GDPR & Data Protection Policy – Ion Monitor
Last Updated: 08 September 2025
This GDPR & Data Protection Policy explains how Ion Monitor (“we”, “our”, “us”) collects, processes, stores, protects, and handles personal data in compliance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and other applicable global data protection laws.
By using Ion Monitor, you acknowledge and agree to the practices described in this Policy.
1. Scope of This Policy
This Policy applies to:
- Visitors of the Ion Monitor website
- Registered users and subscribers
- Individuals whose data is processed through Ion Monitor software (“Data Subjects”)
This Policy forms an integral part of our Privacy Policy, Terms of Service, and License Agreement.
2. Data Controller & Contact Information
Data Controller: Ion Monitor
Email: privacy@ionmonitor.com
For GDPR-related requests, please contact us at the email above.
3. Lawful Basis for Processing (Article 6 GDPR)
Ion Monitor processes personal data only when at least one of the following applies:
- Consent of the data subject
- Performance of a contract (subscription & service delivery)
- Legal obligation
- Legitimate interests, including fraud prevention, security, and service improvement
4. Types of Data We Process
A. Account & Billing Data
- Name
- Email address
- Payment reference IDs (not full card details)
- Subscription details
⚠️ Ion Monitor does not store raw credit/debit card data. Payments are processed securely via third-party gateways.
B. Device & Usage Data
- Device identifiers
- Operating system information
- App usage logs
- Technical diagnostics
C. Monitored Data (User-Controlled)
Ion Monitor processes monitoring data only as instructed by the user, such as:
- App activity
- Location data
- Call/SMS metadata (subject to OS & law limitations)
Ion Monitor acts as a Data Processor for monitored data.
5. User Responsibility & Consent
Users are solely responsible for:
- Obtaining explicit consent from the device owner
- Ensuring lawful monitoring (e.g., parental or employee monitoring)
Unauthorized or illegal monitoring is strictly prohibited.
6. Data Storage & Retention
- Data is retained only as long as necessary for service delivery
- Users may delete monitored data via their dashboard
- Upon account termination, data is deleted or anonymized unless legally required otherwise
7. Data Sharing & Third Parties
We may share limited data with:
- Payment processors (Razorpay, Cashfree, PayPal, Stripe)
- Hosting & cloud infrastructure providers
- Analytics & security service providers
All third parties are contractually bound to GDPR-compliant data handling standards.
8. International Data Transfers
If data is transferred outside the EU/EEA:
- We ensure adequate safeguards, such as Standard Contractual Clauses (SCCs)
- Transfers comply with GDPR Chapter V requirements
9. Security Measures (Article 32 GDPR)
Ion Monitor implements appropriate technical and organizational measures including:
- Encryption (in transit & at rest)
- Access control & authentication
- Secure server infrastructure
- Regular security audits
However, no system can be guaranteed 100% secure.
10. Data Subject Rights (GDPR Chapter III)
You have the right to:
- Access your personal data
- Rectify inaccurate data
- Erase data (“Right to be Forgotten”)
- Restrict processing
- Data portability
- Object to processing
- Withdraw consent at any time
Requests can be made via privacy@ionmonitor.com
We respond within 30 days, as required by GDPR.
11. Automated Decision-Making
Ion Monitor does not engage in automated decision-making or profiling that produces legal or significant effects under GDPR Article 22.
12. Breach Notification
In the event of a data breach that poses a risk to users:
- We will notify affected users
- Authorities will be informed where legally required
- Mitigation steps will be taken promptly
13. Children’s Data Protection
Ion Monitor supports parental monitoring only for minors under legal guardianship.
Parents/guardians are responsible for:
- Consent
- Legal compliance
- Appropriate usage
14. Policy Updates
We may update this GDPR Policy from time to time.
Changes will be posted on this page with a revised “Last Updated” date.
15. Governing Law
This Policy is governed by applicable data protection laws, including GDPR, without prejudice to mandatory local consumer or privacy protections.