1. Introduction and Scope
At CloudotNet (“the Platform”, “we”), we care about your privacy. This Privacy Policy explains what personal data we collect, why and how we process it, and what rights you have when you use our cloud-based business management platform at cloudotnet.tech. This policy is prepared with reference to Turkey's Personal Data Protection Law No. 6698 (KVKK) and, where applicable, the GDPR.
2. Data Controller
- Operator: CloudotNet Tech
- Address: Kocaeli/Gebze
- Email: [email protected]
3. What Personal Data We Collect
- Account information: name, email, organization/company name, user role, login credentials.
- Usage data: sign-in times, activity history, tasks/documents/workflows you create.
- Technical data: IP address, browser type, device info, connection logs.
- Cookie data: cookie information used to maintain your session and improve your experience (see Section 7).
4. Purposes and Legal Bases
| Purpose | Legal Basis |
|---|---|
| Creating your account and providing the service | Performance of a contract |
| Ensuring security and preventing misuse | Legitimate interest |
| Meeting legal obligations | Legal obligation |
| Improving the service and fixing issues | Legitimate interest |
| Communicating with you | Performance of a contract / legitimate interest |
For activities that require explicit consent (for example, non-essential cookies), we will ask for your approval separately.
5. Data Retention
We keep your personal data only for as long as necessary for the purposes for which it was processed. When you close your account, your data is deleted or anonymized within a reasonable period, subject to legal retention obligations (for example, tax and commercial law).
6. Sharing with Third Parties
We do not sell your data for marketing. We only share it, where necessary to provide the service, with the following categories:
- Cloud infrastructure and hosting providers
- Technical service providers (email delivery, error monitoring)
- Legal authorities (only when required by law)
We enter into agreements with all providers to safeguard your data.
8. Data Security
- Complete data isolation: each organization's data is kept in its own private space; no customer can access another customer's data.
- Secure access: controlled through authentication, authorization, and role-based permissions.
- Protected connection: your data is transmitted over a secure (encrypted) connection.
While no system is ever 100% secure, we apply industry-recognized measures to keep your data protected.
9. Your Rights Under KVKK and GDPR
- Right to access your data
- Right to correction
- Right to deletion
- Right to object to processing
- Right to data portability
- Right to learn the parties to whom data is transferred
- Right to object to outcomes of automated processing
10. How to Exercise Your Rights
You can contact [email protected] to exercise your rights. After verifying your identity, we respond within the required time frames.
11. Changes to This Policy
We may update this policy from time to time. We will notify you of significant changes through the platform or by email.
12. Contact
For any privacy-related questions or requests: [email protected]