Privacy Policy
Last Updated: February 12, 2025
At ConsoleNext, we take your privacy seriously. This policy explains how we collect, use, store, and protect your personal information when you use our financial forecasting and budgeting services. We operate in compliance with Taiwan's Personal Data Protection Act and international data protection standards.
Information We Collect
We collect different types of information depending on how you interact with our platform. This includes details you provide directly and information we gather automatically during your use of our services.
- Account Information: When you register, we collect your name, email address, phone number, and company details if applicable. This helps us create and manage your account securely.
- Financial Data: To provide forecasting and budgeting services, we process the financial information you input into our platform. This might include revenue figures, expense categories, budget allocations, and historical financial records.
- Usage Information: We track how you interact with our platform – which features you use, how often you log in, and what reports you generate. This helps us improve our service and understand what matters most to our users.
- Technical Data: We automatically collect IP addresses, browser types, device information, and operating system details. This information helps us troubleshoot issues and optimize platform performance.
- Communication Records: When you contact our support team or interact with us via email, we keep records of those conversations to provide better assistance and track service quality.
How We Use Your Information
Your data serves specific purposes that directly relate to providing and improving our services. We don't use your information for unrelated activities or share it unnecessarily.
Service Delivery
We use your financial data to generate forecasts, create budget reports, and provide the analytical tools you signed up for. Without this information, we simply couldn't deliver the service.
- Account Management: We maintain your profile, handle authentication, and manage subscription details using the information you provided during registration.
- Service Improvement: Usage patterns help us identify which features work well and which need refinement. We analyze aggregated data to make platform-wide improvements.
- Customer Support: When you reach out for help, we reference your account information and usage history to provide relevant, efficient assistance.
- Security Monitoring: We monitor for unusual activity patterns that might indicate unauthorized access or security threats to your account.
- Legal Compliance: In some cases, we're required to retain certain information to comply with Taiwan's financial record-keeping regulations and tax laws.
We occasionally send service-related emails about updates, maintenance schedules, or important changes to our terms. These aren't marketing messages – they're essential communications about the service you're using.
Data Storage and Security
Your information lives on secure servers located in certified data centers. We use industry-standard encryption both when data travels between your device and our servers, and when it sits in our databases.
Security Measure | Implementation |
---|---|
Data Encryption | AES-256 encryption for stored data, TLS 1.3 for data in transit |
Access Control | Multi-factor authentication and role-based access restrictions |
Network Security | Firewalls, intrusion detection systems, and regular security audits |
Backup Systems | Daily encrypted backups stored in geographically separate locations |
Employee Access | Limited to essential personnel with logged and monitored activities |
Our team members who can access user data go through background checks and sign strict confidentiality agreements. We log every instance of data access by our staff, and these logs get reviewed regularly.
Despite our precautions, no online system is completely immune to security breaches. If we ever experience a data incident that affects your information, we'll notify you within 72 hours and explain what happened, what data was involved, and what steps we're taking.
Information Sharing and Third Parties
We don't sell your data to anyone. That's a straightforward policy we won't compromise on. However, we do work with specific service providers who help us run the platform.
- Cloud Infrastructure Providers: Our servers are hosted with reputable cloud service providers who maintain the physical infrastructure and ensure uptime. These providers can technically access stored data but are contractually prohibited from using it.
- Payment Processors: When you pay for our services, your payment information goes directly to our payment processor. We never see or store your complete credit card numbers.
- Analytics Services: We use analytics tools to understand how people use our platform. These services receive aggregated, anonymized data – not your personal financial information.
- Email Service Providers: Transactional emails and service notifications are sent through third-party email services that handle delivery and tracking.
All third-party providers we work with sign data processing agreements that limit how they can use your information. They're only allowed to process data for the specific purposes we've hired them for.
Legal Requirements
We may disclose information if legally required to do so – for example, in response to a valid court order or government request. If this happens, we'll notify you unless we're legally prohibited from doing so. We also reserve the right to share information when we believe it's necessary to prevent fraud, protect our legal rights, or ensure user safety.
Your Rights and Control
You have significant control over your personal information. Here's what you can do and how to exercise these rights:
- Access Your Data: You can request a complete copy of all personal information we hold about you. We'll provide this in a structured, commonly used format within 30 days of your request.
