Privacy Policy

Introduction

We are NTGR (NTGR LLC) (NTGR, Company). NTGR respects your privacy and is committed to protecting it in accordance with applicable laws and using generally-accepted industry practices. We only use your data for its stated purpose. This Privacy Policy explains who we are, how we collect, share, and use personal information about you, and how you can exercise your privacy rights.

If you have any questions or concerns about NTGR’s collection and use of your personal data, please contact us using the contact details provided below.

Terms used in this Policy

Personal data — any information related to a natural person (data subject). For example, personal data are surname, e-mail or phone number.

Processing — actions performed with personal data, including: collecting data from data subject/ from another data subject; recording this data to our systems (record) and keeping this data so that Company don’t lose it (storage), using data to collection, recording, storage, destruction, clarification (updating, changing), erasure, transfer (distribution, provision, access), modification of data when Company receives new information from users (modification), deletion of data when the purpose of its processing is achieved (deletion), transfer data to another counterparties (transfer).

Counterparty — a person (natural or legal) with whom Company cooperates under the contract for achieving the personal data processing activities purposes.

International transfer of personal data — transfer of personal data to a foreign state that encompasses such activities as collecting from the user their data and transferring it to another state for processing as well as transfer of such data to our counterparties located in other states for achieving processing purposes.

GDPR — Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation).

Who are we and how to contact us?

This Privacy Policy explains how personal data is processed by NTGR. You can write to us: help@ntgr.app

NTGR is developer of the NTGR Software (NTGR, Software) that provides ability to configure Pipedrive deals distribution functionality.

If you have questions, please contact the privacy team at ntgr.app or the support team at privacy@ntgr.app

Principles of the personal data processing

We adhere to the following principles when processing personal data:

Principles of the personal data processing Article of the GDPR Exercise of the right
Lawfulness, fairness and transparency: Personal data shall be processed lawfully, fairly and in a transparent manner in relation to the data subject Article 5(1)(a) of the GDPR The processing of personal data is carried out in a lawful, fair and in a transparent manner in relation to the data subject. We process personal data only if there are appropriate legal basis. In addition, we notify the data subjects about the processing of their personal data in a timely, clear and accessible manner.
When we use a consent as a legal basis for personal data processing, we take necessary steps to ensure that a consent will be given freely and unambiguously for one or several specific processing activities after providing an adequate information to a data subject
Purpose limitation: Personal data shall be collected for specified, explicit and legitimate purposes and not further processed in a manner that is incompatible with those purposes; further processing for archiving purposes in the public interest, scientific or historical research purposes or statistical purposes shall, in accordance with Article 89(1), not be considered to be incompatible with the initial purposes Article 5(1)(b) of the GDPR The processing of personal data is limited to the achievement of specific, predetermined (explicit) and legitimate purposes. We do not process personal data in any way incompatible with the purposes of its collection
Data minimisation: Personal data shall be adequate, relevant and limited to what is necessary in relation to the purposes for which they are processed Article 5(1)© of the GDPR The content and volume of personal data are consistent with the stated processing purposes. We have identified the minimum volume of personal data necessary to achieve the purposes of processing personal data
Accuracy: Personal data shall be accurate and, where necessary, kept up to date; every reasonable step must be taken to ensure that personal data that are inaccurate, having regard to the purposes for which they are processed, are erased or rectified without delay Article 5(1)(d) of the GDPR When processing personal data, we ensure the accuracy, sufficiency and relevance of personal data. We assess the reliability of the source of personal data, as well as respond to requests from the data subjects to rectify their personal data
Storage limitation: Personal data shall be kept in a form which permits identification of data subjects for no longer than is necessary for the purposes for which the personal data are processed; personal data may be stored for longer periods insofar as the personal data will be processed solely for archiving purposes in the public interest, scientific or historical research purposes or statistical purposes in accordance with Article 89(1) subject to implementation of the appropriate technical and organisational measures required by this Regulation in order to safeguard the rights and freedoms of the data subject Article 5(1)(e) of the GDPR We store personal data in a form that allows to identify the data subjects for no longer than it is required for the purpose of processing personal data, unless the retention period is established by applicable law. Upon achievement of the purposes of processing personal data we delete the relevant personal data
Integrity and confidentiality: Personal data shall be processed in a manner that ensures appropriate security of the personal data, including protection against unauthorised or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organisational measures Article 5(1)(f) of the GDPR When processing personal data, we ensure the availability, authenticity, integrity and confidentiality of personal data, and apply the necessary organizational and technical measures to protect personal data
Accountability: The controller shall be responsible for, and be able to demonstrate compliance with, paragraph 1 Article 5(2) of the GDPR We are responsible for the compliance of our personal data processing activities with the principles indicated above within the framework of the applicable legislation in the field of processing and security of personal data

What data, for what purposes, how long, and based on what grounds do we process as a Controller?

