CredoSense Privacy Policy
Last Updated: July 2025
This Privacy Policy explains how CredoSense Inc. (“CredoSense”, “we”, “our”, or “us”) collects, uses, discloses, and protects personal information when you visit our websites, interact with us, purchase our products or services, or use CredoSense platforms and devices.
This Policy is designed to be easy to find, easy to read, and precise about what we do with your information. If you use our devices, software platform, or other CredoSense services under separate terms, those terms may include additional privacy disclosures that work together with this Policy.
Who We Are & Applicable Laws
CredoSense Inc. is a company incorporated in Canada with operations in Canada and Bangladesh. For most processing described in this Policy, CredoSense Inc. is the “controller” (or equivalent term under applicable law) responsible for your personal information.
We aim to comply with applicable privacy laws, including: Canada’s Personal Information Protection and Electronic Documents Act (PIPEDA) and substantially similar provincial laws; the EU/UK General Data Protection Regulation (GDPR/UK GDPR), where applicable; and relevant U.S. state privacy laws (such as the California Consumer Privacy Act as amended), where they apply. Local rights and obligations may vary depending on where you live
Information We Collect
We collect personal information only where we have a clear business and user-focused reason to do so, such as to provide products and services, support our users, operate our website and platforms securely, or improve our offerings.
Information You Provide
- Contact details: name, email address, phone number, organization, role.
- Account details: login credentials and profile information for any CredoSense portal, platform, or service you register for.
- Transaction details: billing name, billing address, shipping address, tax information, payment amount, and purchase history. Payment card details are processed by our payment processors; we do not store full card numbers.
- Communications: content of emails, forms, support requests, meeting notes, and (where permitted by law) call recordings, along with associated metadata such as timestamps and communication channel.
- Other information you submit: feedback, survey responses, event registrations, and any information contained in files you voluntarily provide.
Information We Collect Automatically (Web & Online Services)
- Log data: IP address, browser type, device identifiers, operating system, pages visited, referring/exit pages, timestamps, and basic interaction data.
- Cookies and similar technologies: identifiers stored on your browser or device, pixel tags, and scripts used for core functionality, security, usage analytics, and (where enabled and lawful) marketing or advertising measurement. Where required by law, we obtain your consent before setting up non-essential cookies.
Information from Third Parties
Platform & Device Data (Leaf Chamber & Related Systems)
Types of Platform & Device Data
- Account and user role information: information required to create and manage user accounts, including names, business contact details, organization, roles, and permissions for multi-user teams.
- Device identifiers and configuration: device serial numbers, firmware versions, configuration profiles, activation status, and logs related to setup and updates.
- Operational and telemetry data: non-personal technical information generated by the devices and Platform, such as error codes, connectivity events, uptime, performance metrics, and interaction logs used for diagnostics, reliability, and security.
- Measurement and agronomic data: data points captured through CredoSense devices and Platform, which may include leaf- and canopy-level readings, soil parameters, environmental measurements, timestamps, sampling grid identifiers, and associated farm or field metadata.
- Derived insights and recommendations: outputs generated by our analytics or AI models (such as risk scores, diagnostic indicators, and management recommendations) based on Platform & Device Data.
- Location and project metadata: optional geospatial information or project identifiers associated with fields, farms, or facilities, as configured by you or your organization. In typical use, this is business or operational information, not consumer residential data.
How We Use Platform & Device Data
- Service delivery: to operate the Platform, run measurements, generate analytics and recommendations, and present results to authorized users.
- Support and reliability: to diagnose issues, provide technical support, improve performance, monitor device health, and plan updates.
- Product improvement and R&D: to analyze aggregated and de-identified Platform & Device Data to improve algorithms, hardware, and workflows. Where reasonably possible, we use de-identified or aggregated data for these purposes.
- Security and abuse prevention: to protect accounts, devices, and infrastructure from unauthorized access, misuse, or other security threats.
- Contractual and regulatory obligations: to fulfill our agreements with you or your organization and to comply with applicable legal, audit, and regulatory requirements.
Customer Control & Business Data
How We Use Your Information (All Contexts)
- Providing products and services;
- Operating, maintaining, and securing our websites, Platform, and devices;
- Managing accounts, orders, billing, and customer relationships;
- Communicating with you about support, updates, safety, security, and changes to our terms;
- Improving and developing our products, services, documentation, and user experience;
- Detecting, investigating, and preventing fraud, abuse, or security incidents;
- Conducting analytics and, where permitted, limited marketing activities;
- Complying with legal and regulatory obligations and enforcing our agreements.
Legal Bases for Processing (GDPR/UK GDPR)
- Performance of a contract;
- Compliance with legal obligations;
- Legitimate interests (balanced against your rights and expectations);
- Your consent, where required (for example, certain cookies or marketing communications).
Cookies & Similar Technologies
How We Share Information
- Within the CredoSense group of companies and affiliates;
- With service providers who process data on our behalf under contractual restrictions;
- To comply with laws, regulations, legal processes, or enforceable government requests;
- To protect the rights, property, or safety of CredoSense, our users, or others;
- In connection with a business transaction (such as merger or acquisition), subject to safeguards;
- With your consent or at your direction (including testimonials or integrations);
- Using aggregated or de-identified data that cannot reasonably be used to identify you.