General
This Privacy Policy explains how mTik_Ops ("mTik_Ops," "we," "us," "our") collects, uses, discloses, and protects personal data when you use mTik_Ops Platform, mTik_Ops Solutions, mTik_Ops Services, related websites, portals, mobile apps, APIs, support channels, and hosted environments (collectively, the "Services").
This Privacy Policy should be read together with the mTik_Ops Terms of Use.
Effective Date: March 30, 2026
Scope
This Policy applies to personal data processed through:
- Public website and company pages.
- Account, workspace, admin, and subscriber/client portal surfaces.
- API endpoints and integration modules.
- Support/help center and ticketing channels.
- Billing, wallet, subscription, and payment workflows.
- Team/employee and people-operations modules.
- Network operations and automation features.
Roles and Responsibility
Depending on context, mTik_Ops may act as:
- Data Controller for account registration, platform security, operations, and direct relationship management.
- Data Processor (or service provider) when processing customer-managed subscriber, employee, or workspace data on behalf of a customer organization.
Workspace owners/admins are responsible for ensuring they have lawful authority to upload and manage personal data of their subscribers, employees, and users.
Data We Collect
We may collect the following categories of data:
- Identity and profile data: name, email, username, role, company/workspace affiliation.
- Account security data: password hashes, MFA/TOTP setup state, session metadata, login/logout and security events.
- Contact and support data: tickets, messages, attachments, support history.
- Billing and transaction data: plan/subscription state, wallet/top-up records, invoicing/SOA/payment history, tax settings.
- Service and operational data: subscriber lifecycle records, service plans, voucher/sales activity, ticket/work-order references.
- Team/employee data (if enabled): attendance/DTR events, leave and scheduling records, payroll-related workflow records.
- Integration/network metadata: integration configuration metadata, API token/webhook metadata, router-linked operational logs, heartbeat/health events.
- Device, log, and usage data: IP address, browser/app details, timestamps, route/event logs, diagnostics, security logs.
- Public-site and communication preferences: branding/public settings, notification/reminder preferences, consent/opt-in signals where applicable.
We do not intentionally collect unnecessary sensitive data. If sensitive data is processed by customer configuration, the customer is responsible for lawful basis and controls.
How We Collect Data
We collect data when you:
- Register, sign in, configure account/workspace settings, or enable MFA.
- Use platform modules, APIs, integrations, and automation flows.
- Submit support tickets, forms, uploads, or communications.
- Perform billing, wallet, top-up, checkout, or subscription actions.
- Interact with notifications, logs, and workspace/admin workflows.
- Access the Services via browser, app, or API clients.
Purposes of Processing
We process personal data to:
- Provide and operate the Services.
- Authenticate users, enforce permissions, and secure accounts.
- Process subscriptions, billing, wallet credits, SOA/invoice and payment events.
- Deliver support, ticketing, and customer communications.
- Run automation and background jobs required for service operation.
- Maintain reliability, monitor abuse, troubleshoot incidents, and enforce policies.
- Comply with legal obligations, accounting, audit, and dispute handling.
- Improve products through analytics, performance, and service quality monitoring.
Legal Bases
Where required by law, we rely on one or more legal bases:
- Performance of a contract.
- Legitimate interests (security, reliability, fraud prevention, service improvement).
- Legal obligation.
- Consent (where specifically requested).
- Establishment, exercise, or defense of legal claims.
Cookies and Similar Technologies
We use cookies and similar technologies for:
- Authentication/session continuity.
- Security and fraud prevention.
- Preferences and user experience.
- Performance and operational analytics.
You may manage cookies through browser settings, but disabling essential cookies can limit service functionality.
Data Sharing and Disclosure
We may share personal data with:
- Service providers/sub-processors supporting hosting, communications, monitoring, payments, security, and operations.
- Integration partners you enable (for example payment, SMS, DNS/SSL, RADIUS, or other third-party modules).
- Workspace-authorized users based on permission scope.
- Legal/regulatory authorities where required by law or valid legal process.
- Corporate advisors in connection with audits, financing, merger, acquisition, or reorganization (subject to safeguards).
We do not sell personal data in the ordinary meaning of "sell" for money.
International Transfers
Your data may be processed in jurisdictions outside your location. Where required, we apply appropriate transfer safeguards and contractual protections.
Data Retention
We retain personal data only as long as needed for:
- Service delivery and account lifecycle.
- Security, audit, and operational logging.
- Billing, financial, tax, and legal compliance.
- Legitimate business continuity and dispute handling.
Retention periods may vary by data type, plan, legal requirements, and customer configuration.
Security Measures
mTik_Ops implements reasonable technical and organizational safeguards, including:
- Authentication and session controls.
- Role-based access and permission checks.
- CSRF and request validation controls.
- Logging, monitoring, and audit-oriented security records.
- Access restrictions and operational hardening practices.
No method of transmission or storage is completely risk-free.
Data Subject Rights
Subject to applicable law, you may have rights to:
- Access personal data.
- Correct inaccurate data.
- Delete data.
- Restrict or object to certain processing.
- Data portability.
- Withdraw consent (where consent is the basis).
- Non-discrimination for exercising rights under applicable law.
For verified requests, contact us at legal@mtikops.com with subject: Privacy Request - mTik_Ops.
If you are an end-user (subscriber/employee) whose data is managed by a workspace customer, we may direct your request to the relevant workspace controller.
Automated Processing
Some workflows are automated (for example reminders, renewals, billing/state transitions, queue processing, anomaly/health checks). These are used for operational service delivery and security. You may request human review where required by applicable law.
Children’s Data
The Services are not directed to children under the minimum age required by applicable law for independent consent. If you believe unauthorized child data was provided, contact us for review and removal.
Third-Party Services
Third-party sites, gateways, and integrations operate under their own privacy practices. We are not responsible for third-party privacy statements or controls.
Policy Updates
We may update this Privacy Policy from time to time. Material changes may be communicated through platform notice, website posting, or email. The effective date above indicates the latest version.