At Neurosity, our vision is to empower the mind and become the world’s most trusted and loved neurotechnology company. We value our customers and respect your privacy and personal information. Personal information is information about you, that may include your name, email or other addresses, phone numbers, or other data that could reasonably be linked back to you.
If this policy changes in the future, we will post an updated version on our website at www.neurosity.co, and/or in our web or mobile applications. You can tell if this policy has changed by checking the effective date that appears at the top of the policy. Depending on the circumstances, we may also notify you of an update via email or other contact information you have provided.
If you have any questions or concerns, we can be reached by our contact information below.
Capitalized terms used but not defined elsewhere in the Policy will have the following definitions:
“Activity Data” means data such as progress, trends, achievements over time, and session start and end times collected by us based on your activity.
“Personal Device” means computers, smartphones, connected TVs and other web-connected devices you use that integrate with our Products.
“Preference Data” means data you provide regarding your preferences, such as session reminders, and any other data you choose to input; for example, notes you record in the application when tagging an emotion.
“Processed Data” means data such as calm, thought patterns from machine learning which is generated by us by processing Sensor Data.
“Purchase Information” means your name, email address, shipping address, billing address, phone number, account information, other information you share during the purchasing process, details of the product or subscription purchased, the date and time of the order or subscription, the quantity and price of the order or subscription, whether payment was made, method of payment, purchase or subscription history, and whether you re-ordered or renewed a subscription.
“Sensor Data” means data such as brainwave patterns (through electroencephalogram or EEG) and battery status data collected through the sensors on the Notion device.
“Transmission Data” means your log data such as the date and time of syncing of your Personal Device with our servers, duration of the time spent using our applications on your Personal Device, and the Internet Protocol (IP) address of your Personal Device.
INFORMATION WE COLLECT AND HOW WE USE IT
When You Use or Access our Products
Creating a Notion Account
If you are under 16 you will not be allowed to set up an account with us. When you set up an account with us, you will need to provide us with information such as your login credentials (e.g. your email address, name, and/or password). Instead of providing us with your login credentials, you could also use a third-party service such as Google Sign-in to create an account with us. When doing so, you authorize us to access certain account information (consistent with your privacy settings on the third-party service), such as your name, email address and age. We use the foregoing information for the purpose of creating and accessing your account.
Notion Mobile Application
The Notion mobile application in conjunction with the Notion device is designed to assist users with emotion tracking and motor imagery training.
Creating an account
To use our Notion mobile application, you will be asked to download our mobile application and create an account.
Additional information we will ask you for when you are creating your Notion mobile application account is your geographic region and/or country, whether you are right or left handed, your gender, and year of birth. Factors like age, gender and handedness can impact your brain and help us with our research and development of the application. We use this information to improve and customize your user experience.
When using the Notion mobile application
When you use the Notion application with the Notion device, we record, process and store your Activity Data, Sensor Data, Preference Data, Processed Data and Transmission Data. We use the data referenced in the preceding sentence to provide you with real time feedback during a motor imagery session, reports after sessions, customer support, brain/body scientific research, technical troubleshooting, performance management and product enhancement.
Notion In-Application Third Party Research Program: While using the Notion mobile application, you may have the option of participating in our voluntary in-application research program involving third parties. When you choose to participate in our third-party research program, you are consenting to the sharing of your data on a de-identified basis with third parties involved in research related to improving the scientific understanding of the brain/body or to improving products and/or delivering better experiences and services. You can choose to withdraw your consent to us sharing your information in the context of these voluntary research programs at any time through the settings of the Notion mobile application you are using. Should you withdraw your consent, we will not share your Meditation Data in any new third-party research studies.
Notion Account Web Application
The Notion Account Web Application is designed to help you manage your account information such as your email address, your password and your subscription.
When creating an account using the Notion Account Web Application
When creating an account using the Notion Account Web Application, you will be asked for your login credentials (e.g. your email address, name, and/or password) to create an account or use a pre-existing account.
We use your login credentials to create your account and allow you to access your account.
When using the Notion Account Web Application
When you use the Notion Account Web Application, we record, process and store your Preference Data and Transmission Data. We use the data referenced in the preceding sentence to provide customer support, technical troubleshooting, performance management and product enhancement. Doing so is intended to improve and customize your user experience.
