HOSSIDARK

Legal

Privacy Policy

Last updated 1 September 2026 · HOSSIPOWER CONSULTORIA S.A

1. Data controller

HOSSIPOWER CONSULTORIA S.A, the entity operating the HOSSIDARK platform, acts as data controller for the personal data of account holders, business contacts, channel partners and website visitors. For the data our enterprise customers load into the platform (alerts, documents, end users), we act as a data processor and process it solely on that customer's instructions.

2. Data we collect

  • Identification and contact details: name, business email, phone, job title, organisation, tax ID.
  • Credentials and authentication: account identifier, MFA factors, session logs.
  • Support and commercial content: messages, demonstration and partnership requests, interactions.
  • Platform operational data: alerts, incidents, documents submitted for forensic analysis, audit logs.
  • Technical data: IP address, device identifiers, browser, usage telemetry.

3. Purposes and legal bases

  • Account creation and service delivery: performance of a contract.
  • Invoicing and compliance with tax and accounting obligations: legal obligation.
  • Security, fraud prevention and auditing: legitimate interest.
  • Customer support and operational communications: performance of a contract.
  • Product improvement and aggregated usage analysis: legitimate interest.
  • Marketing communications: consent, which may be withdrawn at any time.

4. Who we share data with

  • Service providers and sub-processors: cloud hosting, database, transactional email, support and monitoring tools.
  • Authorised distributors and resellers involved in your purchase, limited to the data needed to serve you.
  • Professional advisers: legal, accounting and audit.
  • Competent authorities, where required by law.

We do not sell personal data. Where data is transferred outside its country of origin, we apply appropriate safeguards such as standard contractual clauses or adequacy decisions.

5. Retention

We keep data only for as long as necessary for the purposes described: account data for the duration of the subscription and up to 12 months after closure; audit and billing records for the applicable statutory periods; demonstration environments are deleted on expiry. After these periods, data is erased or anonymised.

6. Your rights

You may request access, rectification, erasure, restriction and portability of your data, object to certain processing and withdraw consent at any time. We respond within one month. You also have the right to lodge a complaint with the competent supervisory authority.

7. Security

We apply appropriate technical and organisational measures: encryption in transit and at rest, per-organisation isolation with database-level access policies, multi-factor authentication, immutable audit logging, least-privilege access and periodic access reviews.

8. Cookies

We use strictly necessary cookies for authentication, session security and preferences. We do not use advertising cookies. Analytics cookies, where enabled, are aggregated and can be managed in your browser settings.

9. Contact

To exercise your rights or raise a privacy question: privacy@hossidark.com.