Privacy Policy
Last updated September 2026
This policy explains what Insite View collects, why, and the choices you have.
1. What we collect
- Account: name, email, language and unit preferences.
- Organization: company name, type, country, logo.
- Buildings: the IFC models and documents you upload, and the twin generated from them.
- Usage: guest visits and QR scans (aggregated), and error diagnostics.
2. Why we use it (legal bases)
To provide the service (performance of a contract), to keep it secure and to bill you (legitimate interests and legal obligation), and, for optional analytics, with your consent. We process personal data under the LGPD (Brazil) and, where it applies, the GDPR (EU/UK).
3. Sharing
We share data only with the processors that run the service (hosting, object storage, payments and email delivery), under contract, and when the law requires it. Guest visitors to a building only ever see what its owner chose to publish.
4. Retention
We keep your data while your account is active and your buildings are live or archived. Deleting a building removes its files; deleting your account anonymizes your audit history and revokes linked sign-ins.
5. Your rights
You can access, correct, export or delete your data, and object to or restrict certain processing. Manage most of this in your settings, or contact us to exercise any right.
6. International transfers
Data may be processed in countries other than yours; when it is, we rely on adequacy decisions or standard contractual clauses.
7. Companies — data processing agreement
If your organization needs a data processing agreement (DPA), request one at privacy@getinsiteview.com and we’ll provide our standard DPA.
8. Security and contact
We use encryption in transit, scoped access tokens and least-privilege storage credentials. Privacy questions: privacy@getinsiteview.com.
This is a template pending legal review; localized and lawyer-reviewed versions follow at launch.