Asianembrace

Privacy Policy

Your privacy is important to us at Asian Embrace. We respect your privacy regarding any information we may collect from you on our website.

This Privacy Notice for Toxic Truth utlines how we collect, use, store, share, and otherwise process personal information about individuals who use our services. Our Services include, but are not limited to:

  • The Toxic Truth mobile or web application, which provides AI-powered tools for documenting, analyzing, and addressing workplace dynamics, including toxic environments.
  • Other interactions with us, such as customer support, sales, marketing communications, and participation in events we organize.

Questions or Concerns?

Please review this Privacy Notice carefully to understand your rights and choices regarding your personal information. By using our Services, you agree to the terms of this Notice. If you do not agree with our policies and practices, you must refrain from using our Services.

For further inquiries or to exercise your privacy rights, you may contact us using the details provided below.

1. Introduction

Toxic Truth is committed to safeguarding your privacy and ensuring transparency about how your information is handled. This Privacy Policy outlines the practices and measures we employ to protect your data and maintain trust.

Our goal is to empower users with actionable insights while ensuring their personal and sensitive data is managed responsibly. By using our app, you agree to the terms outlined in this Privacy Policy.

2. Information We Collect

Personal Information You Disclose to Us: We collect data that you provide directly, such as your name, email address, audio recordings, transcriptions, and other workplace-related inputs. This information helps us deliver personalized features and improve your user experience.

Information Automatically Collected: Our app gathers data such as device details, IP address, app usage patterns, location data, and analytics. This helps us understand user behavior and optimize our services.

3. How We Use Your Information

We use your information to provide core app functionalities, such as documenting workplace interactions, generating insights, and offering analysis tools. The data supports our mission to improve workplace dynamics.

Additionally, your information is utilized for service improvements, troubleshooting, and enhancing app performance. We also use aggregated and anonymized data for analytics and research purposes.

4. Sharing Your Information

We do not sell your personal data. Your information may be shared with trusted third-party service providers to facilitate app functionalities, such as cloud hosting and payment processing.

In cases of legal obligations or user consent, we may share data with regulatory authorities or workplace entities to address reported issues. All sharing practices adhere to applicable privacy laws.

5. Your Rights and Choices

You have the right to access, correct, delete, or transfer your personal data. Our app includes user-friendly options to manage these preferences directly within your account settings.

You may also opt out of receiving marketing communications and disable certain data collection practices. Detailed instructions are provided within the app for your convenience.

6. Data Security

We employ industry-standard measures, such as encryption (e.g., AES-256) and secure cloud hosting (e.g., AWS), to protect your data. Regular audits and compliance checks further enhance our security protocols.

In the unlikely event of a data breach, we will notify affected users and authorities promptly, in accordance with applicable laws.

7. Do We Use Cookies and Other Tracking Technologies?

Yes, we use cookies, pixels, and similar technologies to enhance app functionality, improve user experience, and track performance. These technologies help us personalize content and gather analytics.

Users can manage or disable cookies through their browser settings or in-app preferences. However, disabling cookies may impact certain features.

8. How Do We Handle Your Social Logins?

If you use social logins (e.g., Google or LinkedIn), we only collect information necessary for authentication. This ensures a seamless and secure login experience.

We do not access or store sensitive social profile details, and you can revoke permissions through your social account settings.

9. Is Your Information Transferred Internationally?

Data may be stored or processed in servers located outside your country of residence. We ensure all transfers comply with regional data protection laws, such as GDPR.

Appropriate safeguards, including standard contractual clauses, are in place to secure your data during international transfers.

10. How Long Do We Keep Your Information?

We retain your data only as long as necessary to provide our services and comply with legal obligations. For example, recordings and transcriptions are stored based on user-defined retention preferences.

Once the retention period ends, or upon user request, we securely delete or anonymize the data.

11. Do We Collect Information From Minors?

Our app is not intended for users under 18 years of age. We do not knowingly collect personal data from minors.

If we discover that a minor has provided us with personal information, we will promptly delete it. Parents or guardians can contact us for assistance.

12. What Are Your Privacy Rights?

Users have rights under laws like GDPR and CCPA, including the right to access, correct, or delete personal data. You can exercise these rights through the app or by contacting our support team.

We are committed to addressing user requests promptly and transparently, ensuring compliance with applicable laws.

13. Controls for Do Not Track Features

Our app respects "Do Not Track" signals and similar browser features. Users can enable these settings to limit tracking.

However, some app functionalities may require essential tracking to function optimally. We strive to balance user preferences with operational needs.

14. Updates to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements.

Users will be notified of significant updates via email or in-app notifications.

The "Last Updated" date at the top of the policy indicates the most recent revision.

15. How Can You Contact Us About This Notice?

For privacy-related inquiries or concerns, please contact us at:

Email: [support@toxictruth.com]

Phone: [+1-800-555-TOXIC]

Our support team is available to address your questions and assist with any privacy-related matters.

16. How Can You Review, Update, or Delete the Data We Collect From You?

Users can manage their data through the app's settings or by contacting our support team. Step-by-step guides are available to assist with data review, updates, or deletion.

