Privacy Policy
Updated: August 29, 2024
We appreciate your interest in Compresso, our file compression products and services. Protecting your data privacy is a top priority at Otato GmbH (“Otato”). This Privacy Policy applies to both our web app (accessible via https://tools.rotato.app/compress or related domains, collectively the "Sites") and our desktop application, as well as our services, which include but are not limited to free trials, file compression tools, online cloud services, and any additional plugins or services managed by Otato/Compresso (“Products” or “Services”). This privacy policy ("Privacy Policy") outlines how we collect, use, store, and handle your personal data (“Personal Data”) and describes your rights regarding that data.
Please read this Privacy Policy carefully so that you understand our practices and your rights concerning your Personal Data. “Personal Data” refers to any information that can be used, alone or together with other information, to identify an individual and any information deemed as Personally Identifiable Information by applicable privacy laws. Important note: Nothing in this Privacy Policy is intended to limit your statutory rights, including your right to remedies or enforcement.
This Privacy Policy may be updated periodically, so we encourage you to check back regularly for any changes. If we make significant changes to how we use your Personal Data, we will notify you by posting a notice on our Sites or through other means.
If you have any questions about this Privacy Policy or how we handle your Personal Data, please contact us using the information at the end of this Privacy Policy.
We Never Sell Personal Data
What Data We Collect, Why We Collect It, And How It Is Used
We do not sell your Personal Data to any third party.
Specific Personal Data We Collect
When you visit our Sites, use our Services, or subscribe to our communications:
-
When you create an account on the web app:
- Data Collected: Name, email address, password (managed through Clerk), and other information you choose to provide.
- Purpose: To create and manage your account, verify your identity, provide access to our Services, and communicate with you.
- Legal Basis (if GDPR applies): Performance of a contract (to provide you with the Service) and legitimate interest (to maintain accurate records of licensed users).
- Consequences of not providing data: Without this information, you cannot create an account or use the web app.
-
When you purchase a license:
- Data Collected: Name, email address (stored in Supabase in some cases where necessary), and any other details needed to complete the transaction. Our payment provider Paddle stores your email address and other information you provide to them when checking out. We do not have access to your payment information, such as credit card numbers. Paddle handles this for us.
- Purpose: To provide access to the desktop app and critical updates, manage your license, and send transactional emails (via Loops).
- Legal Basis: Performance of a contract (to grant and manage your license).
- Consequences of not providing data: You cannot purchase or access the licensed features of the desktop app.
-
When you communicate with us or submit an inquiry:
- Data Collected: Name, email address, message content, and any attachments or additional information you choose to provide. This is stored in Intercom.
- Purpose: To respond to your inquiries, provide support, and improve our Services.
- Legal Basis: Legitimate interest (to respond to inquiries and provide support).
- Consequences of not providing data: We may not be able to respond to your inquiries or provide support.
-
When you subscribe to our newsletter or marketing communications: Note that we currently do not offer any newsletter or marketing communications, but we may do so in the future.
- Data Collected: Email address.
- Purpose: To send you updates, news, and marketing communications.
- Legal Basis: Consent (if you proactively subscribe).
- Consequences of not providing data: You will not receive our newsletter or marketing communications.
-
When you use our Sites and Services:
- Data Collected: Cookies, analytic tools data, log files, and usage statistics.
- Purpose: To improve the user experience, monitor usage trends, administer the Sites, and deliver personalized content.
- Legal Basis: Consent (for non-essential cookies) and legitimate interest (for essential cookies and usage analytics).
- Consequences of not providing data: Certain non-essential features of the Sites may not function properly.
How We Use and Protect Your Personal Data
-
Security Measures: We have implemented appropriate technical, organizational, and security measures to protect your Personal Data. Access to your Personal Data is limited to employees who require access to provide you with our Services. However, please note that we cannot guarantee absolute security, and you should take steps to protect your personal devices and credentials.
-
Data Retention: We store your Personal Data for as long as necessary to fulfill the purposes for which it was collected or as required by law.
-
Media files for compression and optimization:: We do NOT upload or store any media files you use our services to compress. We do NOT have access to these files. All processing is done locally on your device. If you need help with a media file we may ask you to provide it for tracking down issues. It is 100% up to you if you want to share it with us.
-
International Transfers: Our Services may be provided using resources and servers located in different countries. Your personal data may be transferred internationally, including to countries that may not have the same level of data protection as your home country. Where applicable, we use Adequacy Decisions and Standard Contractual Clauses to ensure your data is protected.
Sharing Your Personal Data
Otato GmbH does not share, distribute, sell, or rent your Personal Data to third parties, except in the following circumstances:
- Legal Requirements: If required by law or necessary to prevent fraud, investigate illegal activities, or protect the safety and rights of individuals or property.
- Service Providers: We may share your data with trusted third-party service providers (such as Clerk, Supabase, and Loops) to help operate our Sites and Services. These providers are required to comply with this Privacy Policy and use your data only for the specified purposes.
- Corporate Transactions: In the event of a merger, acquisition, or sale of assets, your Personal Data may be transferred as part of that transaction.
- With Your Consent: If you have given us explicit permission to share your data for specific purposes.
Your Privacy Rights
Depending on your location and applicable laws (such as GDPR), you may have the following rights concerning your Personal Data:
- Access: You can request to know what Personal Data we hold about you.
- Rectification: You can request correction of inaccurate or incomplete data.
- Erasure: You can request the deletion of your Personal Data under certain conditions.
- Restriction: You can request that we restrict the processing of your Personal Data.
- Data Portability: You can request a copy of your data in a structured, machine-readable format.
- Objection: You can object to the processing of your data for certain purposes, such as marketing.
- Withdrawal of Consent: You can withdraw your consent to data processing at any time, though this may affect the availability of some Services.
- Complaints: You have the right to lodge a complaint with a data protection authority.
To exercise any of these rights, please contact us at support@rotato.app. We may require you to verify your identity before fulfilling your request.
Log Files and Analytical Tools
Our Products may collect information on how the Products are used, such as the number, resolution, and file size of compressed files, error logs, and other usage statistics. This data helps us improve our Products and Services.
- Google Suite: We use Google Suite for some administrative tasks. For more details, please refer to Google's Privacy Policy.
- PostHog: We use PostHog for analytics to better understand user behavior and optimize our Services. For more details, please refer to PostHog's Privacy Policy.
Policy Towards Children
Our Sites and Services are not directed to children under 18, and we do not knowingly collect Personal Data from children. If you believe we may have collected such data, please contact us at support@rotato.app, and we will take steps to delete it.
Contact Information
For any privacy concerns regarding the Sites, Services, and/or Products, please contact us at:
Otato GmbH
Klingenstrasse
Kreis 5
8005 Zürich
Switzerland
Email: support@rotato.app
Website: https://rotato.app