Privacy Policy

Your privacy and data security are our top priorities

Last updated: December 2024

Table of Contents

1. Introduction

Welcome to Zenix Labs ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, store, and protect your data when you use our CloudLockInRisk platform and related services.

As a cloud assessment SaaS provider, we understand the critical importance of data security and privacy in the enterprise environment. This policy applies to all users of our CloudLockInRisk vendor lock-in assessment calculator and associated services.

Our Commitment: We are a startup focused on innovation, not an agency or freelancer. Your data security and privacy are fundamental to our mission of preventing costly cloud risks.

2. Data Collection

Information We Collect

Personal Information

  • • Name and contact information
  • • Email address
  • • Company name and role
  • • Account credentials

Cloud Infrastructure Data

  • • Cloud service configurations
  • • API usage patterns
  • • Integration details
  • • Resource utilization metrics

Usage Analytics

  • • Platform interaction data
  • • Assessment results
  • • Feature usage statistics
  • • Performance metrics

Technical Information

  • • IP addresses and device information
  • • Browser type and version
  • • Operating system details
  • • Access logs and timestamps

3. How We Use Your Data

Risk Assessment

Generate vendor lock-in risk scores and migration cost calculations

Analytics & Insights

Provide compatibility matrices and risk mitigation roadmaps

Communication

Send important updates, notifications, and support responses

Specific Use Cases

  • CloudLockInRisk Calculations: Process your cloud service data to generate accurate vendor lock-in risk scores (1-100 scale)
  • Financial Impact Analysis: Calculate migration costs and alternative provider compatibility
  • Service Improvement: Analyze usage patterns to enhance our assessment algorithms
  • Security Monitoring: Detect and prevent unauthorized access or misuse

4. Data Storage & Security

AWS-Powered Security Infrastructure

We leverage enterprise-grade AWS services to ensure maximum security and reliability:

Compute & Storage

AWS Lambda, Fargate, S3, and RDS for secure, scalable infrastructure

Security & Access

IAM roles, KMS encryption, and multi-layer security controls

Analytics & ML

Athena, QuickSight, and SageMaker for advanced data processing

APIs & Delivery

API Gateway, Amplify, and CloudFront for secure global access

Security Measures

  • • End-to-end encryption for data in transit and at rest
  • • Regular security audits and vulnerability assessments
  • • Multi-factor authentication and access controls
  • • Continuous monitoring and incident response procedures

5. Cookies & Tracking

Essential Cookies

Required for platform functionality and security

Analytics Cookies

Help us understand usage patterns and improve our service

Preference Cookies

Remember your settings and customization choices

Cookie Management

You can control cookie settings through your browser preferences. Note that disabling essential cookies may affect platform functionality.

6. Third-Party Services

We integrate with select third-party services to enhance our platform capabilities. All partners are vetted for security and privacy compliance.

Amazon Web Services

Cloud infrastructure and security services

AWS Privacy Policy

Analytics Providers

Usage analytics and performance monitoring

All data is anonymized and aggregated

Data Protection: We only share necessary data with third parties under strict contractual obligations to protect your privacy.

7. Your Rights

You have comprehensive rights regarding your personal data. We are committed to honoring these rights promptly and transparently.

Right to Access

Request a copy of all personal data we hold about you

Right to Rectification

Correct any inaccurate or incomplete personal information

Right to Erasure

Request deletion of your personal data under certain conditions

Right to Restrict Processing

Limit how we process your data in certain circumstances

Right to Data Portability

Receive your data in a structured, machine-readable format

Right to Object

Object to processing for marketing or legitimate interests

Response Time

We will respond to your rights requests within 30 days. For complex requests, we may extend this period by 60 days with notification.

8. Data Retention

Account Data

Retained while account is active + 3 years after closure

Assessment Data

Stored for service provision + 7 years for compliance

Transaction Records

Maintained for 7 years per legal requirements

Retention Principles

  • Data is retained only as long as necessary for the purposes collected
  • Automated deletion processes ensure compliance with retention periods
  • Legal hold procedures for litigation or regulatory requirements
  • Secure destruction methods for data at end of retention period

9. International Transfers

As a global SaaS platform, we may transfer your data across international borders. We ensure all transfers comply with applicable data protection laws.

Transfer Safeguards

  • • Standard Contractual Clauses (SCCs)
  • • Adequacy decisions by data protection authorities
  • • Binding Corporate Rules where applicable
  • • Additional security measures for high-risk transfers

Data Locations

  • • Primary data centers in US and EU regions
  • • AWS global infrastructure with data residency controls
  • • Customer choice for data location where feasible
  • • Regular audits of data transfer practices

Important: We monitor regulatory changes and update our transfer mechanisms accordingly to ensure continued compliance with evolving international data protection laws.

Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of significant changes through:

Notification Methods

  • • Email notifications to registered users
  • • In-platform announcements
  • • Website banner notifications
  • • Updated "Last Modified" date

Implementation Timeline

  • • 30 days notice for material changes
  • • Immediate effect for legal compliance updates
  • • Continued service constitutes acceptance
  • • Right to object or close account

Contact Us

Privacy Questions & Requests

Email: hello@zenixlabs.com
Response Time: Within 48 hours
Data Protection Officer available

Exercise Your Rights

To exercise any of your privacy rights or request information about our data practices, please contact us using the email above. Include:

  • • Your full name and email address
  • • Specific right you wish to exercise
  • • Relevant account or service information
  • • Any supporting documentation if required

Zenix Labs - Preventing Costly Cloud Risks

Last Updated: December 2024 | Version 1.0