance.
How We Use It
Your information is processed with purpose and precision. We utilize it to:
- Deliver & Optimize Services: Run your sustainability dashboards, calculate carbon footprints, and optimize renewable energy distribution.
- Generate Insights: Provide predictive analytics, energy efficiency recommendations, and ESG compliance reports.
- Communicate & Support: Send service updates, maintenance alerts, product announcements, and respond to support requests.
- Improve Security & Integrity: Detect fraudulent activity, prevent unauthorized access, and ensure platform reliability.
- Comply with Legal Obligations: Meet environmental reporting standards, tax requirements, and data protection regulations (GDPR, CCPA, etc.).
We process data based on legitimate interest, contractual necessity, or your explicit consent. You may withdraw consent at any time without affecting existing services.
Security & Protection
We treat your data with the same care we apply to our clean energy infrastructure. Our security framework includes:
- End-to-end encryption (TLS 1.3 in transit, AES-256 at rest)
- Strict role-based access controls and multi-factor authentication
- Regular third-party penetration testing and ISO 27001-aligned audits
- Automated threat monitoring and 24/7 incident response protocols
In the unlikely event of a data breach, we will notify affected users and regulatory authorities within the timeframe mandated by applicable law.
Your Rights & Choices
Regardless of your location, you maintain control over your information. You have the right to:
- Access: Request a copy of the personal data we hold about you.
- Rectify: Update or correct inaccurate or incomplete information.
- Erase: Request deletion of your data, subject to legal retention obligations.
- Restrict Processing: Limit how we use your data during verification periods.
- Data Portability: Export your data in a structured, machine-readable format.
- Opt-Out: Unsubscribe from marketing communications or disable non-essential cookies.
Submit requests via our privacy portal or contact our Data Protection Officer directly. We respond within 30 days.
Third-Party Sharing & Compliance
We do not sell, rent, or trade your personal data. We only share information with trusted partners when necessary to operate our services:
- Service Providers: Cloud hosting (AWS/Azure), email delivery, and analytics vendors bound by strict Data Processing Agreements (DPAs).
- Legal Authorities: When required by court order, subpoena, or to protect against imminent harm.
- Business Transfers: In the event of a merger or acquisition, data will transition under the same privacy commitments.
All international data transfers are safeguarded by Standard Contractual Clauses (SCCs) and adequacy decisions.
Contact Us
Have questions about this policy or how we handle your data? Our privacy team is here to help.