Purpose of Processing Data Subjects: Categories of Data Storage Period Grounds Third parties
Providing access to NTGR Our customers and their representatives: Full name, email address, name of the employer company at Pipedrive until application uninstallation and 30 days after (grace period) Consent DigitalOcean, LLC
Support for NTGR user accounts Our users: Email address, Full name until application uninstallation and 30 days after (grace period) Consent 37signals LLC
Safety and security Our users: IP, User-Agent, time of login 30 days legitimate interest DigitalOcean, LLC

What data, for what purposes, how long, and based on what grounds do we process as a Processor?

Purpose of Processing Data Subjects: Categories of Data Storage Period Grounds Third parties
Providing access to NTGR to users Our customers and their representatives: Full name, email address, name of the employer company at Pipedrive until application uninstallation and 30 days after (grace period) Contract DigitalOcean, LLC
Scheduling tasks using a Pipedrive service Customer’s Pipedrive API access and refresh token for making API call on behalf of the user until application uninstallation and 30 days after (grace period) Contract DigitalOcean, LLC

How we process your data?

Processing of special categories of personal data

We do not process special categories of personal data.

Processing of children’s personal data

We do not offer of information society services to a child (up to the age of 16 years).

Processing of personal data relating to criminal convictions and offences

We do not process personal data containing information about the administrative offences and criminal record.

The existence of automated decision-making

We do not make any automated decisions about you that would result in legal or other similarly significant effects on you.

Who do we share your data with?

We use third-party service providers to help us provide portions of the NTGR software and give support. Examples of these third parties include public cloud storage vendors, carriers, our payment processor, and our service provider for managing client support tickets.

They only receive data needed to provide their services to us. We have agreements with our service providers that say they cannot use any of this data for their own purposes or for the purposes of another third party.

We prohibit our service providers from selling data they receive from us or receive on our behalf.

We require service providers to use data only in order to perform the services we have hired them to do (unless otherwise required by law). For example, we may use a company to help us provide client support. The information they may receive as part of providing that support cannot be used by them for anything else.

Acting as a Controller we share your data with the following processors:

Processors, their Location and the Link to Privacy Policy / Website if applicable Country of establishment Purpose of Transfer The role of the service provider
DigitalOcean, LLC
DigitalOcean Privacy Policy
Germany Hosting provider Processor
37signals LLC
37signals Privacy Policy
USA
Country does not guarantee sufficient levels of personal data protection according to Chapter 5 of GDPR
Email Service Provider Processor

Cookies

We also collect cookies data from all NTGR users based on their contracts with our company that stipulate that we have to provide them with specified features of the NTGR program.

Site users or NTGR users can turn cookies off in the settings of their web browser or mobile device. However, certain NTGR features may become unavailable to NTGR users.

We don't share this data with other services.

Necessary cookies enable core functionality such as security, network management, and accessibility. You may disable these by changing your browser settings, but this may affect how the website functions.

Analytics cookies used for analytics help collect data that allows services to understand how users interact with a particular service. For more information on how these cookies work please see our Privacy policy.

Marketing cookies are used to target advertising to the user (behavioural targeting). They are serviced by third-party companies and track the user on websites. For more information about which cookie providers process your data, please read our Privacy policy.

Preference cookies enable a website to remember information that changes the way the website behaves or looks, like your preferred language or the region that you are in. For more information on how these cookies work please see our Privacy policy

Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.

What can you do if you do not want storing cookies to be set or want them to be removed?

You are able to withdraw the consent to store cookies by resetting cookie settings.

We use the following cookies and tracking technologies, including cookies from our partners and service providers:
Category Description Name Provider Duration
Necessary Preserves users states across page requests _dd_key dd.ntgr.app Session
Cookie for secure authentication process ueberauth.state_param dd.ntgr.app Session

How we respect your rights

We respect your rights:

If your rights have been violated, you may lodge a complaint to the oversight body of an EU member state where you permanently reside or work or where the violation took place.

Changes to this Policy

We regularly update this Policy in case there are significant changes in the way we process your personal data. You will receive a notification prior to such significant changes become effective by email if you provided us with your email address or by pop-up notice on our website.