WHEN YOU MAKE PURCHASES FROM US
While payments made through or for our Products are processed through a third-party payment processor, we collect and use information about the purchase or transaction. This includes payment information, such as your credit or debit card number and other card information; other account and authentication information; and billing, shipping and contact details. We use this information to the extent necessary to provide you with the Products you request in accordance with our terms, including to administer, manage, and fulfill the purchases or subscriptions you make and for inventory management and our other legitimate business interests.
WHEN YOU CONTACT US
When you contact us with a comment, question, or complaints via telephone call, email, or other means, we collect information like the identity of the caller or sender of email or other communication, the date and time of the call or message, and the subject and resolution of the issue. Your customer service telephone calls, emails, and other communications with us may be recorded, logged, and/or monitored for quality assurance, and/or product and service enhancement purposes such as to assist in addressing your inquiries, troubleshooting, training, and analytics to identify trends and make improvements to our products. We will do so to the extent necessary to respond to and communicate with you about your comment, question, or complaint and in improving our products and services.
MARKETING AND OTHER COMMUNICATIONS
We may offer you the ability to sign-up to receive marketing and promotional communications, including news, product updates, and offers from us. If you sign-up, we collect certain personal information (such as first and last name and email address) which we use to send you such communications. You can unsubscribe from receiving promotional emails from us at any time by simply clicking the “unsubscribe” link provided at the bottom of such emails or by contacting us via our contact information below or the mailing address provided below. Opting-out of these emails will not end transmission of important service-related emails that are necessary to your account or transactions with us.
Notifications may be sent out with your consent via an in-app announcement, a push notification, or email to encourage, motivate, teach, or otherwise engage you with our Products. These may be turned off in the settings section of our apps.
Within our applications, we may provide you with social tools that allow you to share personal information with others. For example, in the Notion app, you can share data from a session on Facebook or Twitter. When you interact with others through these tools, you may be publicly displaying your personal information. Please ensure you take appropriate measures to protect your personal information.
INFORMATION THAT WE SHARE
We will not disclose, trade, rent, sell, or otherwise share personal information, without consent, except as otherwise set out herein, in any special consent you have provided, or as permitted or required by law.
AFFILIATES AND SERVICE PROVIDERS
We will transfer (or otherwise make available) personal information to our affiliates for the above purposes and to third parties who provide services on our behalf. This includes service providers who: (a) store information on our behalf in the cloud; (b) host our websites; (c) operate certain of our Product features; (d) administer services such as order and payment processing, shipping, and customer service; (e) send emails or other communications; (f) manage and analyze data and/or our advertising effectiveness; and (g) provide us with financial, insurance, legal, accounting, or other professional services, as the case may be. Personal information may be maintained and processed by third party service providers in the US, Canada, or other jurisdictions. Our service providers are given the information they need to perform their designated functions and are not authorized to use or disclose personal information for their own marketing or other purposes.
LEGAL AND OTHER REQUIREMENTS
We and our US, or other service providers may provide personal information in response to a search warrant or other legally valid inquiry or order (which may include lawful access by US, or other foreign governmental authorities, courts, or law enforcement agencies), or to other organizations in the case of investigating a breach of an agreement or contravention of law, or detecting, suppressing, or preventing fraud, or as otherwise required or permitted by applicable US, or other law. We may also disclose personal information where necessary for the establishment, exercise, or defense of legal claims and to investigate or prevent an actual or suspected loss or harm to persons or property.
We may transfer personal information as an asset in connection with a proposed or completed merger or sale (including transfers made as part of insolvency or bankruptcy proceeding) involving all or part of our group of companies or as part of a corporate reorganization, financing, or other change in corporate control.
COOKIES, TRACKING TECHNOLOGIES AND ADDITIONAL INFORMATION ABOUT OUR PRODUCTS
When you use our Products, we collect certain information by automated means, such as through server log files, cookies (text files sent to and stored on your Personal Device when you access our websites), web beacons (also known as clear GIFs and pixel tags, which may be used to transmit information back to our Products), Personal Device ID (if you use one of our mobile applications) and embedded scripts (programming code that is designed to collect information about your interactions with the Products, such as the links or features you click on or select, and which is active only when you are using the Products) (collectively, the foregoing are referred to as “Tracking Technologies”).
