This policy explains what personal data we collect when you use IO Passport (the "Service"), how we use it, who we share it with, and what rights you have. It is written to be readable — where legal jargon is unavoidable, we've tried to say what it means in plain English.
The data controller is the entity operating IO Passport under the domain iopassport.com and its variants. Contact: hello@attos.one.
| Name | Set by | Purpose | How long |
|---|---|---|---|
app_token |
IO Passport (localStorage) | Keeps you logged in. Signed JWT. | Until you sign out or the token expires |
app_payload |
IO Passport (localStorage) | Cached user profile used to render the UI without re-fetching. | Same as above |
iop_theme |
IO Passport (localStorage) | Remembers your light/dark mode preference. | Until you clear browser storage |
| Analytics cookies | Third-party analytics vendor (see section 4) | Anonymous, aggregated product usage metrics. | Up to 24 months (vendor-controlled) |
We rely on the following third parties to operate the Service. Each has their own privacy policy, and using the Service means you accept that we share the specific data listed below with them for the stated purpose.
| Vendor | What they do | What we send them | Their policy |
|---|---|---|---|
| Google Analytics | Aggregated product usage analytics — which pages are visited, how features are used. | Pseudonymised device / browser data, IP (masked where available), pageviews. No account content. | policies.google.com/privacy |
| Our email vendor (SMTP / Brevo / SES / SendGrid — whichever is configured) | Delivers transactional and Daily Rundown emails. | Your name, email address, and the email content we are sending. | Vendor policy on their website. |
| Cloud hosting provider | Runs the servers and databases the Service uses. | All data you enter into the Service (encrypted in transit and at rest where the provider supports it). | Provider policy on their website. |
| Error and crash reporting (if enabled) | Alerts us when the Service is broken. | Stack traces, URLs, and browser data — configured to strip personal fields where technically possible. | Vendor policy on their website. |
We do not sell your personal data. We do not run advertising in the Service, and we do not share your data with ad networks.
Account data is kept while your account is active and for a reasonable period after deletion (typically up to 90 days) so accidental deletions can be recovered and backups can roll off. After that we delete or anonymise. We may retain minimal information longer where the law requires it.
Depending on your jurisdiction, you may have the right to:
To exercise any of these rights, email hello@attos.one. We respond within 30 days.
The Service is not intended for children under 16. Do not create an account for a child. If we find out we hold data on a child under 16, we will delete it.
Your data may be processed in a country different from the one you live in (typically wherever our hosting provider operates its datacentres). Where transfers are subject to local law (e.g. from the EU / UK), we use appropriate safeguards — for example, Standard Contractual Clauses.
We use HTTPS for all traffic, hash passwords with bcrypt, sign session tokens, and follow standard operational security practices. No system is perfectly secure — if you learn of a vulnerability, please email hello@attos.one.
We may update this policy from time to time. When we make material changes, we will notify you by email or in-app before they take effect.