We aim to provide a seamless process for users to exercise control over their data, ensuring transparency and trust.

17. Children’s Privacy

The app is not designed for children. We adhere to COPPA regulations to ensure no personal data is collected from users under 13 years of age.

If we inadvertently collect such data, it will be promptly deleted, and parents or guardians will be notified.

18. International Users

We comply with regional laws, such as GDPR and CCPA, to ensure data protection for users worldwide.

Our practices are designed to respect diverse legal frameworks.

Users from different regions can access localized privacy information and resources to address specificconcerns.

19. Legal Basis for Processing Data

Our data processing activities rely on lawful grounds, such as user consent, legitimate interests, and contractual necessity. These bases ensure compliance with GDPR and other regulations.

Users are informed about the purpose of data processing at the point of collection to ensure transparency.

20. Incident Response and Data Breach Notifications

In the event of a data breach, we have a robust incident response plan to address and mitigate the impact.

Affected users will be notified promptly, along with relevant authorities.

We aim to resolve breaches efficiently while maintaining user trust and compliance.

21. User Consent Management

We obtain user consent for data processing through clear, affirmative actions. Users can withdraw consent at any time via app settings or by contacting support.

Consent records are maintained for audit purposes, ensuring accountability and compliance.

22. Behavioral and Targeted Advertising

We may use anonymized data for personalized advertising. Users have the option to opt out of such practices through their account settings.

Clear opt-out mechanisms ensure user control over advertising preferences without compromising core functionality.

23. Data Anonymization and Aggregation

User data may be anonymized or aggregated for research and analytics purposes. This process ensures no individual user can be identified.

Such practices help improve app features while maintaining privacy.

24. Data Ownership and Access for HR Personas

HR professionals using the app can access workplace data securely. Clear policies prevent misuse or unauthorized access to sensitive information.

All access is governed by strict confidentiality agreements and audit trails.

25. Accessibility and Inclusivity in Privacy Features

We are committed to ensuring that privacy controls are accessible to users with disabilities. The app includes features like screen reader compatibility and easy navigation.

Feedback from users is welcome to further enhance accessibility measures.

26. User Education and Resources

The app is committed to empowering users by providing educational resources and tools to enhance their understanding of workplace rights, toxic environments, and how to effectively utilize the app`s functionalities. These resources may include FAQs, detailed user guides, and links to external articles or regulatory bodies specializing in workplace rights and safety. Accessible directly from the app, these tools aim to inform users about their rights and options when addressing workplace issues.

Additionally, the app ensures that users can quickly grasp the features and benefits of its functionalities, such as documentation tools, reporting mechanisms, and AI-generated insights. This includes step-by-step tutorials, onboarding support, and periodic updates to address new workplace challenges or feature enhancements, ensuring users stay informed and confident in using the platform.

27. Integration-Specific Privacy Details

The app integrates with various platforms, such as TikTok for marketing campaigns and third-party automation tools like Make.com, to enhance functionality and user experience. For each integration, specific data policies govern how user data is accessed, processed, and protected. For instance, TikTok integrations might analyze anonymized engagement metrics, while automation tools could streamline workflows involving user-generated data.

To maintain transparency, the app provides detailed privacy disclosures for each integration. These disclosures explain the scope of data shared, the purpose of integration, and the safeguards in place to prevent misuse. Users are encouraged to review these policies to understand how their data interacts with third-party platforms and to make informed decisions about their participation.

28. Data Backup and Recovery Policy

User data is safeguarded through robust backup and recovery mechanisms, ensuring minimal disruption in case of technical failures or data breaches. Regular backups are conducted on secure servers, leveraging cloud solutions like AWS with high redundancy and fault tolerance to prevent data loss. Encrypted backups are stored at multiple geographic locations to ensure availability even during regional outages.

In the unlikely event of data loss, the app has a comprehensive recovery plan to restore essential user data promptly. This includes predefined timelines for restoration and real-time updates to affected users. These practices underscore the app's commitment to data security and continuity for its users.

29. Opt-Out Mechanisms for Non-Essential Data Collection

Users are provided with clear options to opt out of non-essential data collection, such as tracking for personalized ads or analytics. These mechanisms are designed to respect user privacy without compromising core app functionalities. For instance, users can disable cookies, tracking pixels, or location-based services from within the app’s settings.

Opt-out preferences are honored across sessions and devices, ensuring a seamless experience. The app also provides transparent disclosures about the impact of disabling such features, helping users make informed choices about their data privacy.

30. Regulatory Reporting Features

The app includes tools designed to help users report workplace issues to relevant regulatory bodies or HR departments. These features allow users to compile and securely share documentation, such as audio recordings, transcriptions, or analytical reports, ensuring privacy and confidentiality throughout the process.

Strict protocols govern how data is handled during regulatory reporting to prevent unauthorized access or misuse. Users are guided through the process with clear instructions, ensuring compliance with legal and organizational standards while empowering them to address toxic workplace environments effectively.