- Correct Inaccuracies: If any information we have is wrong or outdated, you can update it directly through your account settings or contact us for assistance.
- Delete Your Information: You can request deletion of your account and associated data at any time. We'll process this within 15 days, though we may retain certain information if required by law.
- Export Your Data: You can download your financial data and reports in CSV or PDF format directly from your account dashboard.
- Restrict Processing: If you believe certain information is inaccurate or you're contesting our use of data, you can ask us to temporarily stop processing while we investigate.
- Withdraw Consent: For any data processing based on your consent, you can withdraw that consent at any time without affecting the lawfulness of processing that occurred before withdrawal.
To exercise any of these rights, email us at [email protected] with your request. We'll verify your identity before processing any requests that involve accessing or modifying your data.
Under Taiwan's Personal Data Protection Act, you also have the right to file a complaint with the relevant supervisory authority if you believe we've mishandled your personal information.
Data Retention Periods
We don't keep your information forever. Our retention periods depend on the type of data and its purpose:
- Active Account Data: While your account remains active, we retain all your financial data and usage history to provide continuous service.
- Closed Account Data: After you close your account, we keep basic information for 90 days in case you change your mind. Financial data gets deleted immediately unless legal requirements mandate longer retention.
- Financial Records: Taiwan's tax regulations require us to retain certain financial transaction records for seven years. This applies to billing information and payment history.
- Support Communications: Customer service interactions are kept for three years to help us track service quality and resolve any recurring issues.
- Legal Records: If your data becomes relevant to legal proceedings or disputes, we retain it until those matters are fully resolved.
When retention periods expire, we don't just delete files from our active systems – we ensure they're removed from backups and archived systems as well. This process typically completes within 60 days after the retention period ends.
Cookies and Tracking Technologies
Our platform uses cookies and similar technologies to function properly and improve your experience. Here's what we use and why:
- Essential Cookies: These keep you logged in, remember your preferences, and enable core platform functionality. You can't disable these without breaking the service.
- Performance Cookies: These help us understand how people use different features so we can identify problems and optimize performance. They don't identify you personally.
- Session Storage: Temporary data stored in your browser during your session to maintain state and improve loading times. This clears when you close your browser.
You can control cookie settings through your browser preferences, but disabling certain cookies will affect platform functionality. We don't use third-party advertising cookies or track you across other websites.
International Data Transfers
While our primary operations are based in Taiwan, some of our service providers operate servers in other countries. This means your data might be processed or stored outside Taiwan at times.
When we transfer data internationally, we ensure appropriate safeguards are in place. This includes using providers who comply with recognized international data protection frameworks and signing standard contractual clauses that provide equivalent protection to Taiwan's regulations.
If you're accessing our services from outside Taiwan, your data will be transferred to and processed in Taiwan under our local data protection standards.
Children's Privacy
Our services aren't designed for or directed at individuals under 18 years old. We don't knowingly collect personal information from minors. If we discover we've inadvertently collected data from someone under 18, we'll delete it promptly.
If you're a parent or guardian and believe your child has provided us with personal information, please contact us immediately so we can remove it from our systems.
Changes to This Privacy Policy
We update this policy occasionally to reflect changes in our practices, technology, or legal requirements. When we make significant changes, we'll notify you via email at least 30 days before they take effect.
Minor updates that don't materially affect your rights might be posted without notification. We recommend reviewing this page periodically to stay informed. The "Last Updated" date at the top shows when the most recent changes were made.
If you continue using our services after changes take effect, we consider that acceptance of the updated policy. If you disagree with changes, you can close your account before they become effective.
Business Transfers
If ConsoleNext is acquired by another company, merges with another business, or sells substantial assets, your information may be transferred as part of that transaction. We'll notify you before your data becomes subject to a different privacy policy.
In such scenarios, we'll require the acquiring party to honor the commitments made in this privacy policy. You'll have the option to delete your account before the transfer if you prefer not to continue under new ownership.
Questions About Your Privacy?
If you have concerns about how we handle your data or want to exercise any of your rights, reach out to us. We respond to most inquiries within two business days.
No. 26號, Section 1, Zhongzheng Rd, Lugu Township, Nantou County, Taiwan 558