The information we collect in this manner may include details about the Personal Device used to access the Products (such as browser type, device type, operating system and version, and IP address), referring URLs and information on actions taken or interactions with our Products.
We use the following Tracking Technologies in connection with the Products:
Necessary Tracking Technologies: These are Tracking Technologies that are required for the operation of our Products, to enhance your user experience when you use our Products, and to embed third-party features. They include, for example, Tracking Technologies that enable you to log into your account or access the features or web pages you select, remember your preferences (for example, your choice of language), pre-fill form fields you have previously completed, and integrate useful services provided by third party providers into our Products, such as social media features.
Analytics Tracking Technologies: We use third party web and mobile analytics services such as Google Analytics and Firebase Analytics, to help us analyze how visitors use the Products. We may permit these third parties to operate directly on or through our Products, using their own Tracking Technologies, and to collect information about you on our behalf. These Tracking Technologies allow us to measure and analyse behaviours and usage patterns of our customers, such as which pages or features are visited or used most often, for how long, and whether an error message is received by a customer. These analytics services may also provide us with other data they collect outside of our applications in an aggregated, de-identified form. We use this information to help us with Product performance monitoring and enhancement, and technical troubleshooting.
Interest-Based Advertising Tracking Technologies: When you visit our websites or apps, we may allow some third parties to (such as advertising networks and data analytics companies) collect information about your online activities over time and across different websites and apps (such as websites and apps you visit and response to ads) in order to measure the effectiveness of our marketing campaigns and to deliver ads that are more relevant to you, both on and off our websites. In some instances, we may also combine information we receive about you from third parties with information we collect through our websites. To opt-out of interest-based advertising, please see “Opting-out of Interest-Based Advertising” below.
You may set your web browser or Personal Device settings to notify you when you receive a cookie or to not accept certain Tracking Technologies. In our apps, we provide the ability to opt-out of Tracking Technologies, typically found in the settings. However, if you decide not to accept Tracking Technologies in connection with our Products, you may not be able to take advantage of all the features of our Products.
To find out more about cookies, including how to see what cookies have been set, and how to adjust your browser settings to block cookies, visit www.aboutcookies.org or www.allaboutcookies.org. Your browser settings may also allow you to automatically transmit a “Do Not Track” signal to websites and online services you visit. However, there is no consensus among industry participants as to what “Do Not Track” means in this context. Like many websites and online services, we currently do not alter our practices when we receive a “Do Not Track” signal from a visitor’s browser.
You can obtain additional information on Google Analytics’ collection and processing of data, including how to opt out, by clicking on the links provided:
USE OF DE-IDENTIFIED DATA
Some of the information that you share with us or that we collect about you may not by itself identify you to us or be personally identifiable and therefore may not be considered personal information. We may also remove personal identifiers from your information to render such personal information non-identifiable. This includes Motor Imagery Data and in-app surveys. We maintain and use it as de-identified data, and may combine such de-identified data with other information to generate aggregated data. We use such de-identified and/or aggregated information to help us improve our product and service offerings, and may also provide de-identified and/or aggregated data to researchers in connection with research programs.
THIRD-PARTY LINKS AND INTEGRATIONS
HOW DOES NEUROSITY KEEP YOUR INFORMATION SAFE?
We take data privacy seriously and have implemented physical, technical, and administrative safeguards designed to appropriately protect the security and privacy of your personal information against loss, theft, and unauthorized access, copying, use, disclosure, or modification.
We limit access to your personal information to employees and authorized service providers with a need to know to fulfill their designated functions.
