Privacy Policy

Smart LOTO — Digital lockout-tagout for industrial plants.

Effective date: 5 May 2026 · Last updated: 5 May 2026 · Version: 1.0

Contents

  1. Who we are
  2. Scope and applicability
  3. Personal data we collect
  4. How we use your data and lawful basis
  5. Where your data is stored and processed
  6. Sharing and disclosure
  7. Retention
  8. Security
  9. International data transfers
  10. Your rights
  11. Region-specific provisions
  12. Children's privacy
  13. Cookies and tracking technologies
  14. Changes to this policy
  15. Contact and grievance

1. Who we are

Smart LOTO ("the App") is operated by Innvendt Insights Pvt Ltd ("Innvendt", "we", "us", "our"), a private limited company registered in India.

Data ControllerInnvendt Insights Pvt Ltd
Registered officeHyderabad, Telangana, India
Privacy contactcontact@innvendt.com
Websitehttps://innvendt.com
Product websitehttps://smartloto.innvendt.com

2. Scope and applicability

This policy describes how Innvendt collects, uses, stores, and shares personal data in connection with the Smart LOTO Android application (Google Play package com.innvendt.smartloto) and the related Smart LOTO web administration portal at smartloto.innvendt.com.

Smart LOTO is a workplace safety application provided to industrial plants under contractual agreements with their parent organisations (each a "Customer"). The App is not intended for general consumer use. End-users are plant workers who receive credentials directly from their employer (the Customer) and use the App as part of their employment to perform lockout-tagout (LOTO) safety procedures.

For the purposes of this policy:

Innvendt acts as a data processor for personal data processed on behalf of your employer (the Customer is the data controller for that processing) and as a data controller only for limited operational purposes (account authentication, security, fraud prevention, service improvement). Your employer's own privacy policy may also apply to your use of Smart LOTO; in case of conflict, your employment contract and your employer's policy govern the underlying data-handling relationship.

3. Personal data we collect

We collect only the data necessary to operate the lockout-tagout workflow and maintain a defensible safety audit trail required by industrial-safety regulations.

3.1 Account information

3.2 Operational data

3.3 Device data

3.4 What we explicitly do NOT collect

4. How we use your data and lawful basis

PurposeData usedLawful basis (GDPR / equivalent)
Authenticate you to the AppEmail, password (managed by Firebase Auth)Performance of contract; legitimate interests
Show you only the permits relevant to your plant and rolePlant ID, rolePerformance of contract
Maintain the defensible safety audit trail required by industrial-safety regulationsEmail, role, timestamps, lock metadata, photosLegal obligation (industrial-safety law); legitimate interests; performance of contract with your employer
Verify that the worker checking in is the assigned worker (worker-identity verification)Face descriptor (stored against your account); on-device liveness check (not stored)Legitimate interests (preventing safety hazards from credential sharing); your employer's contractual safety obligations; explicit consent where required by local law
Notify you of permit-state changesFCM push tokenPerformance of contract; legitimate interests
Sync your activity with your employer's Permit-to-Work systemPTW user ID, permit activityPerformance of contract with your employer
Debug failures, reconstruct safety incidentsApp diagnostics, BLE bind logsLegitimate interests (safety, service quality)
Comply with legal obligations and respond to lawful requests from authoritiesAny of the above as requiredLegal obligation

We do not use your personal data for any purpose unrelated to the operation of the lockout-tagout workflow. We do not sell your data, share it for advertising, or use it to build advertising profiles.

5. Where your data is stored and processed

Your data is stored on Google Firebase services, operated by Google LLC and Google Cloud Asia Pacific Pte. Ltd., under Google's Data Processing Addendum. Specifically we use:

Data is processed primarily in Google's asia-south1 region (Mumbai, India). Encryption is applied in transit (TLS 1.2 or higher) and at rest (Google Cloud default AES-256 encryption for managed services).

Bluetooth communications between the App and a smart padlock occur locally between your device and the padlock; they do not transit the public internet.

6. Sharing and disclosure

We share your data only with:

We do not sell your data, share it with advertisers, transfer it to data brokers, or use it for any purpose unrelated to the lockout-tagout workflow.

7. Retention

Where local law specifies a longer retention period for safety records, we follow the longer requirement.

8. Security

We implement industry-standard technical and organisational measures including:

Despite these measures, no system is 100% secure. If a breach occurs that affects your personal data, we will notify you and the relevant supervisory authority within the timeframes required by applicable law (within 72 hours under GDPR; without unreasonable delay under DPDP Act 2023).

9. International data transfers

Smart LOTO is operated from India and processes data primarily in Google's asia-south1 (Mumbai) region. Some Firebase administrative services may be operated by Google LLC in the United States or other jurisdictions where Google maintains infrastructure.

Where personal data is transferred outside the European Economic Area (EEA), the United Kingdom, or other jurisdictions with similar data-export rules, we rely on:

Copies of these transfer mechanisms are available from Google Cloud's public documentation; we can also provide them on request.

