Privacy Policy
Last updated: December 2024
1. Introduction
Entira ("we", "our", or "us") operates the Enterprise Architecture Brain (EA Brain) service. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.
We are committed to protecting your privacy and ensuring compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
2. Data Controller
The data controller responsible for your personal data is:
- Company: Entira
- Email: privacy@eabrain.eu
- Address: European Union
3. Information We Collect
3.1 Information You Provide
- Account Information: Email address, organization name, team size
- Usage Information: How you intend to use our service
- Communication Data: Information you provide when contacting us
3.2 Automatically Collected Information
- Technical Data: IP address (anonymized for logging), browser type, device information
- Usage Data: Pages visited, features used, time spent on service
4. How We Use Your Information
We use the collected information for the following purposes:
- To provide and maintain our service
- To process your waitlist registration
- To send you updates about our service launch
- To respond to your inquiries and provide support
- To improve our service and develop new features
- To comply with legal obligations
5. Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Consent: When you join our waitlist, you consent to receiving updates
- Legitimate Interest: For service improvement and security purposes
- Contract Performance: To provide our services to you
- Legal Obligation: To comply with applicable laws
6. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including:
- Waitlist Data: Until service launch or upon your request for deletion
- Account Data: For the duration of your account plus 30 days after deletion
- Transaction Records: As required by applicable tax and commercial laws
7. Data Sharing and Transfers
We may share your data with:
- Service Providers: Third-party services that help us operate our platform (e.g., Clerk for authentication)
- Legal Requirements: When required by law or to protect our rights
Important: Your data is stored and processed exclusively within the European Union. We do not transfer your data outside the EU.
8. Your Rights
Under GDPR, you have the following rights:
- Access: Request a copy of your personal data
- Rectification: Request correction of inaccurate data
- Erasure: Request deletion of your data ("right to be forgotten")
- Restriction: Request limitation of data processing
- Portability: Request transfer of your data in a machine-readable format
- Objection: Object to processing based on legitimate interests
- Withdraw Consent: Withdraw previously given consent at any time
To exercise any of these rights, please contact us at privacy@eabrain.eu.
9. Security Measures
We implement appropriate technical and organizational measures to protect your data, including:
- Encryption of data in transit (TLS/HTTPS)
- Encryption of data at rest
- Regular security assessments
- Access controls and authentication
- IP anonymization in logs
10. Cookies
We use essential cookies necessary for the operation of our service. These cookies do not require consent as they are strictly necessary. We do not use tracking or advertising cookies.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
12. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
- Email: privacy@eabrain.eu
- Enterprise inquiries: enterprise@eabrain.eu