TRANSFER OF PERSONAL INFORMATION TO OTHER COUNTRIES
Your personal information may be collected, used, processed, transferred, and retained by us, our affiliates and our service providers in multiple countries (including the United States, and the European Economic Area (“EEA”)) which may be outside the region in which you are situated and may have different privacy or data protection legislation, and may therefore be subject to the laws of these countries. In all such cases, we will only transfer your personal information if we have put in place appropriate safeguards in respect of the transfer, including by selecting U.S. service providers that are certified to the EU-U.S. and/or Swiss-U.S. Privacy Shield frameworks or by executing data transfer agreements with our service providers based on the European Commission’s Standard Contractual Clauses in accordance with Articles 45 and 46 of the EU General Data Protection Regulation (GDPR) respectively. You may obtain a copy of the safeguards we use in respect of such transfers by contacting us by our contact information below.
HOW LONG DOES NEUROSITY KEEP YOUR INFORMATION?
We have information retention processes designed to retain your personal information only for so long as we consider necessary for the purposes set out above, and for other legitimate business purposes including considering criteria such as applicable legal requirements and statutes of limitations, the duration of your use of the Products, and the information needed to support your warranty and support requests. Typically, we will retain your Notion account personal information for as long as you have an account on one or more of our Products. We will delete your personal information from our Products if your account becomes inactive, i.e., there has been no user log-in to the account for a period set by us from time-to time (such period of non-activity will not exceed 10 years) or if you withdraw your consent to the processing of your personal information (e.g., if you delete your account). In such case, backup copies of your personal information will be removed from our cloud, however it may persist in our database for a short period (up to 30 days) due to technical reasons. Neurosity may continue to use de-identified data and aggregate information obtained in connection with your use of the Products. Notwithstanding the forgoing, we may retain your purchase information, warranty, and customer support information to the extent necessary for our legitimate business interests and in accordance with our obligations under applicable law in order to serve you better; to delete this type of personal information, please contact us by our contact information below.
YOUR CHOICES AND PRIVACY RIGHTS
You may have certain rights with respect to our processing of your personal information. Subject to applicable law, you may have the right to: (1) request access to the information we hold about you; (2) request that we update, correct, or amend your information; (3) request that we erase your information; or (4) request the restriction of our use of your personal information. In addition, and subject to applicable law, you may receive, in a structured, commonly used and machine-readable format, the personal information that you have provided to us about you with your consent or based on a contract with us. In appropriate circumstances, you have the right to have this information transmitted to another company, where it is technically feasible.
You also may object at any time to the use of your personal information, on grounds relating to your particular situation, where we use that information based on our legitimate interests as described above. You also may withdraw any consent you previously provided to us, e.g., by deleting any user account you have in connection with our Products or by contacting us by our contact information below. If you do so, this will not affect the lawfulness of our use of your information based on your consent before its withdrawal. Please note that if you revoke your consent to use certain data, you may not be able to use our Products or certain features or functionality of our Products.
If you contact us to do any of the things listed above, we may require you to provide sufficient personal information to allow us to identify you and provide you with the requested information. If you are located in the EEA, please put the “GDPR” in the subject line of your communication with us to help us direct your inquiry. We will respond to your request within a reasonable time and at minimal or no cost to you in accordance with applicable laws.
If you are not satisfied by our response or if you consider that our processing of your personal information infringes applicable law, you may lodge a complaint with a competent supervisory or regulatory authority, which may be the authority in your jurisdiction of residence or work.
CALIFORNIA RESIDENTS – YOUR CALIFORNIA PRIVACY RIGHTS
California Civil Code Section § 1798.83 permits users who are California residents to request certain information, including the categories of personal information disclosed to third parties for their marketing purposes and the names and addresses of those third parties, regarding our disclosure of personal information to third parties for their direct marketing purposes, if any. If you are a California resident and you have questions about our practices with respect to sharing information with third parties and affiliates for their direct marketing purposes, please contact us by our contact information below. Please put the statement “Your California Privacy Rights” in your communication with us.
NEUROSITY’S POLICIES FOR CHILDREN
Our Products are only directed to persons of the age of 16 or over. We do not knowingly collect any personal information from children under 16. If we become aware that we have unknowingly collected personal information from a child under the age of 16, we will make commercially reasonable efforts to delete such personal information from our records. If you are concerned and are aware of a user under the age of 16 using our Products, please contact us by our contact information below.
Neurosity, Inc. (“Neurosity”)
240 Kent Ave
Brooklyn, NY, 11249, USA