10. Your rights

Subject to the data-protection law that applies to you, you have rights regarding the personal data we hold about you. These rights typically include the ability to:

To exercise any of these rights, email contact@innvendt.com from the email address on your Smart LOTO account. We will respond within 30 days (extendable to 90 days for complex requests, with notification to you). We will verify your identity before fulfilling requests.

Note that some data is held by your employer as the data controller for permit-related processing. We will assist you in directing such requests to your employer where appropriate.

11. Region-specific provisions

11.1 European Economic Area (EEA), United Kingdom, and Switzerland — GDPR / UK GDPR

For users in the EEA, UK, or Switzerland, Innvendt acts as the data processor (or controller, depending on the activity, as described in section 2). Your rights under GDPR / UK GDPR include all those listed in section 10.

You may lodge a complaint with your local supervisory authority. A directory of EU/EEA supervisory authorities is available at edpb.europa.eu; the UK Information Commissioner's Office is at ico.org.uk.

Innvendt currently does not have an EU representative under GDPR Article 27, as Smart LOTO is not directed to the EU/EEA market. If we begin offering services to data subjects in the EU, we will appoint a representative and update this policy.

11.2 California, Colorado, Connecticut, Virginia, Utah (and other US states with comprehensive privacy laws) — CCPA/CPRA and similar

For users who are California residents, the categories of personal information we collect, the purposes for which we collect it, and the categories of third parties we share with are described in sections 3, 4, and 6 of this policy.

In the prior 12 months, we have not:

California residents may submit verifiable consumer requests by emailing contact@innvendt.com with the subject line "California Privacy Request". Authorised agents may submit requests on your behalf with documented authorisation. We will not discriminate against you for exercising your rights.

Residents of Colorado, Connecticut, Virginia, Utah, and other US states with comprehensive privacy laws have similar rights and may submit requests through the same channel.

11.3 India — Digital Personal Data Protection Act 2023 (DPDP Act)

For users in India, Innvendt is a Data Fiduciary in respect of certain limited operational data and a Data Processor for permit-related data processed on behalf of your employer.

Under the DPDP Act, you have rights of access, correction, erasure, and grievance redressal. To exercise these rights or file a grievance, contact our Grievance Officer:

Grievance OfficerPrivacy Officer, Innvendt Insights Pvt Ltd
Emailcontact@innvendt.com
AddressHyderabad, Telangana, India

If your grievance is not resolved within 30 days, you may escalate to the Data Protection Board of India once it is constituted under the DPDP Act.

11.4 Brazil — Lei Geral de Proteção de Dados (LGPD)

For users in Brazil, Innvendt is the data controller (controlador) for limited operational data. Your rights under LGPD include those listed in section 10. Requests may be sent to contact@innvendt.com. Complaints may be filed with the Autoridade Nacional de Proteção de Dados (ANPD).

11.5 Canada — PIPEDA

For users in Canada, we collect and use personal data in accordance with the Personal Information Protection and Electronic Documents Act (PIPEDA). You may file a complaint with the Office of the Privacy Commissioner of Canada at priv.gc.ca.

11.6 Other jurisdictions

If you are located in a jurisdiction with data-protection law not specifically addressed above, you may still exercise the rights described in section 10 by contacting contact@innvendt.com. We will comply with applicable local law.

12. Children's privacy

Smart LOTO is not directed to children. The App is provided exclusively to industrial plant workers as part of their employment, all of whom are adults aged 18 or above. We do not knowingly collect personal data from anyone under the age of 18. If we become aware that personal data of a person under 18 has been collected, we will delete it. Smart LOTO is not subject to the US Children's Online Privacy Protection Act (COPPA), the EU's GDPR provisions for children, or India's DPDP Act children's provisions, because the App is not directed to children and is not used by children.

13. Cookies and tracking technologies

The Smart LOTO mobile app does not use cookies, web beacons, pixels, or similar tracking technologies. The App relies on Firebase SDKs which use device-local storage to maintain authentication state and offline data; this is not used for tracking across apps or websites.

The Smart LOTO web administration portal at smartloto.innvendt.com uses minimal first-party storage for authentication and session continuity. It does not include any third-party advertising or analytics cookies.

14. Changes to this policy

We may update this policy as the App evolves, applicable law changes, or our processing practices change. Material changes will be communicated to you via the App and via the email registered to your account at least 30 days before they take effect, except where a shorter notice is required by law or to protect against immediate harm. The "Effective date" and "Last updated" dates at the top of this page reflect the most recent revision. Earlier versions are available on request.

15. Contact and grievance

For privacy-related questions, to exercise your rights, or to file a grievance:

Emailcontact@innvendt.com
Subject line for privacy requestsPrivacy Request — [Your jurisdiction]
Postal addressInnvendt Insights Pvt Ltd, Hyderabad, Telangana, India
Webhttps://smartloto.innvendt.com

We commit to acknowledging your request within 5 business days and substantively responding within the timeframes required by applicable law (typically 30 days, extendable to 90 days for complex matters).

This privacy policy is provided in English. Translations may be made available; in case of any conflict between translations, the English version prevails.