31. Biometric Data Collection

If biometric data is collected, such as voiceprints for authentication or facial recognition for user interaction, the app ensures this data is only used for specified purposes. Users are informed of data collection practices at the time of setup, and consent is explicitly obtained before proceeding. Biometric data is stored in encrypted formats, ensuring compliance with laws like GDPR and regional privacy standards.

To protect user privacy further, the app limits access to biometric data, ensuring it is never shared with unauthorized parties. Retention policies ensure that biometric data is deleted immediately upon user account deletion or as mandated by law, safeguarding user trust and security.

32. Sensitive Data Handling

The app recognizes that handling sensitive workplace data, such as harassment complaints or discrimination reports, requires additional safeguards. Data is encrypted during storage and transmission, ensuring it remains confidential and accessible only to authorized users. Sensitive information is isolated from general user data to further enhance its protection.

Access controls, regular audits, and strict policies ensure this data is not shared with unauthorized personnel or third parties. Additionally, users are informed about their data rights and protections under applicable laws, fostering trust and transparency in sensitive data handling.

33. Data Encryption Standards

The app employs industry-standard encryption protocols, such as AES-256, to protect user data during storage and transmission. Encryption keys are securely managed and regularly updated to prevent unauthorized access. Secure Socket Layer (SSL) technology is used to safeguard data exchanged between users and the app.

Periodic security audits and penetration testing are conducted to identify and address vulnerabilities proactively. These encryption measures ensure user data remains safe from unauthorized access, theft, or misuse at all times.

34. Customizable Privacy Settings

The app provides users with granular privacy controls, allowing them to customize settings based on their preferences. Users can disable specific features, such as location tracking or personalized analytics, without impacting core functionality. These settings are accessible through an intuitive interface within the app.

The customization options include toggling permissions, setting data sharing preferences, and managing communication preferences. Users are guided with clear explanations of the implications of their choices, empowering them to take full control of their privacy.

35. Data Provenance

The app ensures the integrity and security of external files uploaded by users, such as documents or recordings. Uploaded files are scanned for integrity checks to prevent tampering and stored securely in encrypted formats.

Detailed logs track file upload and access activities to maintain transparency. This ensures users can trust that their uploaded data remains authentic, secure, and unaltered throughout its lifecycle within the app.

36. Data Access Permissions

The app requests specific permissions, such as microphone access for audio recording or storage access for saving files, to deliver its features effectively. These permissions are requested transparently, with clear explanations provided at the time of request.

Users retain control over these permissions and can revoke them at any time through their device settings.

The app ensures that revoked permissions do not hinder user experience for core functionalities.

37. Account Deletion Policy

Users can request account deletion directly through the app or via customer support. Once a deletion request is received, all user data, including recordings and analytics, is permanently removed from servers within a defined timeline (e.g., 30 days).

Notifications confirm the deletion process, ensuring users are aware of the status. This policy aligns with global data privacy laws to guarantee compliance and respect for user rights.

38. Interaction With Workplace Authorities

When data is shared with workplace authorities, such as HR departments or legal entities, strict protocols are followed. Only the specific data required to address the issue is shared, ensuring minimal disclosure.

Users are notified before such data is shared, unless prohibited by law, ensuring transparency. These practices help users document toxic workplace environments while safeguarding their privacy.

39. Data Usage for AI Training

If user data is utilized to train AI models, it is anonymized and aggregated to remove identifiable information. This ensures the data contributes to enhancing app functionalities without compromising user privacy.

Clear disclosures inform users of this process, and opt-out options are available for those who prefer their data not be used for AI training purposes.

40. Multi-Language Support for Privacy Policy

The privacy policy is made available in multiple languages to accommodate a diverse user base. Each version is accurately translated to ensure users fully understand their rights and the app's practices, regardless of their primary language.

This approach reflects the app's commitment to inclusivity and global accessibility, fostering trust among users from various regions.

41. Data Residency

User data is stored on secure servers located in compliance with regional data residency laws. For instance, data from EU users is stored within EU-based servers, ensuring GDPR compliance.

Data residency policies are transparently shared with users, offering assurance that their data is handled in alignment with applicable legal requirements.

42. Opt-Out of Automated Decision-Making

The app allows users to opt out of AI-driven automated decision-making processes that might affect them.

For example, users can disable features like AI-generated reports or analytics insights.

The opt-out process is straightforward, ensuring users retain control over how their data influences automated systems. This commitment aligns with user rights under privacy regulations like GDPR.

43. Behavioral Insights and Reporting

The app may use behavioral data to generate anonymized insights or workplace reports. For example, patterns of interaction or workplace trends might be analyzed to provide valuable feedback to users.

Data used for such purposes is anonymized and aggregated, ensuring no individual user can be identified.

This approach supports user privacy while delivering actionable insights.

44. Accessibility for Visually Impaired Users

The app ensures that privacy-related features and disclosures are accessible to visually impaired users through screen reader compatibility and high-contrast design options.

These measures align with global accessibility standards, enabling all users to manage their privacy with ease and confidence.

46. Compliance Certifications

Toxic Truth adheres to industry standards and holds certifications such as ISO 27001 and SOC 2. These certifications validate our commitment to data protection and security.

Regular audits ensure continued compliance with evolving privacy regulations.