Privacy Policy
This Privacy Policy describes how Pragmatic Engineering Solutions (“PES,” “we,” “us,” or “our”) collects, uses, discloses, and protects information in connection with:
- Our cloud-based Application Performance Monitoring (APM) portal for energy monitoring and analysis, accessible via web browser (the “Portal”); and
- Our companion mobile applications for iOS and Android (the “App”),
collectively referred to as the “Services.”
By creating an account, installing the App, or otherwise using the Services, you agree to the collection and use of information as described in this Privacy Policy. If you do not agree, please do not use the Services.
- Who We Are
Pragmatic Engineering Solutions is an engineering solutions provider offering industrial automation, power systems, and energy monitoring products, including edge controllers, Modbus-based device integrations, and the cloud/mobile Services described here.
Contact for privacy inquiries: Pragmatic Engineering Solutions Email: support@pragmaticeng.com
- Information We Collect
2.1 Information You Provide Directly
- Account information: name, email address, phone number, company/organization name, job title, and password (stored in hashed form).
- Support communications: information you submit when contacting customer support, including messages, attachments, and diagnostic logs you choose to share.
- Site/asset configuration data: names and labels you assign to sites, devices, meters, or dashboards within the Portal or App.
2.2 Information May Collected Automatically
- Device and telemetry data: energy and power metrics collected from connected metering/monitoring hardware (e.g., kW, kWh, kVA, kVAR, PF, voltage, current, frequency), timestamped readings, device status, alarms, and fault/downtime records, transmitted from field controllers to the cloud Portal.
- Device identifiers: unique identifiers of monitoring hardware/gateways registered to your account (serial numbers, MAC addresses, device IDs) used to associate telemetry with your account.
- Mobile device information: device model, operating system version, unique app instance identifiers, mobile network information, and crash/diagnostic logs.
- Usage data: log-in timestamps, features accessed, pages/screens viewed, session duration, and general interaction data within the Portal and App, used for security and product improvement.
- Location data (if applicable): the App may request approximate location or local network access solely to discover monitoring devices on the same network (e.g., via local network/Bluetooth/Wi-Fi discovery). This is used only for device pairing and is not used to track your movement.
2.3 Information From Cookies and Similar Technologies (Web Portal)
The web Portal uses cookies and similar technologies (local storage, session tokens) to:
- Keep you logged in and maintain session state
- Remember dashboard/display preferences
- Understand aggregate usage patterns for product improvement
We do not use cookies for third-party advertising. You can control cookies through your browser settings; disabling essential cookies may prevent the Portal from functioning correctly.
- How We Use Information
We use the information described above to:
- Provide, operate, and maintain the Portal and App, including real-time and historical energy monitoring, alarms, and reporting
- Authenticate users and secure accounts
- Associate registered devices and telemetry data with the correct customer account
- Diagnose technical issues, provide customer support, and maintain system reliability
- Send service-related communications (e.g., alerts, maintenance notices, security notifications)
- Improve, test, and develop new features
- Comply with legal obligations and enforce our terms of service
- Detect, investigate, and prevent fraud, unauthorized access, or misuse of the Services
We do not sell your personal information, and we do not use your energy/telemetry data for third-party advertising purposes.
- Legal Basis for Processing (EEA/UK Users)
Where applicable data protection law (e.g., GDPR) requires it, we process personal data on the following bases:
- Performance of a contract: to provide the Services you signed up for
- Legitimate interests: to secure, maintain, and improve the Services, and to communicate with customers
- Consent: where required (e.g., for optional location-based device discovery, or marketing communications)
- Legal obligation: where processing is required to comply with applicable law
- How We Share Information
We do not sell personal information. We may share information in the following circumstances:
- Service providers/subprocessors: cloud hosting providers, database and infrastructure providers, and analytics or crash-reporting vendors who process data on our behalf under contractual confidentiality and security obligations. [LIST SPECIFIC SUBPROCESSORS IF REQUIRED BY YOUR JURISDICTION, E.G. AWS, AZURE, FIREBASE]
- Within your organization: account data and site/device telemetry may be visible to other authorized users within your organization who are granted access by an account administrator.
- Legal compliance: where required to comply with applicable law, regulation, legal process, or governmental request.
- Business transfers: in connection with a merger, acquisition, financing, or sale of assets, subject to standard confidentiality protections.
- With your consent: for any other purpose disclosed to you at the time of collection, with your consent.
- Data Storage, Security, and Retention
- Data is stored on secured cloud infrastructure with access controls, encryption in transit (TLS), and encryption at rest where supported by the underlying provider.
- We implement administrative, technical, and physical safeguards designed to protect your information, including authentication controls, hardened server configurations, and restricted internal access.
- No method of transmission or storage is 100% secure; we cannot guarantee absolute security.
- Retention: We retain account information for as long as your account is active. Telemetry/historical energy data is retained for [INSERT RETENTION PERIOD, e.g., “24 months” or “as configured per customer plan”] to support historical analysis and reporting, after which it may be aggregated, anonymized, or deleted. You may request earlier deletion as described in Section 8.
- International Data Transfers
If you access the Services from outside the country where our servers are located, your information may be transferred to, stored, and processed in a different country. Where required, we rely on appropriate safeguards (such as standard contractual clauses) for such transfers.
- Your Rights and Choices
Depending on your location, you may have the right to:
- Access, correct, or update your personal information
- Request deletion of your personal information
- Object to or restrict certain processing
- Request a portable copy of your data
- Withdraw consent where processing is based on consent
- (California residents) request disclosure of categories of personal information collected/shared, and opt out of “sale” or “sharing” as defined under the CCPA/CPRA — noting that we do not sell personal information
- (EEA/UK residents) lodge a complaint with your local data protection authority
To exercise these rights, contact us at [INSERT PRIVACY/SUPPORT EMAIL]. We may need to verify your identity before fulfilling a request.
- Children’s Privacy
The Services are intended for business and industrial use by adults and are not directed to children under 16. We do not knowingly collect personal information from children. If we learn we have inadvertently collected such information, we will delete it promptly.
- App Store-Specific Disclosures
In accordance with Apple App Store and Google Play Store requirements:
- Data collected: as described in Section 2 (account data, device/telemetry data, device identifiers, usage/diagnostic data, and optionally approximate/local network location for device pairing).
- Data linked to you: account information and telemetry associated with your registered devices.
- Data used for tracking: we do not use your data for cross-app/cross-site advertising tracking.
- Permissions requested by the App may include: Internet/network access (required for cloud sync), local network access (to discover monitoring devices), notifications (for alerts), and storage access (to export reports). [ADJUST TO MATCH YOUR APP’S ACTUAL PERMISSION MANIFEST]
A complete, itemized “Data Safety” (Google Play) and “App Privacy” (Apple App Store) declaration should be maintained in each respective developer console consistent with this policy.
- Third-Party Links and Services
The Portal or App may contain links to third-party websites or integrate with third-party services (e.g., cloud storage export, SSO providers). This Privacy Policy does not apply to those third parties, and we encourage you to review their respective privacy policies.
- Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons. We will post the updated policy with a revised “Last Updated” date, and where changes are material, we will provide additional notice (e.g., via email or in-app notification).
- Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, contact us at:
Pragmatic Engineering Solutions Email: support@pragmaticeng.com