Last updated: 2026-02-25
This Privacy Policy explains how Preventos Informatics Oy ("we", "us", "our") processes personal data when invited users access and use Preventos Hero (the "App"). We are committed to protecting personal data and complying with the EU General Data Protection Regulation (GDPR).
The App is not publicly available. Access is restricted to invited users from customer organizations.
Preventos Informatics Oy
Address: Hannunpolku 22, 70870 Hiltulanlahti, Finland
Email: info@preventos.fi
We process only the personal data necessary to operate the App and authenticate invited users.
These are obtained through Microsoft Entra External ID (CIAM) when your organization or we invite you.
Collected and handled through Microsoft Entra External ID (CIAM):
We do not store passwords.
To ensure full functionality, the App stores:
We do not store personal data in localStorage unless required for core functionality.
| Purpose | Legal Basis |
|---|---|
| Provide access to the App to invited users | Art. 6(1)(b) Contract |
| Authentication via Entra External ID | Art. 6(1)(f) Legitimate interest (secure access control) |
| Manage user accounts and permissions | Art. 6(1)(b) Contract |
| Security, logging, and fraud prevention | Art. 6(1)(f) Legitimate interest |
| Operate and improve the service | Art. 6(1)(f) Legitimate interest |
| Compliance with legal obligations | Art. 6(1)(c) Legal obligation |
We do not process personal data for marketing and do not sell personal data.
Used solely for:
These cookies are required for the App to function. Consent is not required under GDPR for essential cookies.
Used for:
LocalStorage is not used for tracking or analytics.
The App does not embed analytics, trackers, ads, or social media plugins.
Used exclusively for secure sign-in and identity verification.
We use the following CDN provider for external fonts, CSS, and JavaScript:
When a resource is loaded from a CDN, the CDN provider may receive your IP address and basic request metadata (such as user agent and referrer). We use only resources required for the UI and do not use these for tracking.
We use the following providers for map tiles and GIS layers:
These requests can disclose your IP address and basic request metadata to the provider. Satellite tiles may be offered only when you explicitly consent in your user profile.
We may share personal data only with:
We do not sell or transfer personal data to third parties for advertising.
If personal data is transferred outside the EU/EEA, we ensure appropriate safeguards such as:
You may request a copy of applicable safeguards.
We retain personal data only for as long as necessary to:
If an organization removes a guest user or access is revoked, personal data is deleted or anonymized in accordance with our retention policy.
We implement appropriate technical and organizational measures, including:
No method of transmission or storage is completely secure, but we follow best practices for SaaS solutions.
You have the right to:
To exercise your rights, contact info@preventos.fi or your organization's administrator. You may also lodge a complaint with your local Data Protection Authority (DPA).
The App is not intended for children under 16 and is provided only to invited business users. We do not knowingly process children's data.
We may update this Privacy Policy when necessary. Updates will be posted in the App, and invited users may be notified if required by law.
For questions regarding this Privacy Policy or GDPR rights:
Preventos Informatics Oy
Email: info@preventos.fi