Update PRIVACY.md

This commit is contained in:
SpiritCroc 2020-07-28 16:36:02 +02:00
parent f081874d50
commit 21bce12f05
1 changed files with 24 additions and 30 deletions

View File

@ -1,4 +1,8 @@
# Understand how your data is used
# SchildiChat Privacy Policy (last updated on July 28th, 2020)
SchildiChat will be referenced in the later context as "the app".
## Understand how your data is used
The Matrix protocol is designed with your privacy and data sovereignty in mind.
Because it is a decentralised, federated service with cryptographically-validated message integrity, there are a few important things to know before you use the Service.
@ -7,20 +11,25 @@ This app can communicate with any matrix homeserver which supports the matrix sp
The user is free to choose the homeserver and has to accept the privacy policy of this homeserver before using it.
#Federation
## Federation
Services using the Matrix protocol rely on Matrix homeservers which share user data with the wider ecosystem over federation.
- When you send messages or files in a room, a copy of the data is sent to all participants in the room.
If these participants are registered on remote homeservers, your username, display name, messages and files may be replicated across each participating homeserver.
- We will forget your copy of your data upon your request. We will also forward your request onto federated homeservers.
However - these homeservers are outside our span of control, so we cannot guarantee they will forget your data.
- The developer of this app collects no personal (or other) information by means of this app.
- Please refer to the privacy policy of your homeserver operator for details if you wish to request a removal of your data.
- The app allows users to select the matrix.org homeserver, or register/log-in to any other available homeserver.
Before choosing the matrix.org homeserver, please review their [privacy policy](https://matrix.org/legal/privacy-notice) and [code of condcuct](https://matrix.org/legal/code-of-conduct).
If you choose a different homeserver, please review their respective privacy policy and applicable terms before use.
- Federated homeservers can be located anywhere in the world, and are subject to local laws and regulations.
# Bridging
## Bridging
Some Matrix rooms are bridged to third-party services, such as IRC networks, twitter or email.
When a room has been bridged, your messages and media may be copied onto the bridged service.
@ -30,39 +39,24 @@ When a room has been bridged, your messages and media may be copied onto the bri
- Bridged services can be located anywhere in the world, and are subject to local laws and regulations.
# Integration Services (Bots and Widgets)
## Integration Services (Bots and Widgets)
The homeserver the user is using may provide a range of integrations in the form of Widgets (web applications accessed as part of the Matrix Client webapp) and Bots (automated participants in rooms).
Bots and Widgets have access to the messages and files in rooms in which they participate.
# Forgetting your Data
## Forgetting your Data
You can request that we forget your data if you deactivate your account.
Each user in a Matrix conversation receives their own copy of all messages and files in that conversation (similar to email), so we ensure data is forgotten by ensuring that your data is not shared further and is not visible to future users.
Once all users copies have been forgotten the messages and files will be deleted from the homeserver database. For full details, please see the [full privacy notice](https://matrix.org/legal/privacy-notice).
The app developer has no control over the data stored on your homeserver.
You may wish to request your homeserver operator to forget your data if you deactivate your account.
Each user in a Matrix conversation receives their own copy of all messages and files in that conversation (similar to email), so the homeserver operator might ensure data is forgotten by ensuring that your data is not shared further and is not visible to future users please refer to the privacy policy of your homeserver for details.
In case you use the matrix.org homeserver, you can find their privacy policy [here](https://matrix.org/legal/privacy-notice).
If you remove (redact) a message, the message content will no longer be accessible to users.
Redactions only remove message content, your display name and avatar - your username will still be visible. Federated homeservers and some matrix clients may not honour the redaction request.
Redactions only remove message content, your display name and avatar your username will still be visible. Federated homeservers and some matrix clients may not honour the redaction request.
# Legal Basis for Processing
## Commitment to Children's Privacy
New Vector processes your data under Legitimate Interest.
This means that we process your data only as necessary to deliver the Service, and in a manner that you understand and expect.
The Legitimate Interest of our Service is the provision of decentralised, openly-federated and (optionally) end-to-end encrypted communication services.
The processing of user data we undertake is necessary to provide the Service.
The nature of the Service and its implementation results in some caveats concerning this processing, particularly in terms of GDPR Article 17 Right to Erasure (Right to be Forgotten).
We believe these caveats are in line with the broader societal interests served by providing the Service.
These caveats are discussed in detail in the full privacy notice, but the most important restriction is that your username will still be publicly associated with rooms in which you have participated even if you deactivate your account and ask us to forget your data.
In situations where the interests of the individual appear to be in conflict with the broader societal interests, we will seek to reconcile those differences in accordance with our policy.
If any of the above are unacceptable to you, **please do not use the Service**.
Please review the [full privacy notice](https://matrix.org/legal/privacy-notice) and [code of conduct](https://matrix.org/legal/code-of-conduct) before using this Service.
Please review the [terms and conditions](https://matrix.org/legal/terms-and-conditions) before using this Service.
You must be at least 16 years old to use this Service.
We never knowingly collect or maintain information in the app, through any of the Services provided, from those we know are under 16, and no part of the app is structured to attract anyone under 16.
If you are under 16, please